Engine | Download Report | Detection | Info |
---|---|---|---|
|
malicious
|
||
|
malicious
Score: 100
|
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
|
IP | Country | Detection |
---|---|---|
23.21.126.66 | United States |
Name | IP | Detection |
---|---|---|
elb097307-934924932.us-east-1.elb.amazonaws.com | 23.21.126.66 | |
greatwestern.id | 103.229.73.122 | |
mail.greatwestern.id | 0.0.0.0 | |
Click to see the 1 hidden entries | ||
api.ipify.org | 0.0.0.0 |
Name | File Type | Hashes | Detection |
---|---|---|---|
C:\Users\user\AppData\Roaming\newapp\newapp.exe |
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows | # | |
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppCrash_newapp.exe_1f11cb71bf88a5e5d19cca1b7553e7627d37fc_0f14db49_1b89aef1\Report.wer |
Little-endian UTF-16 Unicode text, with CRLF line terminators | # | |
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_Order1258005.exe_259c739f189d49bdccd77471510aa4df475efb_c9114feb_1b4159eb\Report.wer |
Little-endian UTF-16 Unicode text, with CRLF line terminators | # | |
Click to see the 7 hidden entries | |||
C:\ProgramData\Microsoft\Windows\WER\Temp\WER7524.tmp.dmp |
Mini DuMP crash report, 14 streams, CheckSum 0x00000004, Fri Oct 30 23:32:28 2020, 0x1205a4 type | # | |
C:\ProgramData\Microsoft\Windows\WER\Temp\WER8810.tmp.WERInternalMetadata.xml |
XML 1.0 document, Little-endian UTF-16 Unicode text, with CRLF line terminators | # | |
C:\ProgramData\Microsoft\Windows\WER\Temp\WER8CF3.tmp.xml |
XML 1.0 document, ASCII text, with CRLF line terminators | # | |
C:\ProgramData\Microsoft\Windows\WER\Temp\WERB82D.tmp.dmp |
Mini DuMP crash report, 14 streams, CheckSum 0x00000004, Fri Oct 30 23:31:37 2020, 0x1205a4 type | # | |
C:\ProgramData\Microsoft\Windows\WER\Temp\WERC127.tmp.WERInternalMetadata.xml |
XML 1.0 document, Little-endian UTF-16 Unicode text, with CRLF line terminators | # | |
C:\ProgramData\Microsoft\Windows\WER\Temp\WERC510.tmp.xml |
XML 1.0 document, ASCII text, with CRLF line terminators | # | |
C:\Users\user\AppData\Roaming\newapp\newapp.exe:Zone.Identifier |
ASCII text, with CRLF line terminators | # |