IOC Report

loading gif

Processes

Path
Cmdline
Malicious
C:\Windows\SysWOW64\cmd.exe
cmd /C "152806710990800000114981760417202421471027801102024150837872C:\WINDOWS\system32\msdt.exe"C:\WINDOWS\system32\msdt.exe" ms-msdt:-id AudioPlaybackDiagnostic -skip true -ep SndVolToast"
C:\Windows\System32\conhost.exe
C:\Windows\system32\conhost.exe 0xffffffff -ForceV1