Engine | Download Report | Detection | Info |
---|---|---|---|
|
malicious
|
||
|
malicious
Score: 100
|
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
|
IP | Country | Detection |
---|---|---|
192.64.119.152 | United States | |
162.255.119.106 | United States | |
161.117.255.56 | Singapore | |
Click to see the 1 hidden entries | ||
198.54.117.211 | United States |
Name | IP | Detection |
---|---|---|
cpaglobal.cloud | 192.64.119.152 | |
tradingsignals.club | 162.255.119.106 | |
parkingpage.namecheap.com | 198.54.117.211 | |
Click to see the 3 hidden entries | ||
searchtool.space | 161.117.255.56 | |
www.tradingsignals.club | 0.0.0.0 | |
www.cpaglobal.cloud | 0.0.0.0 |
Name | Detection |
---|---|
http://cpaglobal.cloud/oOjgox/index.php | |
http://cpaglobal.cloud/oOjgox/scr.dll | |
http://tradingsignals.club/oOjgox/cred.dll | |
Click to see the 8 hidden entries | |
http://www.tradingsignals.club/oOjgox/cred.dll | |
http://www.cpaglobal.cloud/oOjgox/scr.dll | |
http://cpaglobal.cloud/oOjgox/cred.dll | |
http://tradingsignals.club/oOjgox/index.php | |
http://searchtool.space/oOjgox/cred.dll | |
http://www.cpaglobal.cloud/oOjgox/cred.dll | |
http://searchtool.space/oOjgox/index.php | |
http://searchtool.space/oOjgox/scr.dll |
Name | File Type | Hashes | Detection |
---|---|---|---|
C:\ProgramData\3b2b21708d\bdif.exe |
PE32 executable (GUI) Intel 80386, for MS Windows | # | |
C:\ProgramData\3b2b21708d\bdif.exe:Zone.Identifier |
empty | # | |
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_bdif.exe_cd201f5317f434c24ee4fed244ac558ef597737_bcb2f203_23e02b65\Report.wer |
Little-endian UTF-16 Unicode text, with CRLF line terminators | # | |
Click to see the 4 hidden entries | |||
C:\ProgramData\Microsoft\Windows\WER\Temp\WER18E8.tmp.WERInternalMetadata.xml |
XML 1.0 document, Little-endian UTF-16 Unicode text, with CRLF line terminators | # | |
C:\ProgramData\Microsoft\Windows\WER\Temp\WER1ADD.tmp.xml |
XML 1.0 document, ASCII text, with CRLF line terminators | # | |
C:\ProgramData\Microsoft\Windows\WER\Temp\WERF52.tmp.dmp |
Mini DuMP crash report, 14 streams, Tue Oct 27 16:45:45 2020, 0x1205a4 type | # | |
C:\ProgramData\ec40016aefa10c1b7a71ef6a56c6d383 |
empty | # |