Source: C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2launcher.exe | File opened: C:\Program Files (x86)\Java\jre1.8.0_211\bin\MSVCR100.dll | Jump to behavior |
Source: Yara match | File source: invoice.jnlp, type: SAMPLE |
Source: invoice.jnlp | String found in binary or memory: http://invoicesecure.net/documents |
Source: C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2launcher.exe | Section loaded: sfc.dll | Jump to behavior |
Source: C:\Program Files (x86)\Java\jre1.8.0_211\bin\javaws.exe | Section loaded: sfc.dll | Jump to behavior |
Source: classification engine | Classification label: mal48.spre.winJNLP@3/0@0/0 |
Source: C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2launcher.exe | Key opened: HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers | Jump to behavior |
Source: unknown | Process created: C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2launcher.exe 'C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2launcher.exe' -securejws 'C:\Users\user\Desktop\invoice.jnlp' | |
Source: unknown | Process created: C:\Program Files (x86)\Java\jre1.8.0_211\bin\javaws.exe 'C:\Program Files (x86)\Java\jre1.8.0_211\bin\javaws.exe' 'C:\Users\user\Desktop\invoice.jnlp' | |
Source: C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2launcher.exe | Process created: C:\Program Files (x86)\Java\jre1.8.0_211\bin\javaws.exe 'C:\Program Files (x86)\Java\jre1.8.0_211\bin\javaws.exe' 'C:\Users\user\Desktop\invoice.jnlp' | Jump to behavior |
Source: C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2launcher.exe | File opened: C:\Program Files (x86)\Java\jre1.8.0_211\bin\MSVCR100.dll | Jump to behavior |
Source: C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2launcher.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Program Files (x86)\Java\jre1.8.0_211\bin\javaws.exe | Process information set: NOOPENFILEERRORBOX | Jump to behavior |
Source: C:\Program Files (x86)\Java\jre1.8.0_211\bin\javaws.exe | Process information queried: ProcessInformation | Jump to behavior |
Source: C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2launcher.exe | Process created: C:\Program Files (x86)\Java\jre1.8.0_211\bin\javaws.exe 'C:\Program Files (x86)\Java\jre1.8.0_211\bin\javaws.exe' 'C:\Users\user\Desktop\invoice.jnlp' | Jump to behavior |
Source: jp2launcher.exe, 00000002.00000002.591775696.0000000000FB0000.00000002.00000001.sdmp, javaws.exe, 00000003.00000002.591872141.00000000012A0000.00000002.00000001.sdmp | Binary or memory string: Shell_TrayWnd |
Source: jp2launcher.exe, 00000002.00000002.591775696.0000000000FB0000.00000002.00000001.sdmp, javaws.exe, 00000003.00000002.591872141.00000000012A0000.00000002.00000001.sdmp | Binary or memory string: Progman |
Source: jp2launcher.exe, 00000002.00000002.591775696.0000000000FB0000.00000002.00000001.sdmp, javaws.exe, 00000003.00000002.591872141.00000000012A0000.00000002.00000001.sdmp | Binary or memory string: &Program Manager |
Source: jp2launcher.exe, 00000002.00000002.591775696.0000000000FB0000.00000002.00000001.sdmp, javaws.exe, 00000003.00000002.591872141.00000000012A0000.00000002.00000001.sdmp | Binary or memory string: Progmanlock |
Thumbnails
This section contains all screenshots as thumbnails, including those not shown in the slideshow.