Engine | Download Report | Detection | Info |
---|---|---|---|
|
clean
Score: 13
|
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
|
|
|
clean
Score: 14
|
System: Windows 10 64 bit 20H2 Native physical Machine for testing VM-aware malware (Office 2019, Chrome 93, Firefox 91, Adobe Reader DC 21, Java 8 Update 301
Run Condition: Potential for more IOCs and behavior
|
Name | File Type | Hashes | Detection |
---|---|---|---|
C:\Program Files (x86)\PWMinder\runtime\bin\javaw.exe |
PE32 executable (GUI) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-synch-l1-2-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-crt-private-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
Click to see the 97 hidden entries | |||
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-crt-multibyte-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-crt-math-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-crt-locale-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-crt-heap-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-crt-filesystem-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-crt-environment-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-crt-convert-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-crt-conio-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-util-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-timezone-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-sysinfo-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-crt-process-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-synch-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-string-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-rtlsupport-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-profile-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-processthreads-l1-1-1.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-processthreads-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-processenvironment-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-namedpipe-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-memory-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-localization-l1-2-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-libraryloader-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\java.dll |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\ktab.exe |
PE32 executable (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\klist.exe |
PE32 executable (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\kinit.exe |
PE32 executable (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\keytool.exe |
PE32 executable (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\jsound.dll |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\jrunscript.exe |
PE32 executable (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\jli.dll |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\jimage.dll |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\jawt.dll |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\javajpeg.dll |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\java.exe |
PE32 executable (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-interlocked-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\j2gss.dll |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\freetype.dll |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\fontmanager.dll |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\dna.dll |
PE32 executable (DLL) (console) Intel 80386 (stripped to external PDB), for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\client\jvm.dll |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\awt.dll |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-crt-utility-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-crt-time-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-crt-string-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-crt-stdio-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-crt-runtime-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\app\commons-lang3-3.12.0.jar |
Zip archive data, at least v2.0 to extract, compression method=deflate | # | |
C:\Program Files (x86)\PWMinder\app\jaxen-1.1.6.jar |
Java archive data (JAR) | # | |
C:\Program Files (x86)\PWMinder\app\javax.activation-1.2.0.jar |
Zip archive data, at least v1.0 to extract, compression method=store | # | |
C:\Program Files (x86)\PWMinder\app\jasypt-1.9.3.jar |
Zip archive data, at least v1.0 to extract, compression method=store | # | |
C:\Program Files (x86)\PWMinder\app\jackson-core-2.7.9.jar |
Java archive data (JAR) | # | |
C:\Program Files (x86)\PWMinder\app\httpcore-4.4.15.jar |
Zip archive data, at least v1.0 to extract, compression method=deflate | # | |
C:\Program Files (x86)\PWMinder\app\httpclient-4.5.13.jar |
Zip archive data, at least v1.0 to extract, compression method=deflate | # | |
C:\Program Files (x86)\PWMinder\app\gson-2.9.1.jar |
Zip archive data, at least v1.0 to extract, compression method=store | # | |
C:\Program Files (x86)\PWMinder\app\flatlaf-jide-oss-2.6.jar |
Zip archive data, at least v1.0 to extract, compression method=deflate | # | |
C:\Program Files (x86)\PWMinder\app\flatlaf-2.6.jar |
Zip archive data, at least v2.0 to extract, compression method=deflate | # | |
C:\Program Files (x86)\PWMinder\app\dropbox-core-sdk-5.4.4.jar |
Zip archive data, at least v1.0 to extract, compression method=deflate | # | |
C:\Program Files (x86)\PWMinder\app\custom-components-2.0.0.jar |
Zip archive data, at least v1.0 to extract, compression method=deflate | # | |
C:\Program Files (x86)\PWMinder\app\commons-logging-1.2.jar |
Zip archive data, at least v1.0 to extract, compression method=store | # | |
C:\Program Files (x86)\PWMinder\app\jdom2-2.0.6.1.jar |
Java archive data (JAR) | # | |
C:\Program Files (x86)\PWMinder\app\commons-io-2.11.0.jar |
Zip archive data, at least v2.0 to extract, compression method=deflate | # | |
C:\Program Files (x86)\PWMinder\app\commons-httpclient-3.1.jar |
Java archive data (JAR) | # | |
C:\Program Files (x86)\PWMinder\app\commons-codec-1.15.jar |
Zip archive data, at least v2.0 to extract, compression method=deflate | # | |
C:\Program Files (x86)\PWMinder\app\bcprov-jdk15on-1.60.jar |
Java archive data (JAR) | # | |
C:\Program Files (x86)\PWMinder\app\bcprov-ext-jdk15on-1.60.jar |
Java archive data (JAR) | # | |
C:\Program Files (x86)\PWMinder\app\PWMinder.cfg |
Generic INItialization configuration [JavaOptions] | # | |
C:\Program Files (x86)\PWMinder\app\PWMinder-3.3.1.jar |
Zip archive data, at least v1.0 to extract, compression method=deflate | # | |
C:\Program Files (x86)\PWMinder\app\LGoodDatePicker-11.2.1.jar |
Java archive data (JAR) | # | |
C:\Program Files (x86)\PWMinder\app\EaSynthLookAndFeel.jar |
Java archive data (JAR) | # | |
C:\Program Files (x86)\PWMinder\PWMinder.ico |
MS Windows icon resource - 10 icons, 256x256 with PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced, 32 bits/pixel, -128x-128, 32 bits/pixel | # | |
C:\Program Files (x86)\PWMinder\PWMinder.exe |
PE32 executable (GUI) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\app\vaqua-10.jar |
Java archive data (JAR) | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-heap-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-handle-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-file-l2-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-file-l1-2-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-file-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-fibers-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-errorhandling-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-debug-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-datetime-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-console-l1-2-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\api-ms-win-core-console-l1-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Program Files (x86)\PWMinder\runtime\bin\API-MS-Win-core-xstate-l2-1-0.dll |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | # | |
C:\Config.Msi\672547.rbs |
data | # | |
C:\Program Files (x86)\PWMinder\app\vappearances-3.jar |
Java archive data (JAR) | # | |
C:\Program Files (x86)\PWMinder\app\swingx-all-1.6.5-1.jar |
Zip archive data, at least v1.0 to extract, compression method=store | # | |
C:\Program Files (x86)\PWMinder\app\not-going-to-be-commons-ssl-0.3.20.jar |
Zip archive data, at least v1.0 to extract, compression method=store | # | |
C:\Program Files (x86)\PWMinder\app\miglayout-swing-11.0.jar |
Java archive data (JAR) | # | |
C:\Program Files (x86)\PWMinder\app\miglayout-core-11.0.jar |
Java archive data (JAR) | # | |
C:\Program Files (x86)\PWMinder\app\log4j-core-2.19.0.jar |
Zip archive data, at least v1.0 to extract, compression method=deflate | # | |
C:\Program Files (x86)\PWMinder\app\log4j-api-2.19.0.jar |
Zip archive data, at least v1.0 to extract, compression method=deflate | # | |
C:\Program Files (x86)\PWMinder\app\jnr-11.jar |
Java archive data (JAR) | # | |
C:\Program Files (x86)\PWMinder\app\jide-oss-3.7.12.jar |
Zip archive data, at least v1.0 to extract, compression method=deflate | # | |
C:\Program Files (x86)\PWMinder\app\jgoodies-looks-2.7.0.jar |
Java archive data (JAR) | # | |
C:\Program Files (x86)\PWMinder\app\jgoodies-common-1.8.1.jar |
Java archive data (JAR) | # |