Engine | Download Report | Detection | Info |
---|---|---|---|
|
malicious
|
||
|
malicious
Score: 100
|
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
|
IP | Country | Detection |
---|---|---|
81.169.145.159 | Germany | |
34.102.136.180 | United States |
Name | IP | Detection |
---|---|---|
deeperootscbd.com | 34.102.136.180 | |
healing-with-touch.com | 81.169.145.159 | |
www.healing-with-touch.com | 0.0.0.0 | |
Click to see the 3 hidden entries | ||
www.deeperootscbd.com | 0.0.0.0 | |
cdn.onenote.net | 0.0.0.0 | |
www.aisichem.com | 160.124.77.164 |
Name | Detection |
---|---|
http://www.deeperootscbd.com/m1d/?mVkP=aeApkG2QXy/NqgXwqypxNhYc1dg15pNH4qhXr6f69huGXQ1g51qT6a7czmC8py8kAo48&S4=jnOL | |
http://www.healing-with-touch.com/m1d/?S4=jnOL&mVkP=N6VmRRP7b8JeQkf5f2VBjAp6cI3WzG30MtPpJduncWM5SOUqIZbVVA6QVLWDL0OQjPyD | |
http://www.deeperootscbd.com/m1d/ | |
Click to see the 17 hidden entries | |
http://www.sajatypeworks.com | |
http://www.deeperootscbd.com | |
http://www.carterandcone.coml | |
http://www.sakkal.com | |
http://www.zhongyicts.com.cn | |
http://www.goodfont.co.kr | |
http://www.sandoll.co.kr | |
http://www.fonts.com | |
http://www.%s.comPA | |
http://www.tiro.com | |
http://www.jiyu-kobo.co.jp/ | |
http://www.founder.com.cn/cn/bThe | |
http://www.founder.com.cn/cn | |
http://fontfabrik.com | |
http://www.apache.org/licenses/LICENSE-2.0 | |
http://www.founder.com.cn/cn/cThe | |
http://www.typography.netD |
Name | File Type | Hashes | Detection |
---|---|---|---|
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\8976547shipping docs45890.exe.log |
ASCII text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Temp\AddInProcess32.exe |
PE32 executable (console) Intel 80386 Mono/.Net assembly, for MS Windows | # | |
C:\Users\user\AppData\Local\Temp\DB1 |
SQLite 3.x database, last written using SQLite version 3024000 | # | |
Click to see the 8 hidden entries | |||
C:\Users\user\AppData\Roaming\L6PASCRS\L6Plogrf.ini |
data | # | |
C:\Users\user\AppData\Roaming\L6PASCRS\L6Plogri.ini |
data | # | |
C:\Users\user\AppData\Roaming\L6PASCRS\L6Plogrv.ini |
data | # | |
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\vnwl96s0uroti.exe.log |
ASCII text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Temp\Ohfrhgbex\vnwl96s0uroti.exe |
PE32 executable (console) Intel 80386 Mono/.Net assembly, for MS Windows | # | |
C:\Users\user\AppData\Roaming\L6PASCRS\L6Plogim.jpeg |
JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 1280x1024, frames 3 | # | |
C:\Users\user\AppData\Roaming\L6PASCRS\L6Plogrg.ini |
data | # | |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01b4d95cf55d32a.automaticDestinations-ms |
MS Windows shortcut, Item id list present, Points to a file or directory, Read-Only, Directory, ctime=Wed Apr 11 22:38:20 2018, mtime=Fri Jun 26 19:05:15 2020, atime=Fri Jun 26 19:05:15 2020, length=8192, window=hide | # |