31.0.0 Emerald
IR
345555
CloudBasic
16:30:00
28/01/2021
2760000.netprovfw.exe
default.jbs
Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 85, IE 11, Adobe Reader DC 19, Java 8 Update 211
WINDOWS
90478bb3273d74a7a4bae530dee87174
8fa8f069d4391a21346de65a5ee729ad6ef56a60
f865736f27acaaca93c530f82295fdddf9b97fc54f37732815e89ad660eb69e4
Win32 Executable (generic) a (10002005/4) 99.96%
true
false
false
false
68
0
100
5
0
5
false
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_2760000.netprovf_b21efdbffde7a51b97dadc3f5e1a0cbb59477b5_9c33c211_1654d47b\Report.wer
false
548D4253D24ED6AB578348FC29791ADD
15BFE6F7C3BB6E7F37E41CCBB56D1DE497C9E2DB
684A7CFAEC7EBB584BA1C0BC08EA384CE78B5A162BDA595FE808A749B3BD5444
C:\ProgramData\Microsoft\Windows\WER\Temp\WERC1BE.tmp.dmp
false
F021F7228CFA31E63D3414EF0FF5EF65
152AFA0910386EC728E41BA92D5D793C7176051E
22F4AA2068DFBABDB0C01A76340D81719977B38301A14E2BE874C330C841B882
C:\ProgramData\Microsoft\Windows\WER\Temp\WERC605.tmp.WERInternalMetadata.xml
false
8CA2B75E94B19B5B815F2675BBF4E695
A3223A858E39081E44E5CE3A77D3D9F4D109C47C
42603AA2FD403D7EB759F435291998A6D9EC742DA73E9CF8FB2347985774BE6E
C:\ProgramData\Microsoft\Windows\WER\Temp\WERC79C.tmp.xml
false
6E9F9E83B550D6C9C10FBED1CF15E45D
183B96207290120FD14196CEBAE44B089DAD98CE
0582CABD098099481B5559E2A766F1480B8BAFDE867E97BBF7E748B7A35BE7B6
192.168.2.1
Machine Learning detection for sample
Antivirus / Scanner detection for submitted sample
Multi AV Scanner detection for submitted file
Yara detected Emotet