download:

qualcomm_driver.zip

Full analysis: https://app.any.run/tasks/a8d8fc85-b3bb-46de-9a72-b7353dc90616
Verdict: Malicious activity
Analysis date: January 15, 2020, 10:41:33
OS: Windows 7 Professional Service Pack 1 (build: 7601, 32 bit)
Indicators:
MIME: application/zip
File info: Zip archive data, at least v1.0 to extract
MD5:

7CD57AD817C8AFA6741D711E59B12EA2

SHA1:

6BFB71FC99C1D11F15DADEAA4FEB88FFB3C93C41

SHA256:

31DB78D709B3BF3BBBADE97DF6A1D42B5730BBF8273962EB5A5B77EA4ECCA893

SSDEEP:

393216:txxIPZsUOoOzEyAeIQExrSnPc2SGdHLHbdrbObEK5bq5NOA7Kt36:p04oOkpVxrm/ldjbdrboeNL7p

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    • Application was dropped or rewritten from another process

      • Qualcomm USB Driver V1.0.exe (PID: 3992)
      • Qualcomm USB Driver V1.0.exe (PID: 2608)
      • qcmtusvc.exe (PID: 444)
      • Qualcomm USB Driver V1.0.exe (PID: 3276)
      • Qualcomm USB Driver V1.0.exe (PID: 1516)
      • qcmtusvc.exe (PID: 1800)
  • SUSPICIOUS

    • Executable content was dropped or overwritten

      • MsiExec.exe (PID: 3600)
      • msiexec.exe (PID: 2896)
      • WinRAR.exe (PID: 3160)
      • DrvInst.exe (PID: 3368)
      • MsiExec.exe (PID: 320)
      • DrvInst.exe (PID: 2828)
      • msiexec.exe (PID: 2436)
      • DrvInst.exe (PID: 3880)
      • DrvInst.exe (PID: 624)
      • DrvInst.exe (PID: 2988)
      • DrvInst.exe (PID: 3532)
      • msiexec.exe (PID: 3332)
      • MsiExec.exe (PID: 3584)
      • DrvInst.exe (PID: 3568)
      • MsiExec.exe (PID: 3892)
      • DrvInst.exe (PID: 3424)
      • DrvInst.exe (PID: 2412)
      • DrvInst.exe (PID: 4036)
      • DrvInst.exe (PID: 1916)
    • Executed as Windows Service

      • vssvc.exe (PID: 1904)
      • qcmtusvc.exe (PID: 444)
      • qcmtusvc.exe (PID: 1800)
    • Starts Microsoft Installer

      • Qualcomm USB Driver V1.0.exe (PID: 2608)
      • Qualcomm USB Driver V1.0.exe (PID: 1516)
    • Executed via COM

      • DrvInst.exe (PID: 2828)
      • DrvInst.exe (PID: 3368)
      • DrvInst.exe (PID: 3532)
      • DrvInst.exe (PID: 3880)
      • DrvInst.exe (PID: 624)
      • DrvInst.exe (PID: 2988)
      • DrvInst.exe (PID: 3388)
      • DrvInst.exe (PID: 3912)
      • DrvInst.exe (PID: 2108)
      • DrvInst.exe (PID: 2428)
      • DrvInst.exe (PID: 2744)
      • DrvInst.exe (PID: 3568)
      • DrvInst.exe (PID: 3424)
      • DrvInst.exe (PID: 2412)
      • DrvInst.exe (PID: 1916)
      • DrvInst.exe (PID: 4036)
    • Creates files in the driver directory

      • DrvInst.exe (PID: 2828)
      • DrvInst.exe (PID: 3368)
      • DrvInst.exe (PID: 3880)
      • DrvInst.exe (PID: 3532)
      • DrvInst.exe (PID: 624)
      • DrvInst.exe (PID: 2988)
      • DrvInst.exe (PID: 3568)
      • DrvInst.exe (PID: 3424)
      • DrvInst.exe (PID: 2412)
      • DrvInst.exe (PID: 1916)
      • DrvInst.exe (PID: 4036)
    • Uses RUNDLL32.EXE to load library

      • DrvInst.exe (PID: 2828)
      • DrvInst.exe (PID: 3880)
      • DrvInst.exe (PID: 3368)
      • DrvInst.exe (PID: 3532)
      • DrvInst.exe (PID: 624)
      • DrvInst.exe (PID: 2988)
      • DrvInst.exe (PID: 3568)
      • DrvInst.exe (PID: 3424)
      • DrvInst.exe (PID: 2412)
      • DrvInst.exe (PID: 1916)
      • DrvInst.exe (PID: 4036)
    • Creates files in the Windows directory

      • rundll32.exe (PID: 4024)
      • DrvInst.exe (PID: 3368)
      • DrvInst.exe (PID: 2828)
      • DrvInst.exe (PID: 3880)
      • rundll32.exe (PID: 2980)
      • DrvInst.exe (PID: 3532)
      • rundll32.exe (PID: 2388)
      • rundll32.exe (PID: 1412)
      • rundll32.exe (PID: 3824)
      • DrvInst.exe (PID: 624)
      • DrvInst.exe (PID: 2988)
      • rundll32.exe (PID: 3872)
      • DrvInst.exe (PID: 3568)
      • rundll32.exe (PID: 3432)
      • DrvInst.exe (PID: 3424)
      • rundll32.exe (PID: 3816)
      • DrvInst.exe (PID: 2412)
      • rundll32.exe (PID: 1892)
      • rundll32.exe (PID: 1728)
      • DrvInst.exe (PID: 4036)
      • DrvInst.exe (PID: 1916)
      • rundll32.exe (PID: 3868)
    • Removes files from Windows directory

      • DrvInst.exe (PID: 3368)
      • DrvInst.exe (PID: 2828)
      • rundll32.exe (PID: 4024)
      • DrvInst.exe (PID: 3880)
      • rundll32.exe (PID: 2980)
      • DrvInst.exe (PID: 3532)
      • rundll32.exe (PID: 2388)
      • DrvInst.exe (PID: 624)
      • rundll32.exe (PID: 3824)
      • DrvInst.exe (PID: 2988)
      • rundll32.exe (PID: 1412)
      • rundll32.exe (PID: 3872)
      • DrvInst.exe (PID: 3912)
      • DrvInst.exe (PID: 3388)
      • DrvInst.exe (PID: 2108)
      • DrvInst.exe (PID: 2744)
      • DrvInst.exe (PID: 2428)
      • DrvInst.exe (PID: 3568)
      • rundll32.exe (PID: 3432)
      • rundll32.exe (PID: 3816)
      • DrvInst.exe (PID: 3424)
      • DrvInst.exe (PID: 2412)
      • rundll32.exe (PID: 1892)
      • rundll32.exe (PID: 1728)
      • DrvInst.exe (PID: 4036)
      • DrvInst.exe (PID: 1916)
      • rundll32.exe (PID: 3868)
    • Starts CMD.EXE for commands execution

      • MsiExec.exe (PID: 3988)
  • INFO

    • Application launched itself

      • msiexec.exe (PID: 2436)
    • Loads dropped or rewritten executable

      • MsiExec.exe (PID: 3600)
      • MsiExec.exe (PID: 320)
      • MsiExec.exe (PID: 3988)
      • MsiExec.exe (PID: 3584)
      • MsiExec.exe (PID: 3892)
    • Dropped object may contain Bitcoin addresses

      • msiexec.exe (PID: 2436)
    • Searches for installed software

      • msiexec.exe (PID: 2436)
    • Low-level read access rights to disk partition

      • vssvc.exe (PID: 1904)
    • Changes settings of System certificates

      • DrvInst.exe (PID: 3368)
    • Creates files in the program directory

      • msiexec.exe (PID: 2436)
      • MsiExec.exe (PID: 320)
    • Creates or modifies windows services

      • MsiExec.exe (PID: 320)
      • MsiExec.exe (PID: 3892)
    • Creates a software uninstall entry

      • msiexec.exe (PID: 2436)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.xpi | Mozilla Firefox browser extension (66.6)
.zip | ZIP compressed archive (33.3)

EXIF

ZIP

ZipRequiredVersion: 10
ZipBitFlag: -
ZipCompression: None
ZipModifyDate: 2019:04:08 04:46:03
ZipCRC: 0x00000000
ZipCompressedSize: -
ZipUncompressedSize: -
ZipFileName: qualcomm_driver/
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
89
Monitored processes
47
Malicious processes
28
Suspicious processes
3

Behavior graph

Click at the process to see the details
drop and start drop and start drop and start drop and start start winrar.exe qualcomm usb driver v1.0.exe no specs qualcomm usb driver v1.0.exe msiexec.exe no specs msiexec.exe msiexec.exe msiexec.exe vssvc.exe no specs qcmtusvc.exe msiexec.exe drvinst.exe rundll32.exe no specs drvinst.exe rundll32.exe no specs drvinst.exe rundll32.exe no specs drvinst.exe rundll32.exe no specs drvinst.exe rundll32.exe no specs drvinst.exe rundll32.exe no specs qualcomm usb driver v1.0.exe no specs qualcomm usb driver v1.0.exe msiexec.exe no specs msiexec.exe no specs msiexec.exe no specs drvinst.exe no specs drvinst.exe no specs drvinst.exe no specs drvinst.exe no specs drvinst.exe no specs cmd.exe no specs msiexec.exe msiexec.exe qcmtusvc.exe msiexec.exe drvinst.exe rundll32.exe no specs drvinst.exe rundll32.exe no specs drvinst.exe rundll32.exe no specs drvinst.exe rundll32.exe no specs drvinst.exe rundll32.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
320C:\Windows\system32\MsiExec.exe -Embedding 38C731D002FC4232DDC12403E0C2A700 M Global\MSI0000C:\Windows\system32\MsiExec.exe
msiexec.exe
User:
SYSTEM
Company:
Microsoft Corporation
Integrity Level:
SYSTEM
Description:
Windows® installer
Exit code:
0
Version:
5.0.7600.16385 (win7_rtm.090713-1255)
Modules
Images
c:\windows\system32\msiexec.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
444"C:\Program Files\QUALCOMM Incorporated\Qualcomm USB Drivers For Windows\DriverPackage\Qualcomm\Tools\qcmtusvc.exe"C:\Program Files\QUALCOMM Incorporated\Qualcomm USB Drivers For Windows\DriverPackage\Qualcomm\Tools\qcmtusvc.exe
services.exe
User:
SYSTEM
Company:
QUALCOMM, Inc.
Integrity Level:
SYSTEM
Description:
qcmtusvc
Exit code:
0
Version:
1,0,0,0
Modules
Images
c:\program files\qualcomm incorporated\qualcomm usb drivers for windows\driverpackage\qualcomm\tools\qcmtusvc.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
624DrvInst.exe "4" "0" "C:\Users\admin\AppData\Local\Temp\{03cf992d-c083-5aa8-91ff-9d2b1396e17b}\qdbusb.inf" "0" "6813678db" "000005CC" "WinSta0\Default" "0000052C" "208" "C:\Program Files\QUALCOMM Incorporated\Qualcomm USB Drivers For Windows\DriverPackage\Qualcomm\fre\Windows7"C:\Windows\system32\DrvInst.exe
svchost.exe
User:
SYSTEM
Company:
Microsoft Corporation
Integrity Level:
SYSTEM
Description:
Driver Installation Module
Exit code:
3758096963
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
Modules
Images
c:\windows\system32\drvinst.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
1104msiexec.exe /x {D9FB7F91-9687-4B09-894D-072903CADEA4} /passiveC:\Windows\system32\msiexec.exeQualcomm USB Driver V1.0.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
HIGH
Description:
Windows® installer
Exit code:
0
Version:
5.0.7600.16385 (win7_rtm.090713-1255)
Modules
Images
c:\windows\system32\msiexec.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
1412rundll32.exe C:\Windows\system32\pnpui.dll,InstallSecurityPromptRunDllW 20 Global\{29661675-0def-18dd-8241-8b634955fd15} Global\{1132e7da-41c9-0881-9264-3500e12f2547} C:\Windows\System32\DriverStore\Temp\{57c1bcc0-4182-638b-7fed-3e7c92643500}\qcwwan.inf C:\Windows\System32\DriverStore\Temp\{57c1bcc0-4182-638b-7fed-3e7c92643500}\qcwwan.catC:\Windows\system32\rundll32.exeDrvInst.exe
User:
SYSTEM
Company:
Microsoft Corporation
Integrity Level:
SYSTEM
Description:
Windows host process (Rundll32)
Exit code:
0
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
Modules
Images
c:\windows\system32\rundll32.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\imagehlp.dll
1516"C:\Users\admin\AppData\Local\Temp\Rar$EXa3160.2207\qualcomm_driver\Qualcomm USB Driver V1.0.exe" C:\Users\admin\AppData\Local\Temp\Rar$EXa3160.2207\qualcomm_driver\Qualcomm USB Driver V1.0.exe
WinRAR.exe
User:
admin
Company:
QUALCOMM, Inc.
Integrity Level:
HIGH
Description:
QUALCOMM Setup
Exit code:
0
Version:
1.0.0.0
Modules
Images
c:\users\admin\appdata\local\temp\rar$exa3160.2207\qualcomm_driver\qualcomm usb driver v1.0.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\msimg32.dll
1728rundll32.exe C:\Windows\system32\pnpui.dll,InstallSecurityPromptRunDllW 20 Global\{5c43aa81-02a5-033e-dcf9-432e29d0a345} Global\{54273fc4-288b-2d94-a473-e53385678044} C:\Windows\System32\DriverStore\Temp\{3f386e45-51fa-2e04-06bf-6e6e14b4184c}\qcwwan.inf C:\Windows\System32\DriverStore\Temp\{3f386e45-51fa-2e04-06bf-6e6e14b4184c}\qcwwan.catC:\Windows\system32\rundll32.exeDrvInst.exe
User:
SYSTEM
Company:
Microsoft Corporation
Integrity Level:
SYSTEM
Description:
Windows host process (Rundll32)
Exit code:
0
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
Modules
Images
c:\windows\system32\rundll32.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\imagehlp.dll
1800"C:\Program Files\QUALCOMM Incorporated\Qualcomm USB Drivers For Windows\DriverPackage\Qualcomm\Tools\qcmtusvc.exe"C:\Program Files\QUALCOMM Incorporated\Qualcomm USB Drivers For Windows\DriverPackage\Qualcomm\Tools\qcmtusvc.exe
services.exe
User:
SYSTEM
Company:
QUALCOMM, Inc.
Integrity Level:
SYSTEM
Description:
qcmtusvc
Exit code:
0
Version:
1,0,0,0
Modules
Images
c:\program files\qualcomm incorporated\qualcomm usb drivers for windows\driverpackage\qualcomm\tools\qcmtusvc.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
1892rundll32.exe C:\Windows\system32\pnpui.dll,InstallSecurityPromptRunDllW 20 Global\{62372b64-e0ff-43e5-d2c8-5603e924113a} Global\{76f16bcd-aa67-7cb9-44bf-360a55b93065} C:\Windows\System32\DriverStore\Temp\{21c34fb4-7685-0e67-387c-d733064f1872}\qcmdm.inf C:\Windows\System32\DriverStore\Temp\{21c34fb4-7685-0e67-387c-d733064f1872}\qcser.catC:\Windows\system32\rundll32.exeDrvInst.exe
User:
SYSTEM
Company:
Microsoft Corporation
Integrity Level:
SYSTEM
Description:
Windows host process (Rundll32)
Exit code:
0
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
Modules
Images
c:\windows\system32\rundll32.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\lpk.dll
c:\windows\system32\usp10.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\imagehlp.dll
1904C:\Windows\system32\vssvc.exeC:\Windows\system32\vssvc.exeservices.exe
User:
SYSTEM
Company:
Microsoft Corporation
Integrity Level:
SYSTEM
Description:
Microsoft® Volume Shadow Copy Service
Exit code:
0
Version:
6.1.7600.16385 (win7_rtm.090713-1255)
Modules
Images
c:\windows\system32\vssvc.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
Total events
3 609
Read events
2 109
Write events
1 208
Delete events
292

Modification events

(PID) Process:(3160) WinRAR.exeKey:HKEY_CURRENT_USER\Software\WinRAR\Interface\Themes
Operation:writeName:ShellExtBMP
Value:
(PID) Process:(3160) WinRAR.exeKey:HKEY_CURRENT_USER\Software\WinRAR\Interface\Themes
Operation:writeName:ShellExtIcon
Value:
(PID) Process:(3160) WinRAR.exeKey:HKEY_CLASSES_ROOT\Local Settings\MuiCache\12B\52C64B7E
Operation:writeName:LanguageList
Value:
en-US
(PID) Process:(3160) WinRAR.exeKey:HKEY_CURRENT_USER\Software\WinRAR\ArcHistory
Operation:writeName:0
Value:
C:\Users\admin\AppData\Local\Temp\qualcomm_driver.zip
(PID) Process:(3160) WinRAR.exeKey:HKEY_CURRENT_USER\Software\WinRAR\FileList\FileColumnWidths
Operation:writeName:name
Value:
120
(PID) Process:(3160) WinRAR.exeKey:HKEY_CURRENT_USER\Software\WinRAR\FileList\FileColumnWidths
Operation:writeName:size
Value:
80
(PID) Process:(3160) WinRAR.exeKey:HKEY_CURRENT_USER\Software\WinRAR\FileList\FileColumnWidths
Operation:writeName:type
Value:
120
(PID) Process:(3160) WinRAR.exeKey:HKEY_CURRENT_USER\Software\WinRAR\FileList\FileColumnWidths
Operation:writeName:mtime
Value:
100
(PID) Process:(3160) WinRAR.exeKey:HKEY_CLASSES_ROOT\Local Settings\MuiCache\12B\52C64B7E
Operation:writeName:@C:\Windows\System32\ieframe.dll,-10046
Value:
Internet Shortcut
(PID) Process:(3160) WinRAR.exeKey:HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
Operation:writeName:UNCAsIntranet
Value:
0
Executable files
78
Suspicious files
142
Text files
341
Unknown types
70

Dropped files

PID
Process
Filename
Type
2608Qualcomm USB Driver V1.0.exeC:\Users\admin\AppData\Local\Temp\QualcommWindowsDriverInstaller.msi
MD5:
SHA256:
2436msiexec.exeC:\System Volume Information\SPP\metadata-2
MD5:
SHA256:
2436msiexec.exeC:\Windows\Installer\3a5809.msi
MD5:
SHA256:
2436msiexec.exeC:\Users\admin\AppData\Local\Temp\~DF601A617332C6354A.TMP
MD5:
SHA256:
3160WinRAR.exeC:\Users\admin\AppData\Local\Temp\Rar$EXa3160.43938\qualcomm_driver\How to Install.urltext
MD5:
SHA256:
3600MsiExec.exeC:\Users\admin\AppData\Local\Temp\{6670C3D3-6783-41D6-A34F-146F73031470}\String1033.txttext
MD5:
SHA256:
2436msiexec.exeC:\System Volume Information\SPP\OnlineMetadataCache\{1b87ece3-1caa-477f-ba62-46184424aef3}_OnDiskSnapshotPropbinary
MD5:
SHA256:
2436msiexec.exeC:\System Volume Information\SPP\snapshot-2binary
MD5:
SHA256:
2896msiexec.exeC:\Users\admin\AppData\Local\Temp\MSIFAD5.tmpexecutable
MD5:
SHA256:
2436msiexec.exeC:\Program Files\QUALCOMM Incorporated\Qualcomm USB Drivers For Windows\DriverPackage\Qualcomm\Fre\Windows7\filter\i386\qcusbfilter.pdbpdb
MD5:
SHA256:
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
0
TCP/UDP connections
0
DNS requests
0
Threats
0

HTTP requests

No HTTP requests
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

No data

DNS requests

No data

Threats

No threats detected
Process
Message
qcmtusvc.exe
Qualcomm MTU Service running in service mode.
qcmtusvc.exe
Startup event signaled: 0
qcmtusvc.exe
Start MTU device monitor thread
qcmtusvc.exe
Starting: Qualcomm MTU Service
qcmtusvc.exe
DevMon_THREAD_REG_CHANGE
qcmtusvc.exe
MTU instance running...
qcmtusvc.exe
DevMon_WAIT_TIMEOUT: scanning system...
qcmtusvc.exe
Scanned system, 0 total adapters
qcmtusvc.exe
DevMon_WAIT_TIMEOUT: scanning system...
qcmtusvc.exe
Scanned system, 0 total adapters