Report #10894 check_circle

Binary
DLL
False cancel
Size
96.00KB
trid
82.7% Win32 Executable Microsoft Visual Basic 6
6.6% Win32 Dynamic Link Library
4.5% Win32 Executable
2.0% OS/2 Executable
2.0% Generic Win/DOS Executable
type
PE
wordsize
32
Subsystem
Windows GUI
Hashes
md5
e0960b62e251e2fd2aae67a7ba723dca
sha1
457460c540b9cbca09df07fb52bf33f3b44d7622
crc32
0xb712d023
sha224
49fe007361207863d630643769f9f28ea6d137b1433b19b95a119a4c
sha256
1b5974e43ef158b306f1e19df6e9c8337a76eeb43408b8d03109fe09bb96a5e0
sha384
4178288cfd94f4c36b3ba8020de022a49f01a4d8c4a63e57d46b12b3ec53f9c9052ff4d75ddca287c11c39e31a16071f
sha512
623dde3978ff279ff3f41f722a3b7aee1318650fa127acc98933b799e1c3af96e62960e36411c4d53e44538c48a46aca8a0235dbe3797af254ce5003d9ca4aa6
ssdeep
768:r/I8QDaTFGwCGIcSkL/AxMPTaaYkgqBDRqxKRvQYGqkEA4a/wnGVFgq0XZ2gflz:DrMaTFGNctX/qMR4YgIaos4z
Community
Google
False cancel
HashLib
False cancel
YARA
Matches
Microsoft_Visual_Basic_v50_additional, domain, HasRichSignature, contentis_base64, IsPE32, Microsoft_Visual_Basic_v50, Microsoft_Visual_Basic_v50_v60, Microsoft_Visual_Basic_v50v60_additional, Microsoft_Visual_Basic_v50v60, SEH__vba, IsWindowsGUI

Suspicious
True check_circle

Strings
List
C:\Program Files (x86)\Microsoft Visual Studio\VB98\VB6.OLB
Generalst6.exe
Defeatists6
is $t
EVENT_SINK_QueryInterface
VBA6.DLL
__vbaLateMemCallLd
__vbaLateMemCallLd
__vbaLateMemCall
__vbaLateMemCall
__vbaI2I4
__vbaI2I4
__vbaDerefAry1
__vbaDerefAry1
__vbaNew2
__vbaNew2
__vbaUI1Str
__vbaUI1Str
__vbaR8Str
__vbaR4Str
__vbaR8Str
__vbaR4Str
__vbaObjSetAddref
__vbaObjSetAddref
_adj_fdivr_m32i
_adj_fdivr_m16i
__vbaFreeStrList
__vbaFreeVarList
__vbaFreeStrList
__vbaFreeVarList
_adj_fdiv_m32i
_adj_fdiv_m16i
__vbaAryDestruct
__vbaAryDestruct
_adj_fdiv_m64
_adj_fdiv_m32
__vbaFileOpen
__vbaFileOpen
__vbaErase
__vbaErase
__vbaRedim
__vbaRedim
__vbaVarTstEq
__vbaLateMemSt
__vbaVarTstNe
__vbaLateMemSt
__vbaVarTstEq
__vbaVarTstNe
EVENT_SINK_AddRef
__vbaFreeStr
__vbaStrMove
__vbaVarCopy
__vbaFreeObj
__vbaVarMove
__vbaVarCopy
__vbaFreeStr
__vbaStrMove
__vbaFreeVar
__vbaVarMove
__vbaFreeObj
__vbaFreeVar
EVENT_SINK_Release
__vbaObjSet
__vbaVarDup
__vbaObjSet
__vbaVarDup
MSVBVM60.DLL
MSVBVM60.DLL
_adj_fprem1
_adj_fdivr_m32
_adj_fdivr_m64
__vbaLenBstrB
__vbaLenBstrB
__vbaStrCopy
__vbaStrCopy
__vbaStrCmp
__vbaStrCmp
__vbaStrCat
__vbaStrCat
ICHTHYOSAURIAN
__vbaChkstk
_adj_fprem
Accompl2
Accompl2
}tta]g
t6rv4ey69
_adj_fptan
_adj_fpatan
oGDE|'}
Efterregningernes2
D4s=UDF
Laryngostroboscope6
Turbinet9
Turbinet9
Heirship7
Meerschaum8
Generalst6
Moisteners9
Nonblamable3
Generalst6

Foremost
Matches
0.exe, 96 KB
Suspicious
True check_circle
Heuristics
IPs
hasIPs: False cancel
Allowed
Suspicious
hasAllowed: False cancel
hasSuspicious: False cancel

URLs
Allowed
hasURLs: False cancel
Suspicious
hasAllowed: False cancel
hasSuspicious: False cancel

Files
Allowed: VBA6.DLL, MSVBVM60.DLL
hasFiles: True check_circle
Suspicious: C:\Program Files (x86)\Microsoft Visual Studio\VB98\VB6.OLB
hasAllowed: True check_circle
hasSuspicious: True check_circle

Binary
Sizes
RVA
RVA: 16
Suspicious: False cancel
Code
Size: 8192
Suspicious: False cancel
Image
Address: 4194304
Suspicious: False cancel
Stack
Stack: 4096
Suspicious: False cancel
Headers
Headers: 4096
Suspicious: False cancel
Suspicious: False cancel

Symbols
Number
Number: 0
Suspicious: True check_circle
Pointer
Pointer: 0
Suspicious: True check_circle
Directories
Number: 16
Suspicious: False cancel

Checksum
Value: 129880
Suspicous: False cancel

Sections
Allowed: .text, .data, .rsrc
Suspicious
hasAllowed: True check_circle
hasSections: True check_circle
hasSuspicious: False cancel

Versions
OS
Version: 4
Suspicious: False cancel
Image
Version: False cancel
Suspicious: 4
Linker
Version: 6.0
Suspicious: False cancel
Subsystem
Version: 4.0
Suspicious: False cancel
Suspicious: False cancel

EntryPoint
Address: 5396
Suspicious: False cancel

Anomalies
Anomalies
hasAnomalies: False cancel

Libraries
Allowed: msvbvm60.dll
hasLibs: True check_circle
Suspicious: vba6.dll
hasAllowed: True check_circle
hasSuspicious: True check_circle

Timestamp
Past: False cancel
Valid: True check_circle
Value: 2011-03-10 23:58:46
Future: False cancel

Compilation
Packed: False cancel
Missing: False cancel
Packers
Compiled: True check_circle
Compilers: Microsoft Visual Basic v5.0, Microsoft Visual Basic v5.0 - v6.0

Obfuscation
XOR: False cancel
Fuzzing: False cancel

PEDetector
Matches
None
Suspicious
False cancel
Disassembly
hasTricks
True check_circle
Tricks
pushpopmath
.text: 8

software breakpoint
.text: 2

cpuinstructionsresultscomparison
.rsrc: 2
.text: 1

AVclass
None
1
VirusTotal
md5
e0960b62e251e2fd2aae67a7ba723dca
sha1
457460c540b9cbca09df07fb52bf33f3b44d7622
SCANS (DETECTION RATE = 29.58%)
AVG
update: 20200504
version: 18.4.3895.0
detected: False cancel

CMC
update: 20190321
version: 1.1.0.977
detected: False cancel

MAX
update: 20200504
version: 2019.9.16.1
detected: False cancel

APEX
result: Malicious
update: 20200504
version: 6.18
detected: True check_circle

Bkav
update: 20200504
version: 1.3.0.9899
detected: False cancel

K7GW
update: 20200504
version: 11.107.33977
detected: False cancel

ALYac
update: 20200504
version: 1.1.1.5
detected: False cancel

Avast
update: 20200504
version: 18.4.3895.0
detected: False cancel

Avira
update: 20200504
version: 8.3.3.8
detected: False cancel

Baidu
update: 20190318
version: 1.0.0.2
detected: False cancel

Cyren
update: 20200504
version: 6.2.2.2
detected: False cancel

DrWeb
result: Trojan.Siggen9.44273
update: 20200504
version: 7.0.46.3050
detected: True check_circle

GData
update: 20200504
version: A:25.25564B:26.18608
detected: False cancel

Panda
update: 20200503
version: 4.6.4.2
detected: False cancel

VBA32
update: 20200504
version: 4.3.0
detected: False cancel

VIPRE
update: 20200504
version: 83458
detected: False cancel

Zoner
update: 20200503
version: 0.0.0.0
detected: False cancel

ClamAV
update: 20200503
version: 0.102.2.0
detected: False cancel

Comodo
update: 20200504
version: 32403
detected: False cancel

F-Prot
update: 20200504
version: 4.7.1.166
detected: False cancel

Ikarus
update: 20200504
version: 0.1.5.2
detected: False cancel

McAfee
result: Artemis!E0960B62E251
update: 20200504
version: 6.0.6.653
detected: True check_circle

Rising
result: Trojan.GenKryptik!8.AA55 (CLOUD)
update: 20200504
version: 25.0.0.24
detected: True check_circle

Sophos
result: Mal/FareitVB-AC
update: 20200504
version: 4.98.0
detected: True check_circle

Yandex
update: 20200504
version: 5.5.2.24
detected: False cancel

Zillya
update: 20200504
version: 2.0.0.4083
detected: False cancel

Acronis
update: 20200422
version: 1.1.1.75
detected: False cancel

Alibaba
update: 20190527
version: 0.3.0.5
detected: False cancel

Arcabit
update: 20200504
version: 1.0.0.872
detected: False cancel

Cylance
result: Unsafe
update: 20200504
version: 2.3.1.101
detected: True check_circle

Endgame
result: malicious (high confidence)
update: 20200226
version: 3.0.17
detected: True check_circle

FireEye
result: Generic.mg.e0960b62e251e2fd
update: 20200316
version: 32.31.0.0
detected: True check_circle

Sangfor
result: Malware
update: 20200423
version: 1.0
detected: True check_circle

TACHYON
update: 20200504
version: 2020-05-04.02
detected: False cancel

Tencent
update: 20200504
version: 1.0.0.1
detected: False cancel

ViRobot
update: 20200504
version: 2014.3.20.0
detected: False cancel

Webroot
update: 20200504
version: 1.0.0.403
detected: False cancel

eGambit
result: Unsafe.AI_Score_86%
update: 20200504
detected: True check_circle

Ad-Aware
update: 20200504
version: 3.0.5.370
detected: False cancel

AegisLab
update: 20200504
version: 4.2
detected: False cancel

Emsisoft
update: 20200504
version: 2018.12.0.1641
detected: False cancel

F-Secure
update: 20200504
version: 12.0.86.52
detected: False cancel

Fortinet
result: W32/GuLoader.VHIR!tr
update: 20200504
version: 6.2.142.0
detected: True check_circle

Invincea
update: 20200502
version: 6.3.6.26157
detected: False cancel

Jiangmin
update: 20200504
version: 16.0.100
detected: False cancel

Kingsoft
update: 20200504
version: 2013.8.14.323
detected: False cancel

Paloalto
result: generic.ml
update: 20200504
version: 1.0
detected: True check_circle

Trapmine
update: 20200123
version: 3.2.22.914
detected: False cancel

AhnLab-V3
update: 20200504
version: 3.17.5.27267
detected: False cancel

Antiy-AVL
update: 20200504
version: 3.0.0.1
detected: False cancel

Kaspersky
result: UDS:DangerousObject.Multi.Generic
update: 20200504
version: 15.0.1.13
detected: True check_circle

MaxSecure
update: 20200503
version: 1.0.0.1
detected: False cancel

Microsoft
result: Trojan:Win32/Wacatac.C!ml
update: 20200504
version: 1.1.16900.4
detected: True check_circle

Qihoo-360
update: 20200504
version: 1.0.0.1120
detected: False cancel

ZoneAlarm
result: UDS:DangerousObject.Multi.Generic
update: 20200504
version: 1.0
detected: True check_circle

Cybereason
update: 20190616
version: 1.2.449
detected: False cancel

ESET-NOD32
result: a variant of Win32/Injector.ELTA
update: 20200504
version: 21269
detected: True check_circle

TrendMicro
update: 20200504
version: 11.0.0.1006
detected: False cancel

BitDefender
update: 20200504
version: 7.2
detected: False cancel

CrowdStrike
result: win/malicious_confidence_60% (W)
update: 20190702
version: 1.0
detected: True check_circle

K7AntiVirus
update: 20200504
version: 11.106.33975
detected: False cancel

SentinelOne
update: 20200406
version: 2.1.0.89
detected: False cancel

Avast-Mobile
update: 20200504
version: 200504-00
detected: False cancel

Malwarebytes
result: Trojan.Injector
update: 20200504
version: 3.6.4.335
detected: True check_circle

TotalDefense
update: 20200504
version: 37.1.62.1
detected: False cancel

NANO-Antivirus
update: 20200504
version: 1.0.134.25112
detected: False cancel

BitDefenderTheta
result: Gen:NN.ZevbaCO.34108.gm0@aWBJV8lb
update: 20200428
version: 7.2.37796.0
detected: True check_circle

MicroWorld-eScan
update: 20200504
version: 14.0.409.0
detected: False cancel

SUPERAntiSpyware
update: 20200501
version: 5.6.0.1032
detected: False cancel

McAfee-GW-Edition
result: BehavesLike.Win32.Trojan.nt
update: 20200504
version: v2017.3010
detected: True check_circle

TrendMicro-HouseCall
result: TROJ_GEN.F0D1C00E420
update: 20200504
version: 10.0.0.1040
detected: True check_circle

total
71
sha256
1b5974e43ef158b306f1e19df6e9c8337a76eeb43408b8d03109fe09bb96a5e0
scan_id
1b5974e43ef158b306f1e19df6e9c8337a76eeb43408b8d03109fe09bb96a5e0-1588591915
resource
e0960b62e251e2fd2aae67a7ba723dca
positives
21
scan_date
2020-05-04 11:31:55
verbose_msg
Scan finished, information embedded
response_code
1
File
Trace
10/7/2020 - 22:45:43.668Open1480C:\malware.exeC:\Windows\Fonts\StaticCache.dat
10/7/2020 - 22:45:43.668Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:45:43.668Open1480C:\malware.exeC:\Windows\SysWOW64\ole32.dll
10/7/2020 - 22:45:43.668Open1480C:\malware.exeC:\Windows\SysWOW64\ole32.dll
10/7/2020 - 22:47:10.372Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:10.418Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:10.465Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:10.512Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:10.559Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:10.606Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:10.653Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:10.700Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:10.747Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:10.793Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:10.840Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:10.887Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:10.934Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:10.981Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.28Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.75Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.122Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.168Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.215Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.262Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.309Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.356Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.403Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.450Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.497Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.543Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.590Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.637Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.684Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.731Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.778Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.825Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.872Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.918Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:11.965Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.12Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.59Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.106Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.168Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.215Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.262Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.309Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.418Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.465Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.512Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.559Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.606Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.653Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.700Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.747Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.793Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.840Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.887Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.934Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:12.981Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.28Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.75Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.122Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.168Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.215Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.262Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.309Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.356Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.403Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.450Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.497Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.543Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.590Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.637Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.684Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.731Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.778Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.825Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.918Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:13.965Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.12Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.59Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.106Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.153Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.200Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.247Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.293Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.340Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.387Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.434Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.481Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.528Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.575Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.622Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.668Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.715Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.762Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.809Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.856Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.903Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.950Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:14.997Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.43Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.90Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.137Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.184Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.231Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.278Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.325Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.372Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.418Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.465Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.512Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.559Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.606Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.653Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.700Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.747Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.793Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.840Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.887Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.934Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:15.981Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.28Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.75Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.122Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.168Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.262Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.309Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.356Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.403Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.450Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.497Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.543Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.590Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.637Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.684Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.731Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.778Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.825Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.872Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.918Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:16.965Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.12Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.59Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.106Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.153Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.200Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.247Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.293Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.340Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.387Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.434Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.481Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.528Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.575Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.622Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.668Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.715Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.809Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.856Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.903Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.950Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:17.997Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.43Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.90Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.137Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.184Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.231Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.278Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.325Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.372Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.418Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.465Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.512Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.559Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.606Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.653Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.700Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.747Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.793Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.840Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.934Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:18.981Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.28Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.75Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.122Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.168Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.215Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.262Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.309Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.356Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.403Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.450Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.497Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.543Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.590Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.637Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.684Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.731Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.778Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.825Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.872Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.918Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:19.965Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.12Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.59Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.106Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.153Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.200Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.247Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.293Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.340Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.387Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.434Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.481Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.528Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.575Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.622Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.668Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.715Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.762Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.809Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.856Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.903Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.950Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:20.997Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.43Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.106Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.153Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.200Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.247Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.293Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.340Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.387Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.434Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.481Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.528Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.575Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.622Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.668Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.715Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.762Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.809Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.856Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.903Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.950Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:21.997Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.43Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.90Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.137Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.184Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.231Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.278Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.325Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.372Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.418Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.465Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.512Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.559Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.606Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.653Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.700Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.747Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.793Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.840Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.887Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.934Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:22.981Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.28Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.75Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.122Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.168Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.215Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.262Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.309Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.356Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.403Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.450Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.497Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.543Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.590Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.637Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.684Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.731Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.778Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:23.825Read1480C:\malware.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
10/7/2020 - 22:47:32.950Open1480C:\malware.exeC:\ProgramData\qemu-ga\qga.state

Process
Trace

Analysis
Reason
Timeout

Status
Sucessfully Executed

Results
1

Registry
Trace

File Summary
Created
Identified: False cancel

Deleted
Identified: False cancel

Process Summary
Created
Identified: False cancel

Deleted
Identified: False cancel

Registry Summary
Proxy
Identified: False cancel

AutoRun
Identified: False cancel

Created
Identified: False cancel

Deleted
Identified: False cancel

Browsers
Identified: False cancel

Internet
Identified: False cancel

Loading...

DNS
Query

Response

TCP
Info

UDP
Info

HTTP
Info

Summary
DNS
False cancel

TCP
False cancel

UDP
False cancel

HTTP
False cancel

Results
BINARY
KNN (K=3, NFS-BRMalware)
confidence: 66.67%
suspicious: False cancel

Decision Tree (NFS-BRMalware)
confidence: 100.00%
suspicious: False cancel

SVC (Kernel=Linear, NFS-BRMalware)
confidence: 83.12%
suspicious: False cancel

MalConv (Ember: Raw Bytes, Threshold=0.5)
confidence: 83.15%
suspicious: True check_circle

Random Forest (100 estimators, NFS-BRMalware)
confidence: 71.00%
suspicious: True check_circle

Non-Negative MalConv (Ember: Raw Bytes, Threshold=0.35)
confidence: 81.70%
suspicious: False cancel

LightGDM (Ember: File Characteristics, Threshold=0.8336)
confidence: 99.16%
suspicious: False cancel

Add to Collection
Download