Source: a.manasova@mlsp.kg.msg |
ChatGPT: Communication: 0 reasoning: Subject is an email address, not a relevant subject line |
Source: a.manasova@mlsp.kg.msg |
ChatGPT: Communication: 0 reasoning: Mismatch between sender's email domain and organization mentioned in signature |
Source: a.manasova@mlsp.kg.msg |
ChatGPT: Communication: 0 reasoning: Message content mentions infected password to file |
Source: a.manasova@mlsp.kg.msg |
ChatGPT: Communication: 0 reasoning: Unrelated recipient email address |
Source: a.manasova@mlsp.kg.msg |
ChatGPT: Communication: 0 reasoning: Attachment with suspicious file format (.zip) |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
File deleted: C:\Windows\SysWOW64\PerfStringBackup.TMP |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
File created: C:\Windows\inf\Outlook\ |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
File created: C:\Users\user\AppData\Local\Temp\{285EE306-80F3-46AB-9CE8-F29B3B7E7A13} - OProcSessId.dat |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
File written: C:\Windows\INF\Outlook\outlperf.ini |
Jump to behavior |
Source: classification engine |
Classification label: sus21.phis.winMSG@1/14@0/0 |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
File read: C:\Program Files (x86)\Microsoft Office\Office16\1033\OUTLPERF.INI |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
File created: C:\Users\user\Documents\Outlook Files\~Outlook.pst.tmp |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Window found: window name: SysTabControl32 |
Jump to behavior |
Source: Window Recorder |
Window detected: More than 3 window changes detected |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Window detected: Number of UI elements: 13 |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Key opened: HKEY_CURRENT_USER\Software\Microsoft\Office\16.0\Common\LanguageResources\EnabledEditingLanguages |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Registry key created: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Outlook\Performance |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: FAILCRITICALERRORS | NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: FAILCRITICALERRORS | NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |
Source: C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE |
Process information set: NOOPENFILEERRORBOX |
Jump to behavior |