Engine | Download Report | Detection | Info |
---|---|---|---|
|
malicious
|
||
|
malicious
Score: 100
|
System: unknown
|
IP | Country | Detection |
---|---|---|
202.47.1.59 | Australia | |
91.211.246.48 | Lithuania |
Name | IP | Detection |
---|---|---|
bespokemerchandises.com | 202.47.1.59 | |
worldwidebars.xyz | 91.211.246.48 |
Name | Detection |
---|---|
http://crt.sectigo.com/SectigoRSACodeSigningCA.crt0# | |
https://worldwidebars.xyz6 | |
https://worldwidebars.xyz | |
Click to see the 25 hidden entries | |
http://cps.root-x1.letsencrypt.org0 | |
http://crt.sectigo.com/COMODOTimeStampingCA_2.crt0# | |
http://crl.entrust.net/2048ca.crl0 | |
https://secure.comodo.com/CPS0 | |
http://ocsp.entrust.net0D | |
https://worldwidebars.xyz/index.htmavelLog | |
https://worldwidebars.xyz/index.htmxyz/index.htm | |
https://worldwidebars.xyz/index.htmRoot | |
http://cert.int-x3.letsencrypt.org/0 | |
https://sectigo.com/CPS0B | |
http://crl.pkioverheid.nl/DomOvLatestCRL.crl0 | |
http://crl.microO | |
http://crl.sectigo.com/SectigoRSACodeSigningCA.crl0s | |
http://www.diginotar.nl/cps/pkioverheid0 | |
http://crl.sectigo.com/COMODOTimeStampingCA_2.crl0r | |
http://crl.pkioverheid.nl/DomOrganisatieLatestCRL-G2.crl0 | |
http://ocsp.int-x3.letsencrypt.org0/ | |
https://worldwidebars.xyz/index.html | |
http://ocsp.entrust.net03 | |
http://cps.letsencrypt.org0 | |
https://worldwidebars.xyz/index.htmp | |
http://ocsp.sectigo.com0 | |
http://crl.entrust.net/server1.crl0 | |
https://sectigo.com/CPS0 | |
https://worldwidebars.xyz/index.htm |
Name | File Type | Hashes | Detection |
---|---|---|---|
C:\LttgTtQ\drYpcgG\BwkGvmB.exe |
PE32 executable (GUI) Intel 80386, for MS Windows | # | |
C:\Users\user\Desktop\~$Gary2704948_.xls |
data | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YE5GYPX3\288B7Ai1[1].exe |
PE32 executable (GUI) Intel 80386, for MS Windows | # | |
Click to see the 73 hidden entries | |||
C:\Users\user\AppData\Local\Temp\TarF29B.tmp |
data | # | |
C:\Users\user\AppData\Local\Temp\www4B65.tmp |
MS Windows 95 Internet shortcut text (URL=<https://ieonline.microsoft.com/#ieslice>), ASCII text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Temp\JavaDeployReg.log |
ASCII text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Temp\CabF28F.tmp |
Microsoft Cabinet archive data, 57243 bytes, 1 file | # | |
C:\Users\user\AppData\Local\Temp\37E30000 |
data | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZLRQUQGI\info_48[1] |
PNG image data, 47 x 48, 8-bit/color RGBA, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZLRQUQGI\http_404[1] |
HTML document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZLRQUQGI\httpErrorPagesScripts[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZLRQUQGI\favicon[1].ico |
PNG image data, 16 x 16, 4-bit colormap, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZLRQUQGI\errorPageStrings[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZLRQUQGI\down[1] |
PNG image data, 15 x 15, 8-bit colormap, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZLRQUQGI\bullet[1] |
PNG image data, 15 x 15, 8-bit colormap, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZLRQUQGI\background_gradient[1] |
JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 1x800, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZLRQUQGI\ErrorPageTemplate[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YE5GYPX3\info_48[1] |
PNG image data, 47 x 48, 8-bit/color RGBA, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YE5GYPX3\http_404[1] |
HTML document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YE5GYPX3\httpErrorPagesScripts[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Temp\~DF6BC592BFB7C7653F.TMP |
data | # | |
C:\Users\user\Favorites\Links\Suggested Sites.url |
MS Windows 95 Internet shortcut text (URL=<https://ieonline.microsoft.com/#ieslice>), ASCII text, with CRLF line terminators | # | |
C:\Users\user\Desktop\88E30000 |
data | # | |
C:\Users\user\AppData\Roaming\Microsoft\Office\Recent\index.dat |
ASCII text, with CRLF line terminators | # | |
C:\Users\user\AppData\Roaming\Microsoft\Office\Recent\Gary2704948_.LNK |
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Archive, ctime=Tue Jan 28 13:45:43 2020, mtime=Thu May 21 02:35:22 2020, atime=Thu May 21 02:35:22 2020, length=739483, window=hide | # | |
C:\Users\user\AppData\Roaming\Microsoft\Office\Recent\Desktop.LNK |
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Read-Only, Directory, ctime=Tue Jan 28 13:33:37 2020, mtime=Thu May 21 02:35:22 2020, atime=Thu May 21 02:35:22 2020, length=8192, window=hide | # | |
C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini |
ASCII text, with CRLF line terminators | # | |
C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk |
MS Windows shortcut, Item id list present, Points to a file or directory, Has Description string, Has Relative path, Has Working directory, Archive, ctime=Mon Aug 7 11:48:48 2017, mtime=Mon Aug 7 11:48:48 2017, atime=Wed May 31 02:32:40 2017, length (…) | # | |
C:\Users\user\AppData\Local\Temp\~DFDA2C47A6E30D7393.TMP |
data | # | |
C:\Users\user\AppData\Local\Temp\~DFB1A5B5240F500EA8.TMP |
data | # | |
C:\Users\user\AppData\Local\Temp\www4B5A.tmp |
MS Windows 95 Internet shortcut text (URL=<https://ieonline.microsoft.com/#ieslice>), ASCII text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Temp\~DF67DC0AE69C63AACD.TMP |
data | # | |
C:\Users\user\AppData\Local\Temp\~DF46814DB9ED41F8E5.TMP |
data | # | |
C:\Users\user\AppData\Local\Temp\~DF192D460CA79E0AF1.TMP |
data | # | |
C:\Users\user\AppData\Local\Temp\~DF146851338CA813C7.TMP |
data | # | |
C:\Users\user\AppData\Local\Temp\~DF09857DD25EB5AA79.TMP |
data | # | |
C:\Users\user\AppData\Local\Temp\~DF012C388AD3BD542A.TMP |
data | # | |
C:\Users\user\AppData\Local\Temp\www4B70.tmp |
MS Windows 95 Internet shortcut text (URL=<https://ieonline.microsoft.com/#ieslice>), ASCII text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YE5GYPX3\down[1] |
PNG image data, 15 x 15, 8-bit colormap, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{40F22071-9B14-11EA-B813-B2C276BF9C88}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33ICLHM2\ErrorPageTemplate[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Tiles\pin-2845162440\msapplication.xml |
XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5F559003-9B14-11EA-B813-B2C276BF9C88}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{501E7F13-9B14-11EA-B813-B2C276BF9C88}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{40F22073-9B14-11EA-B813-B2C276BF9C88}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{2959A441-9B14-11EA-B813-B2C276BF9C88}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{236190C3-9B14-11EA-B813-B2C276BF9C88}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5F559001-9B14-11EA-B813-B2C276BF9C88}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{501E7F11-9B14-11EA-B813-B2C276BF9C88}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33ICLHM2\background_gradient[1] |
JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 1x800, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{236190C1-9B14-11EA-B813-B2C276BF9C88}.dat |
Microsoft Word Document | # | |
C:\Users\user\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WebSlices~\Suggested Sites~.feed-ms |
Composite Document File V2 Document, Cannot read section info | # | |
C:\Users\user\AppData\Local\Microsoft\Feeds\FeedsStore.feedsdb-ms |
data | # | |
C:\Users\user\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico |
PNG image data, 16 x 16, 4-bit colormap, non-interlaced | # | |
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E0F5C59F9FA661F6F4C50B87FEF3A15A |
data | # | |
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506 |
data | # | |
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E0F5C59F9FA661F6F4C50B87FEF3A15A |
data | # | |
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506 |
Microsoft Cabinet archive data, 57243 bytes, 1 file | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R9DAMXZC\bullet[1] |
PNG image data, 15 x 15, 8-bit colormap, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YE5GYPX3\bullet[1] |
PNG image data, 15 x 15, 8-bit colormap, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YE5GYPX3\background_gradient[1] |
JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 1x800, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YE5GYPX3\ErrorPageTemplate[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R9DAMXZC\info_48[1] |
PNG image data, 47 x 48, 8-bit/color RGBA, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R9DAMXZC\http_404[1] |
HTML document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R9DAMXZC\httpErrorPagesScripts[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R9DAMXZC\errorPageStrings[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R9DAMXZC\down[1] |
PNG image data, 15 x 15, 8-bit colormap, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YE5GYPX3\errorPageStrings[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R9DAMXZC\background_gradient[1] |
JPEG image data, JFIF standard 1.02, aspect ratio, density 100x100, segment length 16, baseline, precision 8, 1x800, frames 3 | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R9DAMXZC\ErrorPageTemplate[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33ICLHM2\info_48[1] |
PNG image data, 47 x 48, 8-bit/color RGBA, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33ICLHM2\http_404[1] |
HTML document, UTF-8 Unicode (with BOM) text, with very long lines, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33ICLHM2\httpErrorPagesScripts[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33ICLHM2\errorPageStrings[1] |
UTF-8 Unicode (with BOM) text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33ICLHM2\down[1] |
PNG image data, 15 x 15, 8-bit colormap, non-interlaced | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33ICLHM2\bullet[1] |
PNG image data, 15 x 15, 8-bit colormap, non-interlaced | # |