Report #3886 cancel

  • Creation Date: Nov. 17, 2019, 5 p.m.
  • Last Update: Nov. 18, 2019, 2:45 a.m.
  • File: ie_addon_dll.dll
  • Results:
AVclass
machaer
1
VirusTotal
md5
8c1c71d39137c7a7b2b9bdfe6eefe73c
sha1
8845700f12df281d7bed6b456a340ec1f115bdaf
SCANS (DETECTION RATE = 11.76%)
AVG
update: 20191023
version: 18.4.3895.0
detected: False cancel

CMC
update: 20190321
version: 1.1.0.977
detected: False cancel

MAX
update: 20191023
version: 2019.9.16.1
detected: False cancel

APEX
update: 20191022
version: 5.76
detected: False cancel

Bkav
update: 20191022
version: 1.3.0.10239
detected: False cancel

K7GW
update: 20191022
version: 11.74.32338
detected: False cancel

ALYac
update: 20191023
version: 1.1.1.5
detected: False cancel

Avast
update: 20191023
version: 18.4.3895.0
detected: False cancel

Avira
update: 20191023
version: 8.3.3.8
detected: False cancel

Baidu
update: 20190318
version: 1.0.0.2
detected: False cancel

Cyren
update: 20191023
version: 6.2.2.2
detected: False cancel

DrWeb
update: 20191023
version: 7.0.41.7240
detected: False cancel

GData
update: 20191023
version: A:25.23744B:26.16387
detected: False cancel

Panda
update: 20191022
version: 4.6.4.2
detected: False cancel

VBA32
update: 20191022
version: 4.2.0
detected: False cancel

Zoner
update: 20191021
version: 1.0.0.1
detected: False cancel

ClamAV
update: 20191022
version: 0.102.0.0
detected: False cancel

Comodo
update: 20191023
version: 31635
detected: False cancel

F-Prot
update: 20191023
version: 4.7.1.166
detected: False cancel

Ikarus
update: 20191022
version: 0.1.5.2
detected: False cancel

McAfee
update: 20191023
version: 6.0.6.653
detected: False cancel

Rising
update: 20191023
version: 25.0.0.24
detected: False cancel

Sophos
update: 20191023
version: 4.98.0
detected: False cancel

Yandex
update: 20191022
version: 5.5.2.24
detected: False cancel

Zillya
update: 20191021
version: 2.0.0.3930
detected: False cancel

Acronis
update: 20191018
version: 1.1.1.58
detected: False cancel

Alibaba
result: AdWare:Win32/Machaer.64312b72
update: 20190527
version: 0.3.0.5
detected: True check_circle

Arcabit
update: 20191023
version: 1.0.0.861
detected: False cancel

Cylance
result: Unsafe
update: 20191023
version: 2.3.1.101
detected: True check_circle

Endgame
update: 20190918
version: 3.0.15
detected: False cancel

FireEye
update: 20191023
version: 29.7.0.0
detected: False cancel

TACHYON
update: 20191023
version: 2019-10-23.01
detected: False cancel

Tencent
update: 20191023
version: 1.0.0.1
detected: False cancel

ViRobot
update: 20191022
version: 2014.3.20.0
detected: False cancel

Webroot
update: 20191023
version: 1.0.0.403
detected: False cancel

eGambit
update: 20191023
version: v5.0.6
detected: False cancel

Ad-Aware
update: 20191023
version: 3.0.5.370
detected: False cancel

AegisLab
update: 20191023
version: 4.2
detected: False cancel

Emsisoft
update: 20191023
version: 2018.12.0.1641
detected: False cancel

F-Secure
update: 20191023
version: 12.0.86.52
detected: False cancel

Fortinet
update: 20191023
version: 5.4.247.0
detected: False cancel

Invincea
update: 20190904
version: 6.3.6.26157
detected: False cancel

Jiangmin
result: AdWare.Machaer.w
update: 20191023
version: 16.0.100
detected: True check_circle

Kingsoft
update: 20191023
version: 2013.8.14.323
detected: False cancel

Paloalto
update: 20191023
version: 1.0
detected: False cancel

Symantec
update: 20191023
version: 1.11.0.0
detected: False cancel

Trapmine
update: 20190826
version: 3.1.81.800
detected: False cancel

AhnLab-V3
update: 20191023
version: 3.16.3.25410
detected: False cancel

Antiy-AVL
update: 20191023
version: 3.0.0.1
detected: False cancel

Kaspersky
result: not-a-virus:AdWare.Win32.Machaer.o
update: 20191023
version: 15.0.1.13
detected: True check_circle

Microsoft
update: 20191023
version: 1.1.16500.1
detected: False cancel

Qihoo-360
update: 20191023
version: 1.0.0.1120
detected: False cancel

ZoneAlarm
result: not-a-virus:AdWare.Win32.Machaer.o
update: 20191023
version: 1.0
detected: True check_circle

ESET-NOD32
update: 20191023
version: 20226
detected: False cancel

TrendMicro
result: PUA.Win32.MailRu.GD.component
update: 20191023
version: 11.0.0.1006
detected: True check_circle

BitDefender
update: 20191023
version: 7.2
detected: False cancel

CrowdStrike
update: 20190702
version: 1.0
detected: False cancel

K7AntiVirus
update: 20191022
version: 11.74.32337
detected: False cancel

SentinelOne
update: 20190807
version: 1.0.31.22
detected: False cancel

Avast-Mobile
update: 20191012
version: 191012-04
detected: False cancel

Malwarebytes
update: 20191023
version: 2.1.1.1115
detected: False cancel

TotalDefense
update: 20191022
version: 37.1.62.1
detected: False cancel

CAT-QuickHeal
result: Trojan.IGENERIC
update: 20191022
version: 14.00
detected: True check_circle

NANO-Antivirus
update: 20191023
version: 1.0.134.24859
detected: False cancel

MicroWorld-eScan
update: 20191023
version: 14.0.297.0
detected: False cancel

SUPERAntiSpyware
update: 20191019
version: 5.6.0.1032
detected: False cancel

McAfee-GW-Edition
update: 20191022
version: v2017.3010
detected: False cancel

TrendMicro-HouseCall
result: PUA.Win32.MailRu.GD.component
update: 20191023
version: 10.0.0.1040
detected: True check_circle

total
68
sha256
1d297d91948c568edf3214eff94460c7dcf5c32a96bbee1f5adf47c3754ced63
scan_id
1d297d91948c568edf3214eff94460c7dcf5c32a96bbee1f5adf47c3754ced63-1571802284
resource
8c1c71d39137c7a7b2b9bdfe6eefe73c
positives
8
scan_date
2019-10-23 03:44:44
verbose_msg
Scan finished, information embedded
response_code
1
File
Trace
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\Windows\AppPatch\sysmain.sdb
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\Monitor\Malware
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\Monitor\Malware
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\Monitor
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\Monitor
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\Monitor\Malware
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\Monitor\Malware
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\Monitor\Malware
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\Monitor\Malware
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Read2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\ui\SwDRM.dll
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\malware.exe
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\Windows\SysWOW64\wtsapi32.dll
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\Windows\SysWOW64\wtsapi32.dll
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\Windows\SysWOW64\shell32.dll
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\Windows\SysWOW64\rundll32.exe.Local
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
18/11/2019 - 1:45:43.200Open2080C:\Windows\SysWOW64\rundll32.exeC:\Windows\WindowsShell.Manifest
18/11/2019 - 1:45:43.200Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\Windows\WindowsShell.ManifestWindowsShell.Manifest
18/11/2019 - 1:45:43.215Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\Windows
18/11/2019 - 1:45:43.215Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\Monitor
18/11/2019 - 1:45:43.215Unknown2080C:\Windows\SysWOW64\rundll32.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
18/11/2019 - 1:45:43.356Unknown1480C:\Windows\System32\rundll32.exeC:\Monitor

Process
Trace
18/11/2019 - 1:45:43.215Terminate1480C:\Windows\System32\rundll32.exe2080C:\Windows\SysWOW64\rundll32.exe

Analysis
Reason
Finished

Status
Sucessfully Executed

Results
1

Registry
Trace

File Summary
Created
Identified: False cancel

Deleted
Identified: False cancel

Process Summary
Created
Identified: False cancel

Deleted
Identified: True check_circle

Registry Summary
Proxy
Identified: False cancel

AutoRun
Identified: False cancel

Created
Identified: False cancel

Deleted
Identified: False cancel

Browsers
Identified: False cancel

Internet
Identified: False cancel

DNS
Query

Response

TCP
Info

UDP
Info

HTTP
Info

Summary
DNS
False cancel

TCP
False cancel

UDP
False cancel

HTTP
False cancel