| File name: | Dork Searcher ez V 13.0.1.4 Paid Version _ed by Team Otimus.rar |
| Full analysis: | https://app.any.run/tasks/1bc2b839-a652-4154-ac60-aaed17134640 |
| Verdict: | No threats detected |
| Analysis date: | June 04, 2020, 23:30:36 |
| OS: | Windows 7 Professional Service Pack 1 (build: 7601, 32 bit) |
| MIME: | application/x-rar |
| File info: | RAR archive data, v5 |
| MD5: | FD88082E2CB7FC48C15C4CFE0BAE298F |
| SHA1: | 56928063C8694E081D1F896C4E50B09CD79ED0E8 |
| SHA256: | 0545375382B1F841D335CD882C2B935065E5CAF1EE4A5D0D0C099A2730066D8B |
| SSDEEP: | 196608:J26coJR4MKg028pn81cOduxDtFeY9i98Bz3jPz31mDM:bcoJSynHuOKDnL9BbHsg |
| .rar | | | RAR compressed archive (v5.0) (61.5) |
|---|---|---|
| .rar | | | RAR compressed archive (gen) (38.4) |
PID | CMD | Path | Indicators | Parent process | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 3148 | "C:\Program Files\WinRAR\WinRAR.exe" "C:\Users\admin\AppData\Local\Temp\Dork Searcher ez V 13.0.1.4 Paid Version _ed by Team Otimus.rar" | C:\Program Files\WinRAR\WinRAR.exe | — | explorer.exe | |||||||||||
User: admin Company: Alexander Roshal Integrity Level: MEDIUM Description: WinRAR archiver Exit code: 0 Version: 5.60.0 Modules
| |||||||||||||||
| 3340 | "C:\Users\admin\Desktop\Dork Searcher ez V 13.0.1.4 Paid Version Cracked by Team Otimus\Searcher Cracked .exe" | C:\Users\admin\Desktop\Dork Searcher ez V 13.0.1.4 Paid Version Cracked by Team Otimus\Searcher Cracked .exe | explorer.exe | ||||||||||||
User: admin Integrity Level: MEDIUM Description: Searcher Exit code: 0 Version: 13.0.1.4 Modules
| |||||||||||||||
| (PID) Process: | (3148) WinRAR.exe | Key: | HKEY_CURRENT_USER\Software\WinRAR\Interface\Themes |
| Operation: | write | Name: | ShellExtBMP |
Value: | |||
| (PID) Process: | (3148) WinRAR.exe | Key: | HKEY_CURRENT_USER\Software\WinRAR\Interface\Themes |
| Operation: | write | Name: | ShellExtIcon |
Value: | |||
| (PID) Process: | (3148) WinRAR.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\MuiCache\12F\52C64B7E |
| Operation: | write | Name: | LanguageList |
Value: en-US | |||
| (PID) Process: | (3148) WinRAR.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\MuiCache\12F\52C64B7E |
| Operation: | write | Name: | @C:\Windows\system32\NetworkExplorer.dll,-1 |
Value: Network | |||
| (PID) Process: | (3148) WinRAR.exe | Key: | HKEY_CURRENT_USER\Software\WinRAR\ArcHistory |
| Operation: | write | Name: | 0 |
Value: C:\Users\admin\AppData\Local\Temp\Dork Searcher ez V 13.0.1.4 Paid Version _ed by Team Otimus.rar | |||
| (PID) Process: | (3148) WinRAR.exe | Key: | HKEY_CURRENT_USER\Software\WinRAR\FileList\FileColumnWidths |
| Operation: | write | Name: | name |
Value: 120 | |||
| (PID) Process: | (3148) WinRAR.exe | Key: | HKEY_CURRENT_USER\Software\WinRAR\FileList\FileColumnWidths |
| Operation: | write | Name: | size |
Value: 80 | |||
| (PID) Process: | (3148) WinRAR.exe | Key: | HKEY_CURRENT_USER\Software\WinRAR\FileList\FileColumnWidths |
| Operation: | write | Name: | type |
Value: 120 | |||
| (PID) Process: | (3148) WinRAR.exe | Key: | HKEY_CURRENT_USER\Software\WinRAR\FileList\FileColumnWidths |
| Operation: | write | Name: | mtime |
Value: 100 | |||
| (PID) Process: | (3148) WinRAR.exe | Key: | HKEY_CURRENT_USER\Software\WinRAR\Interface\MainWin |
| Operation: | write | Name: | Placement |
Value: 2C0000000000000001000000FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF42000000420000000204000037020000 | |||
PID | Process | Filename | Type | |
|---|---|---|---|---|
| 3148 | WinRAR.exe | C:\Users\admin\AppData\Local\Temp\Rar$DRa3148.29631\Dork Searcher ez V 13.0.1.4 Paid Version Cracked by Team Otimus\Config\Black | — | |
MD5:— | SHA256:— | |||
| 3148 | WinRAR.exe | C:\Users\admin\AppData\Local\Temp\Rar$DRa3148.29631\Dork Searcher ez V 13.0.1.4 Paid Version Cracked by Team Otimus\Config\Setting.cfg | — | |
MD5:— | SHA256:— | |||
| 3148 | WinRAR.exe | C:\Users\admin\AppData\Local\Temp\Rar$DRa3148.29631\Dork Searcher ez V 13.0.1.4 Paid Version Cracked by Team Otimus\Config\White | — | |
MD5:— | SHA256:— | |||
| 3148 | WinRAR.exe | C:\Users\admin\AppData\Local\Temp\Rar$DRa3148.29631\Dork Searcher ez V 13.0.1.4 Paid Version Cracked by Team Otimus\dll\Control.dll | — | |
MD5:— | SHA256:— | |||
| 3148 | WinRAR.exe | C:\Users\admin\AppData\Local\Temp\Rar$DRa3148.29631\Dork Searcher ez V 13.0.1.4 Paid Version Cracked by Team Otimus\dll\Interop.WMPLib.dll | — | |
MD5:— | SHA256:— | |||
| 3148 | WinRAR.exe | C:\Users\admin\AppData\Local\Temp\Rar$DRa3148.29631\Dork Searcher ez V 13.0.1.4 Paid Version Cracked by Team Otimus\dll\War.dll | — | |
MD5:— | SHA256:— | |||
| 3148 | WinRAR.exe | C:\Users\admin\AppData\Local\Temp\Rar$DRa3148.29631\Dork Searcher ez V 13.0.1.4 Paid Version Cracked by Team Otimus\dll\xNet.dll | — | |
MD5:— | SHA256:— | |||
| 3148 | WinRAR.exe | C:\Users\admin\AppData\Local\Temp\Rar$DRa3148.29631\Dork Searcher ez V 13.0.1.4 Paid Version Cracked by Team Otimus\Searcher Cracked .exe | — | |
MD5:— | SHA256:— | |||
| 3340 | Searcher Cracked .exe | C:\Users\admin\AppData\Roaming\Interplace\shared | binary | |
MD5:DBA3677E2096AF6C8479953EC0886C22 | SHA256:303354D300E4E5A46594DE7B12CCC07B6BFC4DE7ECD9394CB514A80B6B1716B4 | |||
PID | Process | IP | Domain | ASN | CN | Reputation |
|---|---|---|---|---|---|---|
3340 | Searcher Cracked .exe | 185.51.246.198:100 | — | ITL Company | UA | unknown |
Domain | IP | Reputation |
|---|---|---|
dns.msftncsi.com |
| shared |