=
We are hiring! Windows Kernel Developer (Remote), apply here!
flash

https://www.userbenchmark.com/resources/download/UserBenchMark.exe

Status: finished
Submission Time: 2021-06-24 05:08:33 +02:00
Malicious
Evader

Comments

Tags

Details

  • Analysis ID:
    439522
  • API (Web) ID:
    807111
  • Analysis Started:
    2021-06-24 05:08:34 +02:00
  • Analysis Finished:
    2021-06-24 05:18:46 +02:00
  • Technologies:
Full Report Management Report IOC Report Engine Info Verdict Score Reports

System: Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 85, IE 11, Adobe Reader DC 19, Java 8 Update 211

malicious
72/100

malicious
14/68

malicious
5/46

IPs

IP Country Detection
54.39.161.167
Canada

Domains

Name IP Detection
www.userbenchmark.com
54.39.161.167

URLs

Name Detection
0
http://nsis.sf.net/NSIS_Error
http://nsis.sf.net/NSIS_ErrorError

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\B87Z87FM\UserBenchMark[1].exe
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PEJLKQA8\UserBenchMark.exe.nb15apu.partial
PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\UBMCPUBench.exe
PE32 executable (console) Intel 80386, for MS Windows
#
Click to see the 85 hidden entries
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\UBMRAMBench.exe
PE32 executable (console) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\UserBenchMarkRunEngine.exe
PE32 executable (console) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{FF951407-D4E4-11EB-90E5-ECF4BB570DC9}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{FF951409-D4E4-11EB-90E5-ECF4BB570DC9}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PEJLKQA8\UserBenchMark.exe.nb15apu.partial:Zone.Identifier
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\PEJLKQA8\UserBenchMark.exe:Zone.Identifier
very short file (no magic)
#
C:\Users\user\AppData\Local\Temp\JavaDeployReg.log
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\CUBE.exe
PE32 executable (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\D3DCompiler_43.dll
PE32 executable (DLL) (console) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\FLOCK.exe
PE32 executable (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\InstPS0.cso
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\InstVS0.cso
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\LightPS.cso
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\LightPSSolid.cso
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\LightVS.cso
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Airplane\airplane 2.x
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Airplane\bihull.bmp
PC bitmap, Windows 3.x format, 256 x 256 x 8
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Airplane\wings.bmp
PC bitmap, Windows 3.x format, 128 x 128 x 8
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\CUBE.fx
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Disc.x
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Earth\earth.bmp
PC bitmap, Windows 3.x format, 512 x 256 x 24
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\FLOCK.fx
C source, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\FLOCK\boid.sdkmesh
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Misc\ball.sdkmesh
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Misc\car.x
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Misc\env2.bmp
PC bitmap, Windows 3.x format, 256 x 256 x 24
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Misc\floor.bmp
PC bitmap, Windows 3.x format, 256 x 256 x 4
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Misc\ground2.bmp
PC bitmap, Windows 3.x format, 256 x 256 x 24
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Misc\particle.dds
Microsoft DirectDraw Surface (DDS), 256 x 256,
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Misc\reflectsphere.sdkmesh
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Misc\sphere.x
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\NBODY.fx
C source, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\POM.fx
C source, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\RTAGS.fx
C source, ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\SHADOW.fx
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Scanner\monitors.dds
Microsoft DirectDraw Surface (DDS), 512 x 512, DXT1
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Scanner\scannerarm.sdkmesh
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Scanner\scannerarm_diff.dds
Microsoft DirectDraw Surface (DDS), 1024 x 1024, DXT1
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Scanner\scannermiddle_diff.dds
Microsoft DirectDraw Surface (DDS), 512 x 512, DXT1
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Scanner\scannermonitors.sdkmesh
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Scanner\scannerroom.sdkmesh
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\Scanner\scannerroom_diff.dds
Microsoft DirectDraw Surface (DDS), 2048 x 2048, DXT1
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\UBM\Courier_16.spritefont
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\UBM\OrangeSkybox.dds
Microsoft DirectDraw Surface (DDS), 1024 x 1024, DXT1
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\UBM\SegoeUI_14.spritefont
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\UBM\SegoeUI_24.spritefont
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\UBM\SegoeUI_36.spritefont
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\UBM\bench-speed_nt.dds
Microsoft DirectDraw Surface (DDS), 1024 x 1024, DXT1
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\UBM\countdown4.wav
RIFF (little-endian) data, WAVE audio, Microsoft PCM, 8 bit, stereo 16000 Hz
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\UBM\danube.wav
RIFF (little-endian) data, WAVE audio, Microsoft PCM, 8 bit, mono 16000 Hz
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\UBM\explode.wav
RIFF (little-endian) data, WAVE audio, Microsoft PCM, 16 bit, stereo 44100 Hz
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\UBM\laser.png
PNG image data, 512 x 256, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\UBM\laser.wav
RIFF (little-endian) data, WAVE audio
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\UBM\orbskin.jpg
JPEG image data, JFIF standard 1.01, resolution (DPI), density 72x72, segment length 16, progressive, precision 8, 652x344, frames 3
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\UBM\red_alert.wav
RIFF (little-endian) data, WAVE audio, Microsoft PCM, 16 bit, mono 11025 Hz
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\UBM\win.wav
RIFF (little-endian) data, WAVE audio, Microsoft PCM, 16 bit, stereo 44100 Hz
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\UI\arrow.x
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\ring.x
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\room.x
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\spotlight.x
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\stones.bmp
PC bitmap, Windows 3.x format, 512 x 512 x 24
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\Media\stones_NM_height.tga
Targa image data - RGBA 256 x 256 x 32 - 8-bit alpha
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\NBODY.exe
PE32 executable (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\POM.exe
PE32 executable (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\PlayerPS.cso
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\PlayerVS.cso
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\RTAGS.exe
PE32 executable (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\SHADOW.exe
PE32 executable (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\SkyboxPS.cso
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\SkyboxVS.cso
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\SubScreenPS.cso
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\SubScreenVS.cso
data
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\UBMDriveBench.exe
PE32 executable (console) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\UBMGPUStats.exe
PE32 executable (console) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\UBMSkillBench.exe
PE32+ executable (GUI) x86-64, for MS Windows
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\d3dx10_43.dll
PE32 executable (DLL) (console) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\UserBenchMarkTemp\d3dx9_43.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\nso1891.tmp
data
#
C:\Users\user\AppData\Local\Temp\nso1892.tmp\RealProgress.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\nso1892.tmp\System.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\nso1892.tmp\inetc.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\nso1892.tmp\md5dll.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows, UPX compressed
#
C:\Users\user\AppData\Local\Temp\nso1892.tmp\nsExec.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\~DF58605B826D6480B8.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DF5FEABA414F6A9DB6.TMP
data
#