IOC Report
activation.reg.exe

loading gif

Files

File Path
Type
Category
Malicious
activation.reg.exe
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
initial sample
malicious
C:\Windows\SysWOW64\SyncAppvPublishingServer.vbs
ASCII text, with CRLF line terminators
dropped