Engine | Download Report | Detection | Info |
---|---|---|---|
|
malicious
|
||
|
malicious
Score: 100
|
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
|
IP | Country | Detection |
---|---|---|
198.54.112.89 | United States | |
91.195.240.13 | Germany | |
91.195.240.12 | Germany |
Name | IP | Detection |
---|---|---|
www.spatren.com | 198.54.112.89 | |
www.ptgws.com | 91.195.240.12 | |
www.app7924.com | 91.195.240.13 | |
Click to see the 1 hidden entries | ||
www.qq6455.com | 0.0.0.0 |
Name | Detection |
---|---|
http://www.ptgws.com/sr1/ | |
http://www.ptgws.com/sr1/?azrhA=jkOn9Rty+lecef8GTlcZ36CwLFKq9e7GvHBSrLgwDHppX0QlwzfNM6KJV290CG150kbC&HN68=m8ZXDT | |
http://www.spatren.com/sr1/?azrhA=EEC3trxbjpZjES3J8UzdywVW4camKv5lKnOZdgutgRQJhFNNU6ohax/dLti9iqHJLoKb&HN68=m8ZXDT | |
Click to see the 23 hidden entries | |
http://www.app7924.com/sr1/?azrhA=TJu9kd1J3sj1sjyEQYrTfM8kzVKXOtoVWGC/eynSyKofNPs3fDsvQyrmT3NPrOg1vii2&HN68=m8ZXDT | |
http://www.app7924.com/sr1/ | |
http://www.typography.netD | |
http://www.sakkal.com | |
http://www.zhongyicts.com.cn | |
http://www.sandoll.co.kr | |
http://www.fonts.com | |
http://www.%s.comPA | |
http://www.msn.com/de-ch/ocid=iehpJ | |
http://www.jiyu-kobo.co.jp/ | |
http://www.msn.com/?ocid=iehp | |
http://www.founder.com.cn/cn | |
http://fontfabrik.com | |
http://www.founder.com.cn/cn/cThe | |
http://www.apache.org/licenses/LICENSE-2.0 | |
http://www.msn.com/de-ch/?ocid=iehp | |
http://www.sajatypeworks.com | |
http://www.carterandcone.coml | |
http://www.msn.com/ocid=iehp | |
http://www.goodfont.co.kr | |
http://www.ptgws.com | |
http://www.tiro.com | |
http://www.founder.com.cn/cn/bThe |
Name | File Type | Hashes | Detection |
---|---|---|---|
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\168768566-104646-sdfnt5-8.exe.log |
ASCII text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Temp\DB1 |
SQLite 3.x database, last written using SQLite version 3024000 | # | |
C:\Users\user\AppData\Local\Temp\Gilths\sxah0fixnx-4c.exe |
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows | # | |
Click to see the 7 hidden entries | |||
C:\Users\user\AppData\Roaming\38843287\388logrf.ini |
data | # | |
C:\Users\user\AppData\Roaming\38843287\388logri.ini |
data | # | |
C:\Users\user\AppData\Roaming\38843287\388logrv.ini |
data | # | |
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\sxah0fixnx-4c.exe.log |
ASCII text, with CRLF line terminators | # | |
C:\Users\user\AppData\Roaming\38843287\388logim.jpeg |
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 1280x1024, frames 3 | # | |
C:\Users\user\AppData\Roaming\38843287\388logrg.ini |
data | # | |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01b4d95cf55d32a.automaticDestinations-ms |
MS Windows shortcut, Item id list present, Points to a file or directory, Read-Only, Directory, ctime=Wed Apr 11 22:38:20 2018, mtime=Wed Jun 10 19:39:30 2020, atime=Wed Jun 10 19:39:30 2020, length=8192, window=hide | # |