Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.502628732.0000000003181000.00000004.00000001.sdmp |
String found in binary or memory: http://127.0.0.1:HTTP/1.1 |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.502628732.0000000003181000.00000004.00000001.sdmp |
String found in binary or memory: http://DynDns.comDynDNS |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000003.248737778.000000000381A000.00000004.00000001.sdmp |
String found in binary or memory: http://checkip.dyndns.org/ |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.502628732.0000000003181000.00000004.00000001.sdmp |
String found in binary or memory: http://qdovFN.com |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258242489.0000000002F31000.00000004.00000001.sdmp |
String found in binary or memory: http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000003.248737778.000000000381A000.00000004.00000001.sdmp |
String found in binary or memory: http://servermanager.miixit.org/1 |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000003.248737778.000000000381A000.00000004.00000001.sdmp |
String found in binary or memory: http://servermanager.miixit.org/downloads/ |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000003.248737778.000000000381A000.00000004.00000001.sdmp |
String found in binary or memory: http://servermanager.miixit.org/hits/hit_index.php?k= |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000003.248737778.000000000381A000.00000004.00000001.sdmp |
String found in binary or memory: http://servermanager.miixit.org/index_ru.html |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000003.248737778.000000000381A000.00000004.00000001.sdmp |
String found in binary or memory: http://servermanager.miixit.org/index_ru.htmlc |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000003.248737778.000000000381A000.00000004.00000001.sdmp |
String found in binary or memory: http://servermanager.miixit.org/report/reporter_index.php?name= |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.505677643.0000000003431000.00000004.00000001.sdmp |
String found in binary or memory: http://smtp.kaeiser.com |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.505677643.0000000003431000.00000004.00000001.sdmp |
String found in binary or memory: http://us2.smtp.mailhostbox.com |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.505339832.00000000033DF000.00000004.00000001.sdmp, SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000003.462075964.0000000001184000.00000004.00000001.sdmp, SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.505810185.0000000003440000.00000004.00000001.sdmp |
String found in binary or memory: https://6JeA1hPBvojxA7lSjrqA.org |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.502628732.0000000003181000.00000004.00000001.sdmp |
String found in binary or memory: https://6JeA1hPBvojxA7lSjrqA.org4 |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.502628732.0000000003181000.00000004.00000001.sdmp |
String found in binary or memory: https://api.ipify.org%$ |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.502628732.0000000003181000.00000004.00000001.sdmp |
String found in binary or memory: https://api.ipify.org%GETMozilla/5.0 |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
String found in binary or memory: https://stackpath.bootstrapcdn.com/bootstrap/4.5.0/css/bootstrap.min.css |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000003.248737778.000000000381A000.00000004.00000001.sdmp |
String found in binary or memory: https://www.paypal.com/cgi-bin/webscr?cmd=_s-xclick&hosted_button_id=CJU3DBQXBUQPC |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000003.248737778.000000000381A000.00000004.00000001.sdmp |
String found in binary or memory: https://www.paypal.com/cgi-bin/webscr?cmd=_s-xclick&hosted_button_id=CJU3DBQXBUQPC5http://servermana |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.260145188.0000000003F85000.00000004.00000001.sdmp, SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.498013758.0000000000402000.00000040.00000001.sdmp |
String found in binary or memory: https://www.theonionrouter.com/dist.torproject.org/torbrowser/9.5.3/tor-win32-0.4.3.6.zip |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.502628732.0000000003181000.00000004.00000001.sdmp |
String found in binary or memory: https://www.theonionrouter.com/dist.torproject.org/torbrowser/9.5.3/tor-win32-0.4.3.6.zip%tordir%%ha |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_01312D3B |
1_2_01312D3B |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_01316D10 |
1_2_01316D10 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_013145E8 |
1_2_013145E8 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_013124B8 |
1_2_013124B8 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_013118F0 |
1_2_013118F0 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_013104E9 |
1_2_013104E9 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_01313738 |
1_2_01313738 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_0131B2F0 |
1_2_0131B2F0 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_0131AD00 |
1_2_0131AD00 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_01314500 |
1_2_01314500 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_0131455D |
1_2_0131455D |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_013131B9 |
1_2_013131B9 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_013115D7 |
1_2_013115D7 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_01312464 |
1_2_01312464 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_013154A0 |
1_2_013154A0 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_013168A8 |
1_2_013168A8 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_01315490 |
1_2_01315490 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_01316898 |
1_2_01316898 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_01316B08 |
1_2_01316B08 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_01316670 |
1_2_01316670 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_01316660 |
1_2_01316660 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_01316AF8 |
1_2_01316AF8 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C99080 |
1_2_05C99080 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C96525 |
1_2_05C96525 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C927D8 |
1_2_05C927D8 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C90FDD |
1_2_05C90FDD |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C95F88 |
1_2_05C95F88 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C90F9A |
1_2_05C90F9A |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C927B9 |
1_2_05C927B9 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C95F78 |
1_2_05C95F78 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C91E5B |
1_2_05C91E5B |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C91E68 |
1_2_05C91E68 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C909C8 |
1_2_05C909C8 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C90958 |
1_2_05C90958 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C91958 |
1_2_05C91958 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C9215B |
1_2_05C9215B |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C91968 |
1_2_05C91968 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C92168 |
1_2_05C92168 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C91018 |
1_2_05C91018 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C96348 |
1_2_05C96348 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C9633B |
1_2_05C9633B |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_01460D77 |
6_2_01460D77 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_01468C58 |
6_2_01468C58 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_01469F48 |
6_2_01469F48 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_0146B7B0 |
6_2_0146B7B0 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_01464A98 |
6_2_01464A98 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_014651D8 |
6_2_014651D8 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_01467DE0 |
6_2_01467DE0 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_014652D8 |
6_2_014652D8 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_014F5520 |
6_2_014F5520 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_014FB838 |
6_2_014FB838 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_014F67C0 |
6_2_014F67C0 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_018146A0 |
6_2_018146A0 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_01814690 |
6_2_01814690 |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Binary or memory string: OriginalFilename vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258278831.0000000002F74000.00000004.00000001.sdmp |
Binary or memory string: OriginalFilenameUPUUHYtnpTKoXtyRejHoSmyBkdQcDqfWz.exe4 vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.257261739.0000000000B51000.00000002.00020000.sdmp |
Binary or memory string: OriginalFilenameIsolatedStorageSecurityOptions.exeF vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000003.248294877.00000000034EE000.00000004.00000001.sdmp |
Binary or memory string: OriginalFilenameSimpleUI.dll( vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.266244360.0000000005710000.00000004.00000001.sdmp |
Binary or memory string: OriginalFilenameDSASignature.dll@ vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.257816149.000000000132B000.00000004.00000020.sdmp |
Binary or memory string: OriginalFilenameclr.dllT vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.259348997.0000000003440000.00000004.00000001.sdmp |
Binary or memory string: l,\\StringFileInfo\\000004B0\\OriginalFilename vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Binary or memory string: OriginalFilename vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000004.00000002.252488681.0000000000300000.00000002.00020000.sdmp |
Binary or memory string: OriginalFilenameIsolatedStorageSecurityOptions.exeF vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Binary or memory string: OriginalFilename vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000005.00000000.253243433.00000000003D0000.00000002.00020000.sdmp |
Binary or memory string: OriginalFilenameIsolatedStorageSecurityOptions.exeF vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Binary or memory string: OriginalFilename vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000000.254313896.0000000000D40000.00000002.00020000.sdmp |
Binary or memory string: OriginalFilenameIsolatedStorageSecurityOptions.exeF vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.499004445.00000000010F8000.00000004.00000001.sdmp |
Binary or memory string: OriginalFilenameUNKNOWN_FILET vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.498013758.0000000000402000.00000040.00000001.sdmp |
Binary or memory string: OriginalFilenameUPUUHYtnpTKoXtyRejHoSmyBkdQcDqfWz.exe4 vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.501293215.0000000001450000.00000002.00000001.sdmp |
Binary or memory string: OriginalFilenamewshom.ocx.mui vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.501160686.00000000013E0000.00000002.00000001.sdmp |
Binary or memory string: OriginalFilenamemscorrc.dllT vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Binary or memory string: OriginalFilenameIsolatedStorageSecurityOptions.exeF vs SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: Select * from Clientes WHERE id=@id;; |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: Select * from Aluguel Erro ao listar Banco sql-Aluguel.INSERT INTO Aluguel VALUES(@clienteID, @data); |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: Select * from SecurityLogonType WHERE id=@id; |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: Select * from SecurityLogonType WHERE modelo=@modelo; |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: INSERT INTO Itens_Aluguel VALUES(@aluguelID, @aviaoID, @validade); |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: Insert into Clientes values (@nome, @cpf, @rg, @cidade, @endereco, @uf, @telefone); |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: INSERT INTO Aluguel VALUES(@clienteID, @data); |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: INSERT INTO SecurityLogonType VALUES(@modelo, @fabricante, @ano, @cor); |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: Select * from SecurityLogonType*Erro ao listar Banco sql-SecurityLogonType,Select * from SecurityLogonType WHERE id=@id;Select * from SecurityLogonType WHERE (modelo LIKE @modelo) |
Source: unknown |
Process created: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe 'C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe' |
|
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process created: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
|
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process created: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
|
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process created: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
|
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process created: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process created: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process created: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_00B3D2F8 push ds; retf |
1_2_00B3D32A |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_00B3BF64 push ebp; iretd |
1_2_00B3BF71 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_01310A9D push esi; iretd |
1_2_01310AA2 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C957BE push cs; ret |
1_2_05C957BF |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 1_2_05C957B4 push cs; ret |
1_2_05C957B5 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 4_2_00303622 push cs; retf |
4_2_00303632 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 4_2_00302E27 pushad ; retf |
4_2_00302E30 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 4_2_00303670 push cs; retf |
4_2_003036B0 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 4_2_00303658 push cs; retf |
4_2_0030366E |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 4_2_00303A5A push ss; retf |
4_2_00303A5E |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 4_2_00303BB6 push ds; retf |
4_2_00303BBA |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 4_2_00303BA4 push ds; retf |
4_2_00303BB4 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 4_2_003033A6 push cs; retf |
4_2_00303632 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 4_2_00303B92 push ds; retf |
4_2_00303B96 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 4_2_003003D2 push esi; iretd |
4_2_003003F3 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 5_2_003D2E27 pushad ; retf |
5_2_003D2E30 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 5_2_003D3622 push cs; retf |
5_2_003D3632 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 5_2_003D3670 push cs; retf |
5_2_003D36B0 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 5_2_003D3658 push cs; retf |
5_2_003D366E |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 5_2_003D3A5A push ss; retf |
5_2_003D3A5E |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 5_2_003D3BB6 push ds; retf |
5_2_003D3BBA |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 5_2_003D3BA4 push ds; retf |
5_2_003D3BB4 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 5_2_003D33A6 push cs; retf |
5_2_003D3632 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 5_2_003D3B92 push ds; retf |
5_2_003D3B96 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 5_2_003D03D2 push esi; iretd |
5_2_003D03F3 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_00D403D2 push esi; iretd |
6_2_00D403F3 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_00D43B92 push ds; retf |
6_2_00D43B96 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_00D43BB6 push ds; retf |
6_2_00D43BBA |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_00D43BA4 push ds; retf |
6_2_00D43BB4 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_00D433A6 push cs; retf |
6_2_00D43632 |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Code function: 6_2_00D43658 push cs; retf |
6_2_00D4366E |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: vmware |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: C:\PROGRAM FILES\VMWARE\VMWARE TOOLS\ |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: SOFTWARE\VMware, Inc.\VMware Tools |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: VMware SVGA II!Add-MpPreference -ExclusionPath " |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: VMWARE |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: InstallPath%C:\PROGRAM FILES\VMWARE\VMWARE TOOLS\ |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: VMWARE"SOFTWARE\VMware, Inc.\VMware ToolsLHARDWARE\DEVICEMAP\Scsi\Scsi Port 1\Scsi Bus 0\Target Id 0\Logical Unit Id 0LHARDWARE\DEVICEMAP\Scsi\Scsi Port 2\Scsi Bus 0\Target Id 0\Logical Unit Id 0'SYSTEM\ControlSet001\Services\Disk\Enum |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: VMware SVGA II |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000001.00000002.258294495.0000000002F83000.00000004.00000001.sdmp |
Binary or memory string: vmwareNSYSTEM\ControlSet001\Control\Class\{4D36E968-E325-11CE-BFC1-08002BE10318}\0000 |
Source: SecuriteInfo.com.Malware.AI.4228845530.13946.exe, 00000006.00000002.508185877.0000000006680000.00000004.00000001.sdmp |
Binary or memory string: Hyper-V RAW%SystemRoot%\system32\mswsock.dll |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Queries volume information: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Forms\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Forms.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Drawing\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\Accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\Accessibility.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Remoting\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Queries volume information: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Forms\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Forms.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.VisualBasic\v4.0_10.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_32\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_32\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_32\CustomMarshalers\v4.0_4.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Management\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Management.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Drawing\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll VolumeInformation |
Jump to behavior |
Source: C:\Users\user\Desktop\SecuriteInfo.com.Malware.AI.4228845530.13946.exe |
Queries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\Accessibility\v4.0_4.0.0.0__b03f5f7f11d50a3a\Accessibility.dll VolumeInformation |
Jump to behavior |