File name:

GoogleUpdate.exe

Full analysis: https://app.any.run/tasks/43b75d9e-8e61-4b3e-9b92-5e4910885b48
Verdict: Malicious activity
Analysis date: February 20, 2024, 13:30:13
OS: Windows 7 Professional Service Pack 1 (build: 7601, 32 bit)
Indicators:
MIME: application/x-dosexec
File info: PE32 executable (GUI) Intel 80386, for MS Windows
MD5:

05C6DCFD9FF7A8174F088E4E5C12B1C9

SHA1:

9C23607614C86C87FA6172F62E676BB47BEE17BA

SHA256:

1CC9CC591561C175AE77640B110C13231197FEEBDECAC1B45B32460961CAA868

SSDEEP:

98304:EjZ7hjSWsXo+Q/BUZpIyHa+45sdW8LwgorGspVCYwA4teOp0NTBT5jGR60qvJ8+z:dERGDn

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    • Drops the executable file immediately after the start

      • GoogleUpdate.exe (PID: 3656)
  • SUSPICIOUS

    • Starts CMD.EXE for commands execution

      • GoogleUpdate.exe (PID: 3656)
    • Executing commands from a ".bat" file

      • GoogleUpdate.exe (PID: 3656)
    • Executable content was dropped or overwritten

      • GoogleUpdate.exe (PID: 3656)
    • Starts application with an unusual extension

      • cmd.exe (PID: 3348)
    • The process creates files with name similar to system file names

      • GoogleUpdate.exe (PID: 3656)
    • Using 'findstr.exe' to search for text patterns in files and output

      • cmd.exe (PID: 3348)
    • Get information on the list of running processes

      • cmd.exe (PID: 3348)
  • INFO

    • Checks supported languages

      • GoogleUpdate.exe (PID: 3656)
      • chcp.com (PID: 3664)
    • Reads the computer name

      • GoogleUpdate.exe (PID: 3656)
    • Create files in a temporary directory

      • GoogleUpdate.exe (PID: 3656)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.dll | Win32 Dynamic Link Library (generic) (38.3)
.exe | Win32 Executable (generic) (26.2)
.exe | Win16/32 Executable Delphi generic (12)
.exe | Generic Win/DOS Executable (11.6)
.exe | DOS Executable Generic (11.6)

EXIF

EXE

MachineType: Intel 386 or later, and compatibles
TimeStamp: 2012:11:16 22:57:03+00:00
ImageFileCharacteristics: Executable, No line numbers, No symbols, Bytes reversed lo, 32-bit, Bytes reversed hi
PEType: PE32
LinkerVersion: 2.25
CodeSize: 35840
InitializedDataSize: 15872
UninitializedDataSize: -
EntryPoint: 0x394a04
OSVersion: 4
ImageVersion: -
SubsystemVersion: 4
Subsystem: Windows GUI
FileVersionNumber: 1.3.36.371
ProductVersionNumber: 1.3.36.371
FileFlagsMask: 0x003f
FileFlags: (none)
FileOS: Windows NT 32-bit
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: English (U.S.)
CharacterSet: Unicode
CompanyName: Google LLC
FileDescription: Google Crash Handler
FileVersion: 1.3.36.371
InternalName: Google Update
LegalCopyright: Copyright 2018 Google LLC
OriginalFileName: GoogleUpdate.exe
ProductName: Google Update
ProductVersion: 1.3.36.371
No data.
screenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
1 012
Monitored processes
975
Malicious processes
2
Suspicious processes
0

Behavior graph

Click at the process to see the details
start googleupdate.exe cmd.exe no specs chcp.com no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs findstr.exe no specs tasklist.exe no specs tasklist.exe no specs findstr.exe no specs tasklist.exe no specs findstr.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
116TASKLIST C:\Windows\System32\tasklist.execmd.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Lists the current running tasks
Exit code:
0
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
116FINDSTR /I "dIlhost.exe"C:\Windows\System32\findstr.execmd.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Find String (QGREP) Utility
Exit code:
1
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
116TASKLIST C:\Windows\System32\tasklist.execmd.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Lists the current running tasks
Exit code:
0
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
120FINDSTR /I "dIlhost.exe"C:\Windows\System32\findstr.execmd.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Find String (QGREP) Utility
Exit code:
1
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
120FINDSTR /I "dIlhost.exe"C:\Windows\System32\findstr.execmd.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Find String (QGREP) Utility
Exit code:
1
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
124FINDSTR /I "dIlhost.exe"C:\Windows\System32\findstr.execmd.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Find String (QGREP) Utility
Exit code:
1
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
Modules
Images
c:\windows\system32\findstr.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\imm32.dll
124TASKLIST C:\Windows\System32\tasklist.execmd.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Lists the current running tasks
Exit code:
0
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
124TASKLIST C:\Windows\System32\tasklist.execmd.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Lists the current running tasks
Exit code:
0
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
240FINDSTR /I "dIlhost.exe"C:\Windows\System32\findstr.execmd.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Find String (QGREP) Utility
Exit code:
1
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
240TASKLIST C:\Windows\System32\tasklist.execmd.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Lists the current running tasks
Exit code:
0
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
Total events
4 967
Read events
4 967
Write events
0
Delete events
0

Modification events

No data
Executable files
1
Suspicious files
0
Text files
1
Unknown types
0

Dropped files

PID
Process
Filename
Type
3656GoogleUpdate.exeC:\users\admin\appdata\local\temp\dIlhost.exeexecutable
MD5:32C0C3A7C7AA4FC7672B0AC6EFDBF553
SHA256:C7BBA2237EDA7911344F2D29F9AC4FEE9D3FE901C54B26192ADEE57A817F6037
3656GoogleUpdate.exeC:\Users\admin\AppData\Local\Temp\3656DQV2.battext
MD5:9455B5C103A47E31038F008766E45F96
SHA256:FC5656AE257B0AA2E0533BE7E9CA4BAEFCCC8577DCF00BA82232AFCE433E788B
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
0
TCP/UDP connections
4
DNS requests
0
Threats
0

HTTP requests

No HTTP requests
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
1080
svchost.exe
224.0.0.252:5355
unknown
4
System
192.168.100.255:137
whitelisted
4
System
192.168.100.255:138
whitelisted

DNS requests

No data

Threats

No threats detected
No debug info