Engine | Download Report | Detection | Info |
---|---|---|---|
|
malicious
Score: 100
|
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
|
IP | Country | Detection |
---|---|---|
217.8.117.52 | Russian Federation |
Name | IP | Detection |
---|---|---|
g.msn.com | 0.0.0.0 |
Name | Detection |
---|---|
http://217.8.117.52/gBvqLn4Dc/scr.dll | |
http://217.8.117.52/gBvqLn4Dc/index.php | |
http://217.8.117.52/gBvqLn4Dc/cred.dll | |
Click to see the 2 hidden entries | |
http://217.8.117.52/gBvqLn4Dc/index.php?scr=up | |
http://http://http://217.8.117.52/gBvqLn4Dc/scr.dll( |
Name | File Type | Hashes | Detection |
---|---|---|---|
C:\ProgramData\1321ba6d1f\bdif.exe |
PE32 executable (GUI) Intel 80386, for MS Windows | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PEJLKQA8\cred[1].dll |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows | # | |
C:\Users\user\AppData\Local\Temp\cred.dll |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows | # | |
Click to see the 10 hidden entries | |||
C:\ProgramData\1321ba6d1f\bdif.exe:Zone.Identifier |
empty | # | |
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_rundll32.exe_d36c6f36e4270c0b6bc344f592d89eb2ea139f_82810a17_17855136\Report.wer |
Little-endian UTF-16 Unicode text, with CRLF line terminators | # | |
C:\ProgramData\Microsoft\Windows\WER\Temp\WER19F9.tmp.dmp |
Mini DuMP crash report, 14 streams, Sat Aug 1 07:53:29 2020, 0x1205a4 type | # | |
C:\ProgramData\Microsoft\Windows\WER\Temp\WER266E.tmp.WERInternalMetadata.xml |
XML 1.0 document, Little-endian UTF-16 Unicode text, with CRLF line terminators | # | |
C:\ProgramData\Microsoft\Windows\WER\Temp\WER2B8F.tmp.xml |
XML 1.0 document, ASCII text, with CRLF line terminators | # | |
C:\ProgramData\a174c1ef10e2077451f5b6dda83242a1 |
empty | # | |
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\4PB7FJMT\scr[1].dll |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows | # | |
C:\Users\user\AppData\Local\Temp\99f5f57b9a.jpg |
JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, baseline, precision 8, 1280x1024, frames 3 | # | |
C:\Users\user\AppData\Local\Temp\scr.dll |
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows | # | |
C:\Users\user\AppData\Local\VirtualStore\ProgramData\a174c1ef10e2077451f5b6dda83242a1 |
empty | # |