Engine | Download Report | Detection | Info |
---|---|---|---|
|
malicious
Score: 90
|
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
|
IP | Country | Detection |
---|---|---|
193.161.193.99 | Russian Federation | |
198.54.116.78 | United States |
Name | IP | Detection |
---|---|---|
recom-40698.portmap.io | 193.161.193.99 | |
mscni.org | 198.54.116.78 |
Name | Detection |
---|---|
https://mscni.org/cos_SfvxT237.binn? | |
https://mscni.org/cos_SfvxT237.bin | |
http://crt.sectigo.com/SectigoRSADomainValidationSecureServerCA.crt0# | |
Click to see the 3 hidden entries | |
https://sectigo.com/CPS0 | |
http://ocsp.sectigo.com0# | |
http://crt.sectigo.com/SectigoRSADomainValidation( |
Name | File Type | Hashes | Detection |
---|---|---|---|
C:\Users\user\AppData\Roaming\Frist\cos.exe |
PE32 executable (GUI) Intel 80386, for MS Windows | # | |
C:\Users\user\AppData\Roaming\Frist\cos.exe:Zone.Identifier |
ASCII text, with CRLF line terminators | # | |
C:\Users\user\AppData\Local\Temp\install.vbs |
data | # | |
Click to see the 1 hidden entries | |||
C:\Users\user\AppData\Roaming\cos\logs.dat |
data | # |