File name:

1 (1336)

Full analysis: https://app.any.run/tasks/c494c934-50b2-47c7-8417-b03d2d2cacf0
Verdict: Malicious activity
Analysis date: March 24, 2025, 12:35:02
OS: Windows 10 Professional (build: 19044, 64 bit)
Indicators:
MIME: application/vnd.microsoft.portable-executable
File info: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, 3 sections
MD5:

C2EBA609E3F74431DC31CF63BB543220

SHA1:

1C9716342589BA4C52799A0451711A66464C4E1E

SHA256:

3C657BA282F283F7A25D2460DF22EB1DB64D52403C1713605E77C4E06ABD40BA

SSDEEP:

6144:XyKgt/OPyDhHA5l3tdevRzfr/tB6lvJGBV/Wye5SZk/8SwjwpyAvEhfYaH209zVa:XTU2qHA5VtUPBchaVOye5SPx4DxmDsR

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    No malicious indicators.
  • SUSPICIOUS

    • Executable content was dropped or overwritten

      • 1 (1336).exe (PID: 6268)
      • Unicorn-2890.exe (PID: 5968)
      • Unicorn-14854.exe (PID: 7416)
      • Unicorn-55140.exe (PID: 7400)
      • Unicorn-3967.exe (PID: 7456)
      • Unicorn-9675.exe (PID: 7472)
      • Unicorn-57252.exe (PID: 7492)
      • Unicorn-59328.exe (PID: 7532)
      • Unicorn-19042.exe (PID: 7548)
      • Unicorn-23641.exe (PID: 7564)
      • Unicorn-4372.exe (PID: 7580)
      • Unicorn-63779.exe (PID: 7588)
      • Unicorn-31819.exe (PID: 7596)
      • Unicorn-12218.exe (PID: 7604)
      • Unicorn-51122.exe (PID: 7480)
      • Unicorn-42556.exe (PID: 7692)
      • Unicorn-6079.exe (PID: 7676)
      • Unicorn-2270.exe (PID: 7720)
      • Unicorn-13967.exe (PID: 7712)
      • Unicorn-7837.exe (PID: 7704)
      • Unicorn-5223.exe (PID: 7800)
      • Unicorn-14138.exe (PID: 7808)
      • Unicorn-11345.exe (PID: 7912)
      • Unicorn-47133.exe (PID: 7888)
      • Unicorn-6292.exe (PID: 7824)
      • Unicorn-377.exe (PID: 7896)
      • Unicorn-56920.exe (PID: 8080)
      • Unicorn-41980.exe (PID: 7852)
      • Unicorn-4372.exe (PID: 7612)
      • Unicorn-7335.exe (PID: 8112)
      • Unicorn-20334.exe (PID: 8136)
      • Unicorn-12166.exe (PID: 8128)
      • Unicorn-14033.exe (PID: 8096)
      • Unicorn-6375.exe (PID: 7192)
      • Unicorn-49676.exe (PID: 8156)
      • Unicorn-17881.exe (PID: 3304)
      • Unicorn-33340.exe (PID: 8164)
      • Unicorn-8259.exe (PID: 7244)
      • Unicorn-40859.exe (PID: 6036)
      • Unicorn-14180.exe (PID: 7212)
      • Unicorn-31647.exe (PID: 4008)
      • Unicorn-53766.exe (PID: 5868)
      • Unicorn-5939.exe (PID: 7172)
      • Unicorn-40646.exe (PID: 7844)
      • Unicorn-27284.exe (PID: 6872)
      • Unicorn-22741.exe (PID: 6988)
      • Unicorn-62312.exe (PID: 7320)
      • Unicorn-4625.exe (PID: 2268)
      • Unicorn-30024.exe (PID: 5408)
      • Unicorn-12518.exe (PID: 4448)
      • Unicorn-74.exe (PID: 5548)
      • Unicorn-47512.exe (PID: 1128)
      • Unicorn-34108.exe (PID: 664)
      • Unicorn-24853.exe (PID: 5436)
      • Unicorn-59852.exe (PID: 6640)
      • Unicorn-18649.exe (PID: 1020)
      • Unicorn-51897.exe (PID: 7376)
      • Unicorn-54252.exe (PID: 7200)
      • Unicorn-10563.exe (PID: 6592)
      • Unicorn-10755.exe (PID: 1388)
      • Unicorn-14845.exe (PID: 4996)
      • Unicorn-54720.exe (PID: 1056)
      • Unicorn-10023.exe (PID: 7776)
      • Unicorn-39431.exe (PID: 4620)
      • Unicorn-63147.exe (PID: 7904)
      • Unicorn-23946.exe (PID: 2236)
      • Unicorn-44772.exe (PID: 8016)
      • Unicorn-34165.exe (PID: 7292)
      • Unicorn-28222.exe (PID: 7268)
      • Unicorn-32031.exe (PID: 6516)
      • Unicorn-12462.exe (PID: 4188)
      • Unicorn-43812.exe (PID: 7384)
      • Unicorn-45820.exe (PID: 5392)
      • Unicorn-40325.exe (PID: 8376)
      • Unicorn-43236.exe (PID: 1096)
      • Unicorn-7652.exe (PID: 8332)
      • Unicorn-23374.exe (PID: 7672)
      • Unicorn-14133.exe (PID: 2420)
      • Unicorn-47787.exe (PID: 8456)
      • Unicorn-51876.exe (PID: 6876)
      • Unicorn-17645.exe (PID: 7436)
      • Unicorn-18405.exe (PID: 7660)
      • Unicorn-43511.exe (PID: 2984)
      • Unicorn-56640.exe (PID: 2040)
      • Unicorn-25504.exe (PID: 8068)
      • Unicorn-13656.exe (PID: 8892)
      • Unicorn-16573.exe (PID: 3332)
      • Unicorn-27253.exe (PID: 8984)
      • Unicorn-46500.exe (PID: 8280)
      • Unicorn-56012.exe (PID: 8440)
      • Unicorn-16864.exe (PID: 8844)
      • Unicorn-56277.exe (PID: 8448)
      • Unicorn-52918.exe (PID: 7448)
      • Unicorn-27315.exe (PID: 8520)
      • Unicorn-2836.exe (PID: 1512)
      • Unicorn-23426.exe (PID: 9268)
      • Unicorn-57320.exe (PID: 8604)
      • Unicorn-56235.exe (PID: 6576)
      • Unicorn-57875.exe (PID: 8296)
      • Unicorn-41678.exe (PID: 8552)
      • Unicorn-21908.exe (PID: 6712)
      • Unicorn-60828.exe (PID: 8468)
      • Unicorn-39182.exe (PID: 3268)
      • Unicorn-9188.exe (PID: 8612)
      • Unicorn-40600.exe (PID: 8688)
      • Unicorn-21506.exe (PID: 4112)
      • Unicorn-59624.exe (PID: 8208)
      • Unicorn-5166.exe (PID: 8860)
      • Unicorn-47979.exe (PID: 8396)
      • Unicorn-7771.exe (PID: 6148)
      • Unicorn-48249.exe (PID: 7760)
      • Unicorn-20542.exe (PID: 8732)
      • Unicorn-4039.exe (PID: 7664)
      • Unicorn-2307.exe (PID: 8404)
      • Unicorn-60501.exe (PID: 7820)
      • Unicorn-41949.exe (PID: 7992)
      • Unicorn-13614.exe (PID: 5156)
      • Unicorn-17226.exe (PID: 8884)
      • Unicorn-7403.exe (PID: 10088)
      • Unicorn-41145.exe (PID: 10060)
      • Unicorn-7387.exe (PID: 8340)
      • Unicorn-13614.exe (PID: 8364)
      • Unicorn-53724.exe (PID: 9396)
      • Unicorn-9463.exe (PID: 900)
      • Unicorn-14942.exe (PID: 8716)
      • Unicorn-23496.exe (PID: 8528)
      • Unicorn-17736.exe (PID: 9564)
      • Unicorn-46251.exe (PID: 10364)
      • Unicorn-4750.exe (PID: 7188)
      • Unicorn-63376.exe (PID: 11184)
      • Unicorn-17253.exe (PID: 8012)
      • Unicorn-42105.exe (PID: 5512)
      • Unicorn-19774.exe (PID: 8572)
      • Unicorn-4750.exe (PID: 4244)
      • Unicorn-4855.exe (PID: 10324)
      • Unicorn-23910.exe (PID: 9808)
      • Unicorn-40143.exe (PID: 8724)
      • Unicorn-47348.exe (PID: 10616)
      • Unicorn-15769.exe (PID: 5576)
      • Unicorn-44366.exe (PID: 8320)
      • Unicorn-50791.exe (PID: 9900)
      • Unicorn-43160.exe (PID: 9872)
      • Unicorn-195.exe (PID: 6940)
      • Unicorn-56391.exe (PID: 9912)
      • Unicorn-33636.exe (PID: 10788)
      • Unicorn-54876.exe (PID: 9796)
      • Unicorn-59048.exe (PID: 616)
      • Unicorn-46478.exe (PID: 9300)
      • Unicorn-48686.exe (PID: 9472)
      • Unicorn-5592.exe (PID: 9404)
      • Unicorn-8918.exe (PID: 9600)
      • Unicorn-10615.exe (PID: 7232)
      • Unicorn-52245.exe (PID: 9652)
      • Unicorn-62172.exe (PID: 8792)
      • Unicorn-61057.exe (PID: 12848)
      • Unicorn-40578.exe (PID: 9708)
      • Unicorn-52157.exe (PID: 10748)
      • Unicorn-46251.exe (PID: 10356)
      • Unicorn-1789.exe (PID: 9892)
      • Unicorn-61420.exe (PID: 12912)
      • Unicorn-28659.exe (PID: 8868)
      • Unicorn-65348.exe (PID: 8216)
      • Unicorn-61420.exe (PID: 12920)
      • Unicorn-27772.exe (PID: 8484)
      • Unicorn-32742.exe (PID: 9316)
      • Unicorn-12560.exe (PID: 10796)
      • Unicorn-24298.exe (PID: 10316)
      • Unicorn-64964.exe (PID: 10040)
      • Unicorn-65362.exe (PID: 6248)
      • Unicorn-34766.exe (PID: 10480)
      • Unicorn-38488.exe (PID: 10444)
      • Unicorn-58088.exe (PID: 8752)
      • Unicorn-13075.exe (PID: 12016)
      • Unicorn-5026.exe (PID: 10188)
      • Unicorn-22078.exe (PID: 10404)
      • Unicorn-55556.exe (PID: 10720)
      • Unicorn-42986.exe (PID: 9572)
      • Unicorn-17697.exe (PID: 9344)
      • Unicorn-51944.exe (PID: 9816)
      • Unicorn-49505.exe (PID: 10008)
      • Unicorn-40355.exe (PID: 9676)
      • Unicorn-42489.exe (PID: 10332)
      • Unicorn-59100.exe (PID: 10460)
      • Unicorn-16878.exe (PID: 5588)
      • Unicorn-28021.exe (PID: 7864)
      • Unicorn-39374.exe (PID: 4164)
      • Unicorn-57186.exe (PID: 10584)
      • Unicorn-25032.exe (PID: 8852)
      • Unicorn-262.exe (PID: 9284)
      • Unicorn-63111.exe (PID: 10416)
      • Unicorn-58634.exe (PID: 10520)
      • Unicorn-40770.exe (PID: 8504)
      • Unicorn-32763.exe (PID: 9884)
      • Unicorn-9375.exe (PID: 9592)
      • Unicorn-4410.exe (PID: 12144)
      • Unicorn-28037.exe (PID: 10608)
      • Unicorn-42432.exe (PID: 9764)
      • Unicorn-59131.exe (PID: 9584)
      • Unicorn-10614.exe (PID: 10808)
      • Unicorn-27108.exe (PID: 11748)
      • Unicorn-5379.exe (PID: 732)
      • Unicorn-51487.exe (PID: 10472)
      • Unicorn-1658.exe (PID: 8292)
      • Unicorn-64580.exe (PID: 10168)
      • Unicorn-64999.exe (PID: 9412)
      • Unicorn-20149.exe (PID: 9864)
      • Unicorn-19168.exe (PID: 5048)
      • Unicorn-20267.exe (PID: 8384)
      • Unicorn-32742.exe (PID: 9308)
      • Unicorn-59048.exe (PID: 9520)
      • Unicorn-7210.exe (PID: 12236)
      • Unicorn-3195.exe (PID: 13284)
      • Unicorn-11776.exe (PID: 9224)
      • Unicorn-53480.exe (PID: 10180)
      • Unicorn-53205.exe (PID: 10144)
      • Unicorn-44160.exe (PID: 10052)
      • Unicorn-10652.exe (PID: 13780)
      • Unicorn-19324.exe (PID: 11672)
      • Unicorn-386.exe (PID: 12160)
      • Unicorn-16370.exe (PID: 12740)
      • Unicorn-58016.exe (PID: 13532)
      • Unicorn-46251.exe (PID: 10780)
      • Unicorn-50496.exe (PID: 8976)
      • Unicorn-7418.exe (PID: 9332)
      • Unicorn-60859.exe (PID: 11900)
      • Unicorn-28608.exe (PID: 11972)
      • Unicorn-34035.exe (PID: 7360)
      • Unicorn-14139.exe (PID: 13588)
      • Unicorn-36672.exe (PID: 10952)
      • Unicorn-15099.exe (PID: 10916)
      • Unicorn-37938.exe (PID: 11080)
      • Unicorn-30144.exe (PID: 13772)
      • Unicorn-37663.exe (PID: 12180)
      • Unicorn-13075.exe (PID: 12024)
      • Unicorn-46656.exe (PID: 10436)
      • Unicorn-65296.exe (PID: 10904)
      • Unicorn-60636.exe (PID: 8512)
      • Unicorn-2499.exe (PID: 11088)
      • Unicorn-16260.exe (PID: 10856)
      • Unicorn-42240.exe (PID: 9528)
      • Unicorn-26532.exe (PID: 12256)
      • Unicorn-33740.exe (PID: 13580)
      • Unicorn-36345.exe (PID: 11764)
      • Unicorn-14971.exe (PID: 12488)
      • Unicorn-10615.exe (PID: 7204)
      • Unicorn-40739.exe (PID: 11096)
      • Unicorn-29354.exe (PID: 12136)
      • Unicorn-8446.exe (PID: 11008)
      • Unicorn-5187.exe (PID: 11876)
      • Unicorn-2598.exe (PID: 13076)
      • Unicorn-5654.exe (PID: 9236)
      • Unicorn-21877.exe (PID: 10216)
      • Unicorn-40896.exe (PID: 9484)
      • Unicorn-3547.exe (PID: 10424)
      • Unicorn-16863.exe (PID: 11680)
      • Unicorn-63496.exe (PID: 13120)
      • Unicorn-13533.exe (PID: 13136)
      • Unicorn-32603.exe (PID: 10228)
      • Unicorn-7210.exe (PID: 12112)
      • Unicorn-6670.exe (PID: 11892)
      • Unicorn-13075.exe (PID: 12040)
      • Unicorn-17684.exe (PID: 10548)
      • Unicorn-46251.exe (PID: 10380)
      • Unicorn-62543.exe (PID: 12104)
      • Unicorn-49483.exe (PID: 11332)
      • Unicorn-13075.exe (PID: 12064)
      • Unicorn-13407.exe (PID: 10288)
      • Unicorn-14995.exe (PID: 9848)
      • Unicorn-9161.exe (PID: 10876)
      • Unicorn-3978.exe (PID: 10828)
      • Unicorn-7210.exe (PID: 12096)
      • Unicorn-53196.exe (PID: 8640)
      • Unicorn-6204.exe (PID: 2096)
      • Unicorn-46781.exe (PID: 12248)
      • Unicorn-6682.exe (PID: 13048)
      • Unicorn-17845.exe (PID: 9428)
      • Unicorn-10787.exe (PID: 12828)
      • Unicorn-10615.exe (PID: 2416)
      • Unicorn-58607.exe (PID: 11124)
      • Unicorn-52245.exe (PID: 9660)
      • Unicorn-38960.exe (PID: 9548)
      • Unicorn-9058.exe (PID: 8876)
      • Unicorn-52956.exe (PID: 13764)
    • Starts itself from another location

      • Unicorn-2890.exe (PID: 5968)
      • Unicorn-55140.exe (PID: 7400)
      • 1 (1336).exe (PID: 6268)
      • Unicorn-3967.exe (PID: 7456)
      • Unicorn-9675.exe (PID: 7472)
      • Unicorn-57252.exe (PID: 7492)
      • Unicorn-14854.exe (PID: 7416)
      • Unicorn-51122.exe (PID: 7480)
      • Unicorn-19042.exe (PID: 7548)
      • Unicorn-59328.exe (PID: 7532)
      • Unicorn-23641.exe (PID: 7564)
      • Unicorn-4372.exe (PID: 7580)
      • Unicorn-31819.exe (PID: 7596)
      • Unicorn-4372.exe (PID: 7612)
      • Unicorn-12218.exe (PID: 7604)
      • Unicorn-6079.exe (PID: 7676)
      • Unicorn-13967.exe (PID: 7712)
      • Unicorn-2270.exe (PID: 7720)
      • Unicorn-7837.exe (PID: 7704)
      • Unicorn-40646.exe (PID: 7844)
      • Unicorn-14138.exe (PID: 7808)
      • Unicorn-63147.exe (PID: 7904)
      • Unicorn-377.exe (PID: 7896)
      • Unicorn-6292.exe (PID: 7824)
      • Unicorn-63779.exe (PID: 7588)
      • Unicorn-56920.exe (PID: 8080)
      • Unicorn-41980.exe (PID: 7852)
      • Unicorn-14033.exe (PID: 8096)
      • Unicorn-7335.exe (PID: 8112)
      • Unicorn-42556.exe (PID: 7692)
      • Unicorn-12166.exe (PID: 8128)
      • Unicorn-20334.exe (PID: 8136)
      • Unicorn-33340.exe (PID: 8164)
      • Unicorn-6375.exe (PID: 7192)
      • Unicorn-49676.exe (PID: 8156)
      • Unicorn-17881.exe (PID: 3304)
      • Unicorn-5223.exe (PID: 7800)
      • Unicorn-11345.exe (PID: 7912)
      • Unicorn-40859.exe (PID: 6036)
      • Unicorn-8259.exe (PID: 7244)
      • Unicorn-31647.exe (PID: 4008)
      • Unicorn-53766.exe (PID: 5868)
      • Unicorn-5939.exe (PID: 7172)
      • Unicorn-14180.exe (PID: 7212)
      • Unicorn-22741.exe (PID: 6988)
      • Unicorn-27284.exe (PID: 6872)
      • Unicorn-6204.exe (PID: 2096)
      • Unicorn-47512.exe (PID: 1128)
      • Unicorn-30024.exe (PID: 5408)
      • Unicorn-12518.exe (PID: 4448)
      • Unicorn-18649.exe (PID: 1020)
      • Unicorn-59852.exe (PID: 6640)
      • Unicorn-24853.exe (PID: 5436)
      • Unicorn-74.exe (PID: 5548)
      • Unicorn-47133.exe (PID: 7888)
      • Unicorn-34108.exe (PID: 664)
      • Unicorn-51897.exe (PID: 7376)
      • Unicorn-54252.exe (PID: 7200)
      • Unicorn-10563.exe (PID: 6592)
      • Unicorn-54720.exe (PID: 1056)
      • Unicorn-10755.exe (PID: 1388)
      • Unicorn-14845.exe (PID: 4996)
      • Unicorn-23946.exe (PID: 2236)
      • Unicorn-44772.exe (PID: 8016)
      • Unicorn-10023.exe (PID: 7776)
      • Unicorn-39431.exe (PID: 4620)
      • Unicorn-28222.exe (PID: 7268)
      • Unicorn-34165.exe (PID: 7292)
      • Unicorn-40325.exe (PID: 8376)
      • Unicorn-32031.exe (PID: 6516)
      • Unicorn-12462.exe (PID: 4188)
      • Unicorn-43812.exe (PID: 7384)
      • Unicorn-45820.exe (PID: 5392)
      • Unicorn-14133.exe (PID: 2420)
      • Unicorn-23374.exe (PID: 7672)
      • Unicorn-7652.exe (PID: 8332)
      • Unicorn-43236.exe (PID: 1096)
      • Unicorn-4625.exe (PID: 2268)
      • Unicorn-51876.exe (PID: 6876)
      • Unicorn-17645.exe (PID: 7436)
      • Unicorn-43511.exe (PID: 2984)
      • Unicorn-25504.exe (PID: 8068)
      • Unicorn-56640.exe (PID: 2040)
      • Unicorn-13656.exe (PID: 8892)
      • Unicorn-16573.exe (PID: 3332)
      • Unicorn-50496.exe (PID: 8976)
      • Unicorn-27253.exe (PID: 8984)
      • Unicorn-56277.exe (PID: 8448)
      • Unicorn-46500.exe (PID: 8280)
      • Unicorn-56012.exe (PID: 8440)
      • Unicorn-16864.exe (PID: 8844)
      • Unicorn-27315.exe (PID: 8520)
      • Unicorn-52918.exe (PID: 7448)
      • Unicorn-59048.exe (PID: 616)
      • Unicorn-2836.exe (PID: 1512)
      • Unicorn-23426.exe (PID: 9268)
      • Unicorn-60828.exe (PID: 8468)
      • Unicorn-41678.exe (PID: 8552)
      • Unicorn-57875.exe (PID: 8296)
      • Unicorn-39182.exe (PID: 3268)
      • Unicorn-9188.exe (PID: 8612)
      • Unicorn-21506.exe (PID: 4112)
      • Unicorn-21908.exe (PID: 6712)
      • Unicorn-5166.exe (PID: 8860)
      • Unicorn-47979.exe (PID: 8396)
      • Unicorn-40600.exe (PID: 8688)
      • Unicorn-7771.exe (PID: 6148)
      • Unicorn-20542.exe (PID: 8732)
      • Unicorn-56235.exe (PID: 6576)
      • Unicorn-59624.exe (PID: 8208)
      • Unicorn-4039.exe (PID: 7664)
      • Unicorn-2307.exe (PID: 8404)
      • Unicorn-60501.exe (PID: 7820)
      • Unicorn-41949.exe (PID: 7992)
      • Unicorn-48249.exe (PID: 7760)
      • Unicorn-13614.exe (PID: 5156)
      • Unicorn-44160.exe (PID: 10052)
      • Unicorn-7403.exe (PID: 10088)
      • Unicorn-7387.exe (PID: 8340)
      • Unicorn-17226.exe (PID: 8884)
      • Unicorn-41145.exe (PID: 10060)
      • Unicorn-13614.exe (PID: 8364)
      • Unicorn-57320.exe (PID: 8604)
      • Unicorn-9463.exe (PID: 900)
      • Unicorn-53724.exe (PID: 9396)
      • Unicorn-14942.exe (PID: 8716)
      • Unicorn-23496.exe (PID: 8528)
      • Unicorn-17736.exe (PID: 9564)
      • Unicorn-46251.exe (PID: 10364)
      • Unicorn-4750.exe (PID: 4244)
      • Unicorn-4750.exe (PID: 7188)
      • Unicorn-63376.exe (PID: 11184)
      • Unicorn-42105.exe (PID: 5512)
      • Unicorn-19774.exe (PID: 8572)
      • Unicorn-4855.exe (PID: 10324)
      • Unicorn-40143.exe (PID: 8724)
      • Unicorn-62312.exe (PID: 7320)
      • Unicorn-23910.exe (PID: 9808)
      • Unicorn-15769.exe (PID: 5576)
      • Unicorn-47348.exe (PID: 10616)
      • Unicorn-44366.exe (PID: 8320)
      • Unicorn-50791.exe (PID: 9900)
      • Unicorn-46478.exe (PID: 9300)
      • Unicorn-38960.exe (PID: 9548)
      • Unicorn-43160.exe (PID: 9872)
      • Unicorn-13407.exe (PID: 10288)
      • Unicorn-47786.exe (PID: 9380)
      • Unicorn-54876.exe (PID: 9796)
      • Unicorn-33636.exe (PID: 10788)
      • Unicorn-9058.exe (PID: 8876)
      • Unicorn-8918.exe (PID: 9600)
      • Unicorn-5592.exe (PID: 9404)
      • Unicorn-62172.exe (PID: 8792)
      • Unicorn-52157.exe (PID: 10748)
      • Unicorn-195.exe (PID: 6940)
      • Unicorn-28659.exe (PID: 8868)
      • Unicorn-56391.exe (PID: 9912)
      • Unicorn-46251.exe (PID: 10356)
      • Unicorn-1789.exe (PID: 9892)
      • Unicorn-61057.exe (PID: 12848)
      • Unicorn-32742.exe (PID: 9308)
      • Unicorn-65348.exe (PID: 8216)
      • Unicorn-27772.exe (PID: 8484)
      • Unicorn-48686.exe (PID: 9472)
      • Unicorn-32742.exe (PID: 9316)
      • Unicorn-61420.exe (PID: 12912)
      • Unicorn-61420.exe (PID: 12920)
      • Unicorn-12560.exe (PID: 10796)
      • Unicorn-38488.exe (PID: 10444)
      • Unicorn-24298.exe (PID: 10316)
      • Unicorn-64964.exe (PID: 10040)
      • Unicorn-65362.exe (PID: 6248)
      • Unicorn-3547.exe (PID: 10424)
      • Unicorn-34766.exe (PID: 10480)
      • Unicorn-17253.exe (PID: 8012)
      • Unicorn-13075.exe (PID: 12016)
      • Unicorn-22078.exe (PID: 10404)
      • Unicorn-5026.exe (PID: 10188)
      • Unicorn-40355.exe (PID: 9676)
      • Unicorn-55556.exe (PID: 10720)
      • Unicorn-17697.exe (PID: 9344)
      • Unicorn-51944.exe (PID: 9816)
      • Unicorn-42986.exe (PID: 9572)
      • Unicorn-49505.exe (PID: 10008)
      • Unicorn-28021.exe (PID: 7864)
      • Unicorn-42489.exe (PID: 10332)
      • Unicorn-59100.exe (PID: 10460)
      • Unicorn-17845.exe (PID: 9428)
      • Unicorn-25032.exe (PID: 8852)
      • Unicorn-262.exe (PID: 9284)
      • Unicorn-39374.exe (PID: 4164)
      • Unicorn-40578.exe (PID: 9708)
      • Unicorn-57186.exe (PID: 10584)
      • Unicorn-52245.exe (PID: 9652)
      • Unicorn-16878.exe (PID: 5588)
      • Unicorn-10652.exe (PID: 13780)
      • Unicorn-52956.exe (PID: 13764)
      • Unicorn-40770.exe (PID: 8504)
      • Unicorn-63111.exe (PID: 10416)
      • Unicorn-26760.exe (PID: 7396)
      • Unicorn-18405.exe (PID: 7660)
      • Unicorn-58634.exe (PID: 10520)
      • Unicorn-10615.exe (PID: 7232)
      • Unicorn-32763.exe (PID: 9884)
      • Unicorn-28037.exe (PID: 10608)
      • Unicorn-58088.exe (PID: 8752)
      • Unicorn-9375.exe (PID: 9592)
      • Unicorn-4410.exe (PID: 12144)
      • Unicorn-53196.exe (PID: 8640)
      • Unicorn-42432.exe (PID: 9764)
      • Unicorn-10614.exe (PID: 10808)
      • Unicorn-51487.exe (PID: 10472)
      • Unicorn-5379.exe (PID: 732)
      • Unicorn-1658.exe (PID: 8292)
      • Unicorn-59131.exe (PID: 9584)
      • Unicorn-59048.exe (PID: 9520)
      • Unicorn-19168.exe (PID: 5048)
      • Unicorn-20149.exe (PID: 9864)
      • Unicorn-64999.exe (PID: 9412)
      • Unicorn-57256.exe (PID: 14560)
      • Unicorn-6416.exe (PID: 14552)
      • Unicorn-16984.exe (PID: 6384)
      • Unicorn-38372.exe (PID: 15440)
      • Unicorn-42972.exe (PID: 15392)
      • Unicorn-19324.exe (PID: 11672)
      • Unicorn-386.exe (PID: 12160)
      • Unicorn-43090.exe (PID: 12080)
      • Unicorn-16370.exe (PID: 12740)
      • Unicorn-58016.exe (PID: 13532)
    • Executes application which crashes

      • Unicorn-28960.exe (PID: 7660)
  • INFO

    • The sample compiled with chinese language support

      • 1 (1336).exe (PID: 6268)
      • Unicorn-10023.exe (PID: 7776)
      • Unicorn-44772.exe (PID: 8016)
      • Unicorn-40325.exe (PID: 8376)
      • Unicorn-7335.exe (PID: 8112)
      • Unicorn-45820.exe (PID: 5392)
      • Unicorn-43812.exe (PID: 7384)
      • Unicorn-63779.exe (PID: 7588)
      • Unicorn-14033.exe (PID: 8096)
      • Unicorn-8259.exe (PID: 7244)
      • Unicorn-32031.exe (PID: 6516)
      • Unicorn-14133.exe (PID: 2420)
      • Unicorn-2270.exe (PID: 7720)
      • Unicorn-43236.exe (PID: 1096)
      • Unicorn-7652.exe (PID: 8332)
      • Unicorn-23374.exe (PID: 7672)
      • Unicorn-33340.exe (PID: 8164)
      • Unicorn-53766.exe (PID: 5868)
      • Unicorn-40646.exe (PID: 7844)
      • Unicorn-4625.exe (PID: 2268)
      • Unicorn-30024.exe (PID: 5408)
      • Unicorn-7837.exe (PID: 7704)
      • Unicorn-13967.exe (PID: 7712)
      • Unicorn-4372.exe (PID: 7580)
      • Unicorn-47787.exe (PID: 8456)
      • Unicorn-51876.exe (PID: 6876)
      • Unicorn-18405.exe (PID: 7660)
      • Unicorn-47133.exe (PID: 7888)
      • Unicorn-3967.exe (PID: 7456)
      • Unicorn-13656.exe (PID: 8892)
      • Unicorn-59328.exe (PID: 7532)
      • Unicorn-17645.exe (PID: 7436)
      • Unicorn-25504.exe (PID: 8068)
      • Unicorn-43511.exe (PID: 2984)
      • Unicorn-31819.exe (PID: 7596)
      • Unicorn-5939.exe (PID: 7172)
      • Unicorn-56640.exe (PID: 2040)
      • Unicorn-16573.exe (PID: 3332)
      • Unicorn-27253.exe (PID: 8984)
      • Unicorn-5223.exe (PID: 7800)
      • Unicorn-17881.exe (PID: 3304)
      • Unicorn-56277.exe (PID: 8448)
      • Unicorn-46500.exe (PID: 8280)
      • Unicorn-27284.exe (PID: 6872)
      • Unicorn-16864.exe (PID: 8844)
      • Unicorn-56012.exe (PID: 8440)
      • Unicorn-2890.exe (PID: 5968)
      • Unicorn-40859.exe (PID: 6036)
      • Unicorn-57252.exe (PID: 7492)
      • Unicorn-10755.exe (PID: 1388)
      • Unicorn-27315.exe (PID: 8520)
      • Unicorn-52918.exe (PID: 7448)
      • Unicorn-14854.exe (PID: 7416)
      • Unicorn-2836.exe (PID: 1512)
      • Unicorn-23426.exe (PID: 9268)
      • Unicorn-57320.exe (PID: 8604)
      • Unicorn-56235.exe (PID: 6576)
      • Unicorn-57875.exe (PID: 8296)
      • Unicorn-47512.exe (PID: 1128)
      • Unicorn-60828.exe (PID: 8468)
      • Unicorn-41678.exe (PID: 8552)
      • Unicorn-9188.exe (PID: 8612)
      • Unicorn-39182.exe (PID: 3268)
      • Unicorn-21506.exe (PID: 4112)
      • Unicorn-21908.exe (PID: 6712)
      • Unicorn-5166.exe (PID: 8860)
      • Unicorn-47979.exe (PID: 8396)
      • Unicorn-14180.exe (PID: 7212)
      • Unicorn-28222.exe (PID: 7268)
      • Unicorn-40600.exe (PID: 8688)
      • Unicorn-74.exe (PID: 5548)
      • Unicorn-7771.exe (PID: 6148)
      • Unicorn-20542.exe (PID: 8732)
      • Unicorn-34165.exe (PID: 7292)
      • Unicorn-48249.exe (PID: 7760)
      • Unicorn-6079.exe (PID: 7676)
      • Unicorn-59624.exe (PID: 8208)
      • Unicorn-4039.exe (PID: 7664)
      • Unicorn-2307.exe (PID: 8404)
      • Unicorn-41949.exe (PID: 7992)
      • Unicorn-12218.exe (PID: 7604)
      • Unicorn-55140.exe (PID: 7400)
      • Unicorn-60501.exe (PID: 7820)
      • Unicorn-12518.exe (PID: 4448)
      • Unicorn-377.exe (PID: 7896)
      • Unicorn-9675.exe (PID: 7472)
      • Unicorn-4372.exe (PID: 7612)
      • Unicorn-56920.exe (PID: 8080)
      • Unicorn-13614.exe (PID: 5156)
      • Unicorn-17226.exe (PID: 8884)
      • Unicorn-41980.exe (PID: 7852)
      • Unicorn-20334.exe (PID: 8136)
      • Unicorn-7403.exe (PID: 10088)
      • Unicorn-7387.exe (PID: 8340)
      • Unicorn-41145.exe (PID: 10060)
      • Unicorn-13614.exe (PID: 8364)
      • Unicorn-23641.exe (PID: 7564)
      • Unicorn-10563.exe (PID: 6592)
      • Unicorn-63147.exe (PID: 7904)
      • Unicorn-24853.exe (PID: 5436)
      • Unicorn-62312.exe (PID: 7320)
      • Unicorn-22741.exe (PID: 6988)
      • Unicorn-53724.exe (PID: 9396)
      • Unicorn-9463.exe (PID: 900)
      • Unicorn-14942.exe (PID: 8716)
      • Unicorn-23496.exe (PID: 8528)
      • Unicorn-17736.exe (PID: 9564)
      • Unicorn-46251.exe (PID: 10364)
      • Unicorn-4750.exe (PID: 7188)
      • Unicorn-42105.exe (PID: 5512)
      • Unicorn-63376.exe (PID: 11184)
      • Unicorn-19774.exe (PID: 8572)
      • Unicorn-42556.exe (PID: 7692)
      • Unicorn-4750.exe (PID: 4244)
      • Unicorn-4855.exe (PID: 10324)
      • Unicorn-23910.exe (PID: 9808)
      • Unicorn-40143.exe (PID: 8724)
      • Unicorn-17253.exe (PID: 8012)
      • Unicorn-34108.exe (PID: 664)
      • Unicorn-51897.exe (PID: 7376)
      • Unicorn-47348.exe (PID: 10616)
      • Unicorn-15769.exe (PID: 5576)
      • Unicorn-50791.exe (PID: 9900)
      • Unicorn-44366.exe (PID: 8320)
      • Unicorn-195.exe (PID: 6940)
      • Unicorn-56391.exe (PID: 9912)
      • Unicorn-43160.exe (PID: 9872)
      • Unicorn-33636.exe (PID: 10788)
      • Unicorn-46478.exe (PID: 9300)
      • Unicorn-48686.exe (PID: 9472)
      • Unicorn-5592.exe (PID: 9404)
      • Unicorn-54876.exe (PID: 9796)
      • Unicorn-10615.exe (PID: 7232)
      • Unicorn-59048.exe (PID: 616)
      • Unicorn-52157.exe (PID: 10748)
      • Unicorn-62172.exe (PID: 8792)
      • Unicorn-61057.exe (PID: 12848)
      • Unicorn-40578.exe (PID: 9708)
      • Unicorn-52245.exe (PID: 9652)
      • Unicorn-46251.exe (PID: 10356)
      • Unicorn-54720.exe (PID: 1056)
      • Unicorn-14138.exe (PID: 7808)
      • Unicorn-28659.exe (PID: 8868)
      • Unicorn-1789.exe (PID: 9892)
      • Unicorn-32742.exe (PID: 9308)
      • Unicorn-32742.exe (PID: 9316)
      • Unicorn-61420.exe (PID: 12912)
      • Unicorn-61420.exe (PID: 12920)
      • Unicorn-65348.exe (PID: 8216)
      • Unicorn-27772.exe (PID: 8484)
      • Unicorn-38488.exe (PID: 10444)
      • Unicorn-12560.exe (PID: 10796)
      • Unicorn-24298.exe (PID: 10316)
      • Unicorn-65362.exe (PID: 6248)
      • Unicorn-64964.exe (PID: 10040)
      • Unicorn-58088.exe (PID: 8752)
      • Unicorn-18649.exe (PID: 1020)
      • Unicorn-13075.exe (PID: 12016)
      • Unicorn-5026.exe (PID: 10188)
      • Unicorn-22078.exe (PID: 10404)
      • Unicorn-34766.exe (PID: 10480)
      • Unicorn-40355.exe (PID: 9676)
      • Unicorn-55556.exe (PID: 10720)
      • Unicorn-51944.exe (PID: 9816)
      • Unicorn-17697.exe (PID: 9344)
      • Unicorn-42986.exe (PID: 9572)
      • Unicorn-49505.exe (PID: 10008)
      • Unicorn-42489.exe (PID: 10332)
      • Unicorn-59100.exe (PID: 10460)
      • Unicorn-16878.exe (PID: 5588)
      • Unicorn-262.exe (PID: 9284)
      • Unicorn-39374.exe (PID: 4164)
      • Unicorn-57186.exe (PID: 10584)
      • Unicorn-25032.exe (PID: 8852)
      • Unicorn-40770.exe (PID: 8504)
      • Unicorn-58634.exe (PID: 10520)
      • Unicorn-63111.exe (PID: 10416)
      • Unicorn-4410.exe (PID: 12144)
      • Unicorn-28037.exe (PID: 10608)
      • Unicorn-32763.exe (PID: 9884)
      • Unicorn-9375.exe (PID: 9592)
      • Unicorn-27108.exe (PID: 11748)
      • Unicorn-42432.exe (PID: 9764)
      • Unicorn-59131.exe (PID: 9584)
      • Unicorn-12166.exe (PID: 8128)
      • Unicorn-10614.exe (PID: 10808)
      • Unicorn-1658.exe (PID: 8292)
      • Unicorn-51487.exe (PID: 10472)
      • Unicorn-5379.exe (PID: 732)
      • Unicorn-20267.exe (PID: 8384)
      • Unicorn-20149.exe (PID: 9864)
      • Unicorn-64999.exe (PID: 9412)
      • Unicorn-19168.exe (PID: 5048)
      • Unicorn-59048.exe (PID: 9520)
      • Unicorn-3195.exe (PID: 13284)
      • Unicorn-7210.exe (PID: 12236)
      • Unicorn-53480.exe (PID: 10180)
      • Unicorn-11776.exe (PID: 9224)
      • Unicorn-64580.exe (PID: 10168)
      • Unicorn-44160.exe (PID: 10052)
      • Unicorn-10652.exe (PID: 13780)
      • Unicorn-19324.exe (PID: 11672)
      • Unicorn-19042.exe (PID: 7548)
      • Unicorn-53205.exe (PID: 10144)
      • Unicorn-386.exe (PID: 12160)
      • Unicorn-16370.exe (PID: 12740)
      • Unicorn-58016.exe (PID: 13532)
      • Unicorn-59852.exe (PID: 6640)
      • Unicorn-7418.exe (PID: 9332)
      • Unicorn-50496.exe (PID: 8976)
      • Unicorn-60859.exe (PID: 11900)
      • Unicorn-28608.exe (PID: 11972)
      • Unicorn-34035.exe (PID: 7360)
      • Unicorn-15099.exe (PID: 10916)
      • Unicorn-14139.exe (PID: 13588)
      • Unicorn-36672.exe (PID: 10952)
      • Unicorn-37938.exe (PID: 11080)
      • Unicorn-37663.exe (PID: 12180)
      • Unicorn-30144.exe (PID: 13772)
      • Unicorn-13075.exe (PID: 12024)
      • Unicorn-46251.exe (PID: 10780)
      • Unicorn-36345.exe (PID: 11764)
      • Unicorn-60636.exe (PID: 8512)
      • Unicorn-65296.exe (PID: 10904)
      • Unicorn-42240.exe (PID: 9528)
      • Unicorn-26532.exe (PID: 12256)
      • Unicorn-2499.exe (PID: 11088)
      • Unicorn-33740.exe (PID: 13580)
      • Unicorn-10615.exe (PID: 7204)
      • Unicorn-46656.exe (PID: 10436)
      • Unicorn-14971.exe (PID: 12488)
      • Unicorn-29354.exe (PID: 12136)
      • Unicorn-8446.exe (PID: 11008)
      • Unicorn-40739.exe (PID: 11096)
      • Unicorn-2598.exe (PID: 13076)
      • Unicorn-5187.exe (PID: 11876)
      • Unicorn-5654.exe (PID: 9236)
      • Unicorn-21877.exe (PID: 10216)
      • Unicorn-40896.exe (PID: 9484)
      • Unicorn-3547.exe (PID: 10424)
      • Unicorn-16863.exe (PID: 11680)
      • Unicorn-63496.exe (PID: 13120)
      • Unicorn-16260.exe (PID: 10856)
      • Unicorn-13533.exe (PID: 13136)
      • Unicorn-32603.exe (PID: 10228)
      • Unicorn-7210.exe (PID: 12112)
      • Unicorn-17684.exe (PID: 10548)
      • Unicorn-13075.exe (PID: 12040)
      • Unicorn-6670.exe (PID: 11892)
      • Unicorn-46251.exe (PID: 10380)
      • Unicorn-13075.exe (PID: 12064)
      • Unicorn-49483.exe (PID: 11332)
      • Unicorn-51122.exe (PID: 7480)
      • Unicorn-14845.exe (PID: 4996)
      • Unicorn-9161.exe (PID: 10876)
      • Unicorn-14995.exe (PID: 9848)
      • Unicorn-3978.exe (PID: 10828)
      • Unicorn-7210.exe (PID: 12096)
      • Unicorn-49676.exe (PID: 8156)
      • Unicorn-53196.exe (PID: 8640)
      • Unicorn-62543.exe (PID: 12104)
      • Unicorn-54252.exe (PID: 7200)
      • Unicorn-46781.exe (PID: 12248)
      • Unicorn-13407.exe (PID: 10288)
      • Unicorn-6204.exe (PID: 2096)
      • Unicorn-6682.exe (PID: 13048)
      • Unicorn-17845.exe (PID: 9428)
      • Unicorn-10615.exe (PID: 2416)
      • Unicorn-58607.exe (PID: 11124)
      • Unicorn-52245.exe (PID: 9660)
      • Unicorn-38960.exe (PID: 9548)
      • Unicorn-9058.exe (PID: 8876)
      • Unicorn-6292.exe (PID: 7824)
      • Unicorn-10787.exe (PID: 12828)
      • Unicorn-52956.exe (PID: 13764)
    • Reads the computer name

      • Unicorn-2890.exe (PID: 5968)
      • 1 (1336).exe (PID: 6268)
      • Unicorn-55140.exe (PID: 7400)
      • Unicorn-14854.exe (PID: 7416)
      • Unicorn-9675.exe (PID: 7472)
      • Unicorn-57252.exe (PID: 7492)
      • Unicorn-51122.exe (PID: 7480)
      • Unicorn-19042.exe (PID: 7548)
      • Unicorn-3967.exe (PID: 7456)
      • Unicorn-4372.exe (PID: 7612)
      • Unicorn-23641.exe (PID: 7564)
      • Unicorn-4372.exe (PID: 7580)
      • Unicorn-63779.exe (PID: 7588)
      • Unicorn-12218.exe (PID: 7604)
      • Unicorn-13967.exe (PID: 7712)
      • Unicorn-41980.exe (PID: 7852)
      • Unicorn-47133.exe (PID: 7888)
      • Unicorn-14138.exe (PID: 7808)
      • Unicorn-2270.exe (PID: 7720)
      • Unicorn-7837.exe (PID: 7704)
      • Unicorn-5223.exe (PID: 7800)
      • Unicorn-14033.exe (PID: 8096)
      • Unicorn-56920.exe (PID: 8080)
      • Unicorn-12166.exe (PID: 8128)
      • Unicorn-33340.exe (PID: 8164)
      • Unicorn-6375.exe (PID: 7192)
      • Unicorn-17881.exe (PID: 3304)
      • Unicorn-40859.exe (PID: 6036)
      • Unicorn-31647.exe (PID: 4008)
      • Unicorn-53766.exe (PID: 5868)
      • Unicorn-62312.exe (PID: 7320)
      • Unicorn-22741.exe (PID: 6988)
      • Unicorn-47512.exe (PID: 1128)
      • Unicorn-27284.exe (PID: 6872)
      • Unicorn-4625.exe (PID: 2268)
      • Unicorn-74.exe (PID: 5548)
      • Unicorn-34108.exe (PID: 664)
      • Unicorn-18649.exe (PID: 1020)
      • Unicorn-59852.exe (PID: 6640)
      • Unicorn-24853.exe (PID: 5436)
      • Unicorn-14845.exe (PID: 4996)
      • Unicorn-51897.exe (PID: 7376)
      • Unicorn-54252.exe (PID: 7200)
      • Unicorn-54720.exe (PID: 1056)
      • Unicorn-39431.exe (PID: 4620)
      • Unicorn-44772.exe (PID: 8016)
      • Unicorn-34165.exe (PID: 7292)
      • Unicorn-23946.exe (PID: 2236)
      • Unicorn-7652.exe (PID: 8332)
      • Unicorn-12462.exe (PID: 4188)
      • Unicorn-45820.exe (PID: 5392)
      • Unicorn-28222.exe (PID: 7268)
      • Unicorn-40325.exe (PID: 8376)
      • Unicorn-43236.exe (PID: 1096)
      • Unicorn-13656.exe (PID: 8892)
      • Unicorn-50496.exe (PID: 8976)
      • Unicorn-46500.exe (PID: 8280)
      • Unicorn-16864.exe (PID: 8844)
      • Unicorn-56012.exe (PID: 8440)
      • Unicorn-56235.exe (PID: 6576)
      • Unicorn-60828.exe (PID: 8468)
      • Unicorn-39182.exe (PID: 3268)
      • Unicorn-57875.exe (PID: 8296)
      • Unicorn-21908.exe (PID: 6712)
      • Unicorn-21506.exe (PID: 4112)
      • Unicorn-47979.exe (PID: 8396)
      • Unicorn-7771.exe (PID: 6148)
      • Unicorn-48249.exe (PID: 7760)
      • Unicorn-4039.exe (PID: 7664)
      • Unicorn-2307.exe (PID: 8404)
      • Unicorn-17226.exe (PID: 8884)
      • Unicorn-4855.exe (PID: 10324)
      • Unicorn-1789.exe (PID: 9892)
      • Unicorn-13614.exe (PID: 8364)
      • Unicorn-14942.exe (PID: 8716)
      • Unicorn-23910.exe (PID: 9808)
      • Unicorn-40143.exe (PID: 8724)
      • Unicorn-10615.exe (PID: 2416)
      • Unicorn-46251.exe (PID: 10780)
      • Unicorn-42432.exe (PID: 9764)
      • Unicorn-12560.exe (PID: 10796)
      • Unicorn-7418.exe (PID: 9332)
      • Unicorn-32603.exe (PID: 10228)
      • Unicorn-7210.exe (PID: 12236)
      • Unicorn-53480.exe (PID: 10180)
      • Unicorn-42972.exe (PID: 15392)
      • Unicorn-38372.exe (PID: 15440)
      • Unicorn-7210.exe (PID: 12112)
      • Unicorn-16260.exe (PID: 10856)
      • Unicorn-10787.exe (PID: 12828)
      • Unicorn-16370.exe (PID: 12740)
      • Unicorn-62543.exe (PID: 12104)
    • Checks supported languages

      • Unicorn-2890.exe (PID: 5968)
      • 1 (1336).exe (PID: 6268)
      • Unicorn-55140.exe (PID: 7400)
      • Unicorn-14854.exe (PID: 7416)
      • Unicorn-9675.exe (PID: 7472)
      • Unicorn-3967.exe (PID: 7456)
      • Unicorn-19042.exe (PID: 7548)
      • Unicorn-23641.exe (PID: 7564)
      • Unicorn-57252.exe (PID: 7492)
      • Unicorn-51122.exe (PID: 7480)
      • Unicorn-4372.exe (PID: 7580)
      • Unicorn-12218.exe (PID: 7604)
      • Unicorn-4372.exe (PID: 7612)
      • Unicorn-6079.exe (PID: 7676)
      • Unicorn-28960.exe (PID: 7660)
      • Unicorn-7837.exe (PID: 7704)
      • Unicorn-42556.exe (PID: 7692)
      • Unicorn-13967.exe (PID: 7712)
      • Unicorn-5223.exe (PID: 7800)
      • Unicorn-6292.exe (PID: 7824)
      • Unicorn-40646.exe (PID: 7844)
      • Unicorn-63147.exe (PID: 7904)
      • Unicorn-11345.exe (PID: 7912)
      • Unicorn-47133.exe (PID: 7888)
      • Unicorn-56920.exe (PID: 8080)
      • Unicorn-7335.exe (PID: 8112)
      • Unicorn-49676.exe (PID: 8156)
      • Unicorn-33340.exe (PID: 8164)
      • Unicorn-6375.exe (PID: 7192)
      • Unicorn-17881.exe (PID: 3304)
      • Unicorn-22741.exe (PID: 6988)
      • Unicorn-8259.exe (PID: 7244)
      • Unicorn-40859.exe (PID: 6036)
      • Unicorn-53766.exe (PID: 5868)
      • Unicorn-59852.exe (PID: 6640)
      • Unicorn-34108.exe (PID: 664)
      • Unicorn-31647.exe (PID: 4008)
      • Unicorn-18649.exe (PID: 1020)
      • Unicorn-30024.exe (PID: 5408)
      • Unicorn-74.exe (PID: 5548)
      • Unicorn-6204.exe (PID: 2096)
      • Unicorn-5939.exe (PID: 7172)
      • Unicorn-14180.exe (PID: 7212)
      • Unicorn-39431.exe (PID: 4620)
      • Unicorn-27284.exe (PID: 6872)
      • Unicorn-32031.exe (PID: 6516)
      • Unicorn-51897.exe (PID: 7376)
      • Unicorn-54720.exe (PID: 1056)
      • Unicorn-43812.exe (PID: 7384)
      • Unicorn-23946.exe (PID: 2236)
      • Unicorn-14133.exe (PID: 2420)
      • Unicorn-4625.exe (PID: 2268)
      • Unicorn-34035.exe (PID: 7360)
      • Unicorn-43236.exe (PID: 1096)
      • Unicorn-10755.exe (PID: 1388)
      • Unicorn-24853.exe (PID: 5436)
      • Unicorn-56235.exe (PID: 6576)
      • Unicorn-10563.exe (PID: 6592)
      • Unicorn-43511.exe (PID: 2984)
      • Unicorn-12462.exe (PID: 4188)
      • Unicorn-56640.exe (PID: 2040)
      • Unicorn-14845.exe (PID: 4996)
      • Unicorn-45820.exe (PID: 5392)
      • Unicorn-41949.exe (PID: 7992)
      • Unicorn-44772.exe (PID: 8016)
      • Unicorn-17253.exe (PID: 8012)
      • Unicorn-34165.exe (PID: 7292)
      • Unicorn-28222.exe (PID: 7268)
      • Unicorn-17645.exe (PID: 7436)
      • Unicorn-23374.exe (PID: 7672)
      • Unicorn-18405.exe (PID: 7660)
      • Unicorn-25504.exe (PID: 8068)
      • Unicorn-16573.exe (PID: 3332)
      • Unicorn-57875.exe (PID: 8296)
      • Unicorn-4039.exe (PID: 7664)
      • Unicorn-46500.exe (PID: 8280)
      • Unicorn-7387.exe (PID: 8340)
      • Unicorn-47979.exe (PID: 8396)
      • Unicorn-56277.exe (PID: 8448)
      • Unicorn-2307.exe (PID: 8404)
      • Unicorn-47787.exe (PID: 8456)
      • Unicorn-7652.exe (PID: 8332)
      • Unicorn-20267.exe (PID: 8384)
      • Unicorn-27772.exe (PID: 8484)
      • Unicorn-23496.exe (PID: 8528)
      • Unicorn-60828.exe (PID: 8468)
      • Unicorn-19774.exe (PID: 8572)
      • Unicorn-40600.exe (PID: 8688)
      • Unicorn-27253.exe (PID: 8984)
      • Unicorn-58088.exe (PID: 8752)
      • Unicorn-16864.exe (PID: 8844)
      • Unicorn-5166.exe (PID: 8860)
      • Unicorn-14942.exe (PID: 8716)
      • Unicorn-50496.exe (PID: 8976)
      • Unicorn-25032.exe (PID: 8852)
      • Unicorn-28659.exe (PID: 8868)
      • Unicorn-9463.exe (PID: 900)
      • Unicorn-7771.exe (PID: 6148)
      • Unicorn-1658.exe (PID: 8292)
      • Unicorn-39182.exe (PID: 3268)
      • Unicorn-28021.exe (PID: 7864)
      • Unicorn-26760.exe (PID: 7396)
      • Unicorn-15769.exe (PID: 5576)
      • Unicorn-60501.exe (PID: 7820)
      • Unicorn-23426.exe (PID: 9268)
      • Unicorn-59048.exe (PID: 616)
      • Unicorn-5592.exe (PID: 9404)
      • Unicorn-7418.exe (PID: 9332)
      • Unicorn-53724.exe (PID: 9396)
      • Unicorn-46478.exe (PID: 9300)
      • Unicorn-42986.exe (PID: 9572)
      • Unicorn-8918.exe (PID: 9600)
      • Unicorn-52245.exe (PID: 9652)
      • Unicorn-41145.exe (PID: 10060)
      • Unicorn-42432.exe (PID: 9764)
      • Unicorn-17697.exe (PID: 9344)
      • Unicorn-47786.exe (PID: 9380)
      • Unicorn-54876.exe (PID: 9796)
      • Unicorn-51944.exe (PID: 9816)
      • Unicorn-56391.exe (PID: 9912)
      • Unicorn-53205.exe (PID: 10144)
      • Unicorn-53480.exe (PID: 10180)
      • Unicorn-21877.exe (PID: 10216)
      • Unicorn-42105.exe (PID: 5512)
      • Unicorn-195.exe (PID: 6940)
      • Unicorn-32603.exe (PID: 10228)
      • Unicorn-17684.exe (PID: 10548)
      • Unicorn-24298.exe (PID: 10316)
      • Unicorn-42489.exe (PID: 10332)
      • Unicorn-46251.exe (PID: 10356)
      • Unicorn-46251.exe (PID: 10372)
      • Unicorn-46251.exe (PID: 10364)
      • Unicorn-46251.exe (PID: 10380)
      • Unicorn-63111.exe (PID: 10416)
      • Unicorn-57186.exe (PID: 10584)
      • Unicorn-33636.exe (PID: 10788)
      • Unicorn-3547.exe (PID: 10424)
      • Unicorn-12560.exe (PID: 10796)
      • Unicorn-47348.exe (PID: 10616)
      • Unicorn-22078.exe (PID: 10404)
      • Unicorn-36345.exe (PID: 11764)
      • Unicorn-9109.exe (PID: 11704)
      • Unicorn-19324.exe (PID: 11672)
      • Unicorn-7210.exe (PID: 12112)
      • Unicorn-60859.exe (PID: 11900)
      • Unicorn-59012.exe (PID: 12048)
      • Unicorn-17508.exe (PID: 12208)
      • Unicorn-7210.exe (PID: 12236)
      • Unicorn-8446.exe (PID: 11008)
      • Unicorn-11555.exe (PID: 13236)
      • Unicorn-37938.exe (PID: 11080)
      • Unicorn-27003.exe (PID: 11104)
      • Unicorn-59012.exe (PID: 12000)
      • Unicorn-13075.exe (PID: 12024)
      • Unicorn-2598.exe (PID: 13112)
      • Unicorn-2598.exe (PID: 13084)
      • Unicorn-62535.exe (PID: 12996)
      • Unicorn-40739.exe (PID: 11096)
      • Unicorn-22198.exe (PID: 13152)
      • Unicorn-16037.exe (PID: 12508)
      • Unicorn-64550.exe (PID: 12540)
      • Unicorn-14871.exe (PID: 12820)
      • Unicorn-53999.exe (PID: 12780)
      • Unicorn-14279.exe (PID: 12688)
      • Unicorn-4082.exe (PID: 13556)
      • Unicorn-51694.exe (PID: 13524)
      • Unicorn-29151.exe (PID: 13604)
      • Unicorn-33740.exe (PID: 13580)
      • Unicorn-54662.exe (PID: 10816)
      • Unicorn-16370.exe (PID: 14388)
    • Create files in a temporary directory

      • Unicorn-14854.exe (PID: 7416)
      • Unicorn-2890.exe (PID: 5968)
      • Unicorn-3967.exe (PID: 7456)
      • Unicorn-55140.exe (PID: 7400)
      • Unicorn-9675.exe (PID: 7472)
      • Unicorn-19042.exe (PID: 7548)
      • Unicorn-59328.exe (PID: 7532)
      • 1 (1336).exe (PID: 6268)
      • Unicorn-63779.exe (PID: 7588)
      • Unicorn-57252.exe (PID: 7492)
      • Unicorn-31819.exe (PID: 7596)
      • Unicorn-12218.exe (PID: 7604)
      • Unicorn-23641.exe (PID: 7564)
      • Unicorn-4372.exe (PID: 7580)
      • Unicorn-6079.exe (PID: 7676)
      • Unicorn-51122.exe (PID: 7480)
      • Unicorn-2270.exe (PID: 7720)
      • Unicorn-13967.exe (PID: 7712)
      • Unicorn-5223.exe (PID: 7800)
      • Unicorn-11345.exe (PID: 7912)
      • Unicorn-377.exe (PID: 7896)
      • Unicorn-6292.exe (PID: 7824)
      • Unicorn-4372.exe (PID: 7612)
      • Unicorn-41980.exe (PID: 7852)
      • Unicorn-42556.exe (PID: 7692)
      • Unicorn-12166.exe (PID: 8128)
      • Unicorn-20334.exe (PID: 8136)
      • Unicorn-14033.exe (PID: 8096)
      • Unicorn-6375.exe (PID: 7192)
      • Unicorn-49676.exe (PID: 8156)
      • Unicorn-17881.exe (PID: 3304)
      • Unicorn-8259.exe (PID: 7244)
      • Unicorn-7837.exe (PID: 7704)
      • Unicorn-40859.exe (PID: 6036)
      • Unicorn-31647.exe (PID: 4008)
      • Unicorn-62312.exe (PID: 7320)
      • Unicorn-53766.exe (PID: 5868)
      • Unicorn-5939.exe (PID: 7172)
      • Unicorn-14180.exe (PID: 7212)
      • Unicorn-22741.exe (PID: 6988)
      • Unicorn-27284.exe (PID: 6872)
      • Unicorn-47512.exe (PID: 1128)
      • Unicorn-12518.exe (PID: 4448)
      • Unicorn-74.exe (PID: 5548)
      • Unicorn-18649.exe (PID: 1020)
      • Unicorn-47133.exe (PID: 7888)
      • Unicorn-54252.exe (PID: 7200)
      • Unicorn-14138.exe (PID: 7808)
      • Unicorn-10563.exe (PID: 6592)
      • Unicorn-39431.exe (PID: 4620)
      • Unicorn-56920.exe (PID: 8080)
      • Unicorn-14845.exe (PID: 4996)
      • Unicorn-23946.exe (PID: 2236)
      • Unicorn-44772.exe (PID: 8016)
      • Unicorn-34165.exe (PID: 7292)
      • Unicorn-10023.exe (PID: 7776)
      • Unicorn-23374.exe (PID: 7672)
      • Unicorn-45820.exe (PID: 5392)
      • Unicorn-43812.exe (PID: 7384)
      • Unicorn-40325.exe (PID: 8376)
      • Unicorn-14133.exe (PID: 2420)
      • Unicorn-7335.exe (PID: 8112)
      • Unicorn-33340.exe (PID: 8164)
      • Unicorn-47787.exe (PID: 8456)
      • Unicorn-4625.exe (PID: 2268)
      • Unicorn-30024.exe (PID: 5408)
      • Unicorn-18405.exe (PID: 7660)
      • Unicorn-25504.exe (PID: 8068)
      • Unicorn-43511.exe (PID: 2984)
      • Unicorn-56640.exe (PID: 2040)
      • Unicorn-16573.exe (PID: 3332)
      • Unicorn-50496.exe (PID: 8976)
      • Unicorn-56277.exe (PID: 8448)
      • Unicorn-46500.exe (PID: 8280)
      • Unicorn-16864.exe (PID: 8844)
      • Unicorn-10755.exe (PID: 1388)
      • Unicorn-27315.exe (PID: 8520)
      • Unicorn-52918.exe (PID: 7448)
      • Unicorn-2836.exe (PID: 1512)
      • Unicorn-57875.exe (PID: 8296)
      • Unicorn-41678.exe (PID: 8552)
      • Unicorn-21908.exe (PID: 6712)
      • Unicorn-40646.exe (PID: 7844)
      • Unicorn-9188.exe (PID: 8612)
      • Unicorn-39182.exe (PID: 3268)
      • Unicorn-28222.exe (PID: 7268)
      • Unicorn-40600.exe (PID: 8688)
      • Unicorn-47979.exe (PID: 8396)
      • Unicorn-20542.exe (PID: 8732)
      • Unicorn-48249.exe (PID: 7760)
      • Unicorn-7771.exe (PID: 6148)
      • Unicorn-2307.exe (PID: 8404)
      • Unicorn-13614.exe (PID: 5156)
      • Unicorn-17226.exe (PID: 8884)
      • Unicorn-7403.exe (PID: 10088)
      • Unicorn-23426.exe (PID: 9268)
      • Unicorn-41145.exe (PID: 10060)
      • Unicorn-32031.exe (PID: 6516)
      • Unicorn-57320.exe (PID: 8604)
      • Unicorn-9463.exe (PID: 900)
      • Unicorn-46251.exe (PID: 10364)
      • Unicorn-4750.exe (PID: 7188)
      • Unicorn-17253.exe (PID: 8012)
      • Unicorn-15769.exe (PID: 5576)
      • Unicorn-50791.exe (PID: 9900)
      • Unicorn-59624.exe (PID: 8208)
      • Unicorn-8918.exe (PID: 9600)
      • Unicorn-62172.exe (PID: 8792)
      • Unicorn-13656.exe (PID: 8892)
      • Unicorn-53724.exe (PID: 9396)
      • Unicorn-60828.exe (PID: 8468)
      • Unicorn-54720.exe (PID: 1056)
      • Unicorn-24853.exe (PID: 5436)
      • Unicorn-21506.exe (PID: 4112)
      • Unicorn-24298.exe (PID: 10316)
      • Unicorn-17736.exe (PID: 9564)
      • Unicorn-58088.exe (PID: 8752)
      • Unicorn-4750.exe (PID: 4244)
      • Unicorn-49505.exe (PID: 10008)
      • Unicorn-63376.exe (PID: 11184)
      • Unicorn-59100.exe (PID: 10460)
      • Unicorn-59048.exe (PID: 9520)
      • Unicorn-20149.exe (PID: 9864)
      • Unicorn-20267.exe (PID: 8384)
      • Unicorn-3195.exe (PID: 13284)
      • Unicorn-7210.exe (PID: 12236)
    • Creates files or folders in the user directory

      • WerFault.exe (PID: 7868)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | Win32 Executable Microsoft Visual Basic 6 (90.6)
.exe | Win32 Executable (generic) (4.9)
.exe | Generic Win/DOS Executable (2.2)
.exe | DOS Executable Generic (2.2)

EXIF

EXE

MachineType: Intel 386 or later, and compatibles
TimeStamp: 2019:01:19 13:34:56+00:00
ImageFileCharacteristics: No relocs, Executable, No line numbers, No symbols, 32-bit, No debug, Removable run from swap, Net run from swap, Uniprocessor only, Bytes reversed hi
PEType: PE32
LinkerVersion: 6
CodeSize: 176128
InitializedDataSize: 299008
UninitializedDataSize: -
EntryPoint: 0x13d4
OSVersion: 4
ImageVersion: 1
SubsystemVersion: 4
Subsystem: Windows GUI
FileVersionNumber: 1.0.0.0
ProductVersionNumber: 1.0.0.0
FileFlagsMask: 0x003f
FileFlags: (none)
FileOS: Win32
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: Chinese (Simplified)
CharacterSet: Unicode
CompanyName: UEFI
ProductName: Kawaii-Unicorn
FileVersion: 1
ProductVersion: 1
InternalName: Kawaii-Unicorn
OriginalFileName: Kawaii-Unicorn.exe
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
717
Monitored processes
581
Malicious processes
83
Suspicious processes
65

Behavior graph

Click at the process to see the details
start 1 (1336).exe unicorn-2890.exe sppextcomobj.exe no specs slui.exe unicorn-55140.exe unicorn-14854.exe unicorn-3967.exe unicorn-9675.exe unicorn-51122.exe unicorn-57252.exe unicorn-59328.exe unicorn-19042.exe unicorn-23641.exe unicorn-4372.exe unicorn-63779.exe unicorn-31819.exe unicorn-12218.exe unicorn-4372.exe unicorn-28960.exe unicorn-6079.exe unicorn-42556.exe unicorn-7837.exe unicorn-13967.exe unicorn-2270.exe unicorn-5223.exe unicorn-14138.exe unicorn-6292.exe unicorn-40646.exe unicorn-41980.exe werfault.exe no specs unicorn-47133.exe unicorn-377.exe unicorn-63147.exe unicorn-11345.exe unicorn-56920.exe unicorn-14033.exe unicorn-7335.exe unicorn-12166.exe unicorn-20334.exe unicorn-49676.exe unicorn-33340.exe unicorn-6375.exe unicorn-17881.exe unicorn-40859.exe unicorn-22741.exe unicorn-8259.exe unicorn-53766.exe unicorn-34108.exe unicorn-31647.exe unicorn-30024.exe unicorn-51876.exe unicorn-74.exe unicorn-6204.exe unicorn-5939.exe unicorn-18649.exe unicorn-12518.exe unicorn-62312.exe unicorn-54252.exe unicorn-14180.exe unicorn-59852.exe unicorn-39431.exe unicorn-32031.exe unicorn-51897.exe unicorn-54720.exe unicorn-34035.exe unicorn-43812.exe unicorn-23946.exe unicorn-27284.exe unicorn-47512.exe unicorn-4625.exe unicorn-14133.exe unicorn-10755.exe unicorn-43236.exe unicorn-24853.exe unicorn-10563.exe unicorn-56235.exe unicorn-43511.exe unicorn-12462.exe unicorn-56640.exe unicorn-14845.exe unicorn-45820.exe unicorn-17645.exe unicorn-28222.exe unicorn-34165.exe unicorn-10023.exe unicorn-17253.exe unicorn-41949.exe unicorn-44772.exe unicorn-4039.exe unicorn-23374.exe unicorn-18405.exe unicorn-16573.exe unicorn-25504.exe unicorn-13614.exe unicorn-16878.exe unicorn-2836.exe unicorn-46500.exe unicorn-57875.exe unicorn-7652.exe unicorn-7387.exe unicorn-13614.exe unicorn-40325.exe unicorn-20267.exe unicorn-47979.exe unicorn-2307.exe unicorn-56012.exe unicorn-56277.exe unicorn-47787.exe unicorn-60828.exe unicorn-27772.exe unicorn-40770.exe unicorn-60636.exe unicorn-27315.exe unicorn-23496.exe unicorn-41678.exe unicorn-19774.exe unicorn-57320.exe unicorn-9188.exe unicorn-53196.exe unicorn-40600.exe unicorn-14942.exe unicorn-40143.exe unicorn-20542.exe unicorn-58088.exe unicorn-62172.exe unicorn-16864.exe unicorn-25032.exe unicorn-5166.exe unicorn-28659.exe unicorn-9058.exe unicorn-17226.exe unicorn-13656.exe unicorn-50496.exe unicorn-27253.exe unicorn-21908.exe unicorn-44366.exe unicorn-9463.exe unicorn-7771.exe unicorn-59048.exe unicorn-1658.exe unicorn-59624.exe unicorn-39182.exe unicorn-28021.exe unicorn-48249.exe unicorn-60501.exe unicorn-52918.exe unicorn-26760.exe no specs unicorn-39374.exe unicorn-65362.exe unicorn-19168.exe unicorn-21506.exe unicorn-15769.exe unicorn-5379.exe unicorn-11776.exe unicorn-5654.exe unicorn-23426.exe unicorn-262.exe unicorn-46478.exe unicorn-32742.exe unicorn-32742.exe unicorn-7418.exe unicorn-17697.exe unicorn-47786.exe no specs unicorn-53724.exe unicorn-5592.exe unicorn-64999.exe unicorn-17845.exe unicorn-48686.exe unicorn-40896.exe unicorn-59048.exe unicorn-42240.exe unicorn-13376.exe no specs unicorn-38960.exe unicorn-17736.exe unicorn-42986.exe unicorn-59131.exe unicorn-9375.exe unicorn-8918.exe unicorn-52245.exe unicorn-52245.exe unicorn-40355.exe unicorn-40578.exe unicorn-42432.exe unicorn-54876.exe unicorn-23910.exe unicorn-51944.exe unicorn-14995.exe unicorn-20149.exe unicorn-43160.exe unicorn-32763.exe unicorn-1789.exe unicorn-50791.exe unicorn-56391.exe unicorn-49505.exe unicorn-64964.exe unicorn-44160.exe unicorn-41145.exe unicorn-7403.exe unicorn-53205.exe unicorn-64580.exe unicorn-53480.exe unicorn-5026.exe unicorn-21877.exe unicorn-32603.exe unicorn-42105.exe unicorn-195.exe unicorn-65348.exe unicorn-13407.exe unicorn-24298.exe unicorn-4855.exe unicorn-42489.exe unicorn-46251.exe unicorn-46251.exe unicorn-46251.exe no specs unicorn-46251.exe unicorn-59847.exe no specs unicorn-22078.exe unicorn-63111.exe unicorn-3547.exe unicorn-46656.exe unicorn-38488.exe unicorn-59100.exe unicorn-51487.exe unicorn-34766.exe unicorn-58634.exe unicorn-17684.exe unicorn-57186.exe unicorn-28037.exe unicorn-47348.exe unicorn-55556.exe unicorn-52157.exe unicorn-46251.exe unicorn-33636.exe unicorn-12560.exe unicorn-10614.exe unicorn-54662.exe no specs unicorn-3978.exe unicorn-17713.exe no specs unicorn-23579.exe no specs unicorn-16260.exe unicorn-9161.exe unicorn-44949.exe no specs unicorn-14913.exe no specs unicorn-65296.exe unicorn-15099.exe unicorn-54086.exe no specs unicorn-24298.exe no specs unicorn-36672.exe unicorn-36672.exe no specs unicorn-24420.exe no specs unicorn-8446.exe unicorn-13044.exe no specs unicorn-56900.exe no specs unicorn-37938.exe no specs unicorn-37938.exe unicorn-2499.exe unicorn-40739.exe unicorn-27003.exe no specs unicorn-58607.exe unicorn-63376.exe unicorn-4750.exe unicorn-4750.exe unicorn-10615.exe unicorn-10615.exe unicorn-10615.exe unicorn-49483.exe unicorn-298.exe no specs unicorn-7189.exe no specs unicorn-19324.exe unicorn-16863.exe unicorn-9109.exe no specs unicorn-27108.exe unicorn-36345.exe unicorn-5187.exe unicorn-5187.exe no specs unicorn-6670.exe unicorn-60859.exe unicorn-22085.exe no specs unicorn-59033.exe no specs unicorn-28608.exe unicorn-37580.exe no specs unicorn-53412.exe no specs unicorn-59012.exe no specs unicorn-59012.exe no specs unicorn-13075.exe unicorn-13075.exe unicorn-13075.exe no specs unicorn-13075.exe unicorn-59012.exe no specs unicorn-13075.exe unicorn-43090.exe no specs unicorn-29354.exe no specs unicorn-7210.exe unicorn-62543.exe unicorn-7210.exe unicorn-7210.exe no specs unicorn-29354.exe unicorn-4410.exe unicorn-386.exe unicorn-29760.exe no specs unicorn-37663.exe unicorn-17508.exe no specs unicorn-7210.exe unicorn-46781.exe unicorn-26532.exe unicorn-55156.exe no specs unicorn-14971.exe unicorn-7945.exe no specs unicorn-16037.exe no specs unicorn-64550.exe no specs unicorn-14279.exe no specs unicorn-30725.exe no specs unicorn-34368.exe no specs unicorn-54994.exe no specs unicorn-16370.exe unicorn-23355.exe no specs unicorn-53999.exe no specs unicorn-31523.exe no specs unicorn-31523.exe no specs unicorn-19685.exe no specs unicorn-14871.exe no specs unicorn-10787.exe unicorn-26885.exe no specs unicorn-61057.exe unicorn-61420.exe unicorn-61420.exe unicorn-22722.exe no specs unicorn-22722.exe no specs unicorn-40127.exe no specs unicorn-39184.exe no specs unicorn-39184.exe no specs unicorn-39184.exe no specs unicorn-62535.exe no specs unicorn-16333.exe no specs unicorn-16333.exe no specs unicorn-16333.exe no specs unicorn-16333.exe no specs unicorn-16333.exe no specs unicorn-6682.exe unicorn-16333.exe no specs unicorn-2598.exe no specs unicorn-2598.exe unicorn-2598.exe no specs unicorn-2598.exe no specs unicorn-2598.exe no specs unicorn-2598.exe no specs unicorn-63496.exe unicorn-2598.exe no specs unicorn-13533.exe unicorn-22198.exe no specs unicorn-22198.exe no specs unicorn-64757.exe no specs unicorn-11555.exe no specs unicorn-15166.exe no specs unicorn-372.exe no specs unicorn-3195.exe unicorn-32853.exe no specs unicorn-23424.exe no specs unicorn-40829.exe no specs unicorn-18538.exe no specs unicorn-61123.exe no specs unicorn-51694.exe no specs unicorn-58016.exe unicorn-4082.exe no specs unicorn-27874.exe no specs unicorn-33740.exe unicorn-14139.exe unicorn-4731.exe no specs unicorn-29151.exe no specs unicorn-55172.exe no specs unicorn-1332.exe no specs unicorn-17711.exe no specs unicorn-25847.exe no specs unicorn-17181.exe no specs unicorn-17181.exe no specs unicorn-55312.exe no specs unicorn-36449.exe no specs unicorn-15483.exe no specs unicorn-23325.exe no specs unicorn-52956.exe no specs unicorn-44264.exe no specs unicorn-28062.exe no specs unicorn-9301.exe no specs unicorn-1154.exe no specs unicorn-18538.exe no specs unicorn-40247.exe no specs unicorn-52956.exe unicorn-30144.exe unicorn-10652.exe unicorn-38364.exe no specs unicorn-15622.exe no specs unicorn-53465.exe no specs unicorn-63937.exe no specs unicorn-3200.exe no specs unicorn-60630.exe no specs unicorn-26474.exe no specs unicorn-32041.exe no specs unicorn-25728.exe no specs unicorn-63553.exe no specs unicorn-18437.exe no specs unicorn-30964.exe no specs unicorn-56288.exe no specs unicorn-34804.exe no specs unicorn-10740.exe no specs unicorn-42339.exe no specs unicorn-18364.exe no specs unicorn-35660.exe no specs unicorn-29794.exe no specs unicorn-29794.exe no specs unicorn-11228.exe no specs unicorn-58406.exe no specs unicorn-1799.exe no specs unicorn-25187.exe no specs unicorn-35624.exe no specs unicorn-31348.exe no specs slui.exe no specs unicorn-33030.exe no specs unicorn-2759.exe no specs unicorn-15374.exe no specs unicorn-53392.exe no specs unicorn-7720.exe no specs unicorn-19973.exe no specs unicorn-43707.exe no specs unicorn-47684.exe no specs unicorn-11118.exe no specs unicorn-25401.exe no specs unicorn-61280.exe no specs unicorn-57559.exe no specs unicorn-40668.exe no specs unicorn-15780.exe no specs unicorn-50948.exe no specs unicorn-23424.exe no specs unicorn-60704.exe no specs unicorn-1503.exe no specs unicorn-39324.exe no specs unicorn-16370.exe no specs unicorn-52956.exe no specs unicorn-54631.exe no specs unicorn-64421.exe no specs unicorn-52956.exe no specs unicorn-30105.exe no specs unicorn-10740.exe no specs unicorn-46265.exe no specs unicorn-45503.exe no specs unicorn-11222.exe no specs unicorn-49272.exe no specs unicorn-4410.exe no specs unicorn-65525.exe no specs unicorn-64565.exe no specs unicorn-956.exe no specs unicorn-956.exe no specs unicorn-37226.exe no specs unicorn-6416.exe no specs unicorn-57256.exe no specs unicorn-36571.exe no specs unicorn-6416.exe no specs unicorn-15081.exe no specs unicorn-61018.exe no specs unicorn-36571.exe no specs unicorn-15081.exe no specs unicorn-15081.exe no specs unicorn-15081.exe no specs unicorn-27905.exe no specs unicorn-49835.exe no specs unicorn-49835.exe no specs unicorn-9216.exe no specs unicorn-9216.exe no specs unicorn-9216.exe no specs unicorn-41798.exe no specs unicorn-52470.exe no specs unicorn-18453.exe no specs unicorn-47668.exe no specs unicorn-30012.exe no specs unicorn-30105.exe no specs unicorn-47355.exe no specs unicorn-39744.exe no specs unicorn-49116.exe no specs unicorn-34804.exe no specs unicorn-54631.exe no specs unicorn-37226.exe no specs unicorn-54631.exe no specs unicorn-58024.exe no specs unicorn-37714.exe no specs unicorn-18378.exe no specs unicorn-26008.exe no specs unicorn-25218.exe no specs unicorn-18909.exe no specs unicorn-26058.exe no specs unicorn-54994.exe no specs unicorn-1154.exe no specs unicorn-49116.exe no specs unicorn-10662.exe no specs unicorn-43745.exe no specs unicorn-28062.exe no specs unicorn-41798.exe no specs unicorn-18378.exe no specs unicorn-47663.exe no specs unicorn-37714.exe no specs unicorn-26696.exe no specs unicorn-15512.exe no specs unicorn-56403.exe no specs unicorn-10740.exe no specs unicorn-65068.exe no specs unicorn-4923.exe no specs unicorn-6083.exe no specs unicorn-28062.exe no specs unicorn-54425.exe no specs unicorn-47663.exe no specs unicorn-47663.exe no specs unicorn-47663.exe no specs unicorn-47663.exe no specs unicorn-38998.exe no specs unicorn-28062.exe no specs unicorn-58016.exe no specs unicorn-647.exe no specs unicorn-16984.exe no specs unicorn-42972.exe no specs unicorn-38372.exe no specs unicorn-33320.exe no specs unicorn-18538.exe no specs unicorn-58023.exe no specs unicorn-26120.exe no specs unicorn-31548.exe no specs unicorn-11127.exe no specs unicorn-44869.exe no specs unicorn-17086.exe no specs unicorn-3955.exe no specs unicorn-21286.exe no specs unicorn-61781.exe no specs unicorn-43975.exe no specs unicorn-43975.exe no specs unicorn-43975.exe no specs unicorn-52544.exe no specs unicorn-7619.exe no specs unicorn-45123.exe no specs unicorn-35160.exe no specs unicorn-35160.exe no specs unicorn-28061.exe no specs unicorn-19893.exe no specs unicorn-25187.exe no specs unicorn-44459.exe no specs unicorn-7646.exe no specs unicorn-16311.exe no specs unicorn-41443.exe no specs unicorn-24252.exe no specs unicorn-52840.exe no specs unicorn-20168.exe no specs unicorn-20168.exe no specs unicorn-38350.exe no specs unicorn-4194.exe no specs unicorn-4194.exe no specs unicorn-46518.exe no specs unicorn-41200.exe no specs unicorn-15129.exe no specs unicorn-35335.exe no specs unicorn-55755.exe no specs unicorn-35335.exe no specs unicorn-55755.exe no specs unicorn-21599.exe no specs unicorn-21599.exe no specs unicorn-17929.exe no specs unicorn-23795.exe no specs unicorn-52383.exe no specs unicorn-35335.exe no specs unicorn-4194.exe no specs unicorn-15129.exe no specs unicorn-64131.exe no specs unicorn-32782.exe no specs unicorn-32782.exe no specs unicorn-15129.exe no specs unicorn-4194.exe no specs unicorn-21599.exe no specs unicorn-21599.exe no specs unicorn-23795.exe no specs unicorn-15659.exe no specs unicorn-23795.exe no specs unicorn-17929.exe no specs unicorn-21599.exe no specs unicorn-38350.exe no specs unicorn-21599.exe no specs unicorn-41200.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
616C:\Users\admin\AppData\Local\Temp\Unicorn-59048.exeC:\Users\admin\AppData\Local\Temp\Unicorn-59048.exe
Unicorn-40325.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-59048.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
664C:\Users\admin\AppData\Local\Temp\Unicorn-34108.exeC:\Users\admin\AppData\Local\Temp\Unicorn-34108.exe
Unicorn-14138.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-34108.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
732C:\Users\admin\AppData\Local\Temp\Unicorn-5379.exeC:\Users\admin\AppData\Local\Temp\Unicorn-5379.exe
Unicorn-23374.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-5379.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
900C:\Users\admin\AppData\Local\Temp\Unicorn-9463.exeC:\Users\admin\AppData\Local\Temp\Unicorn-9463.exe
Unicorn-28222.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-9463.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1020C:\Users\admin\AppData\Local\Temp\Unicorn-18649.exeC:\Users\admin\AppData\Local\Temp\Unicorn-18649.exe
Unicorn-377.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-18649.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1056C:\Users\admin\AppData\Local\Temp\Unicorn-54720.exeC:\Users\admin\AppData\Local\Temp\Unicorn-54720.exe
Unicorn-14033.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-54720.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1096C:\Users\admin\AppData\Local\Temp\Unicorn-43236.exeC:\Users\admin\AppData\Local\Temp\Unicorn-43236.exe
Unicorn-6375.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-43236.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1128C:\Users\admin\AppData\Local\Temp\Unicorn-47512.exeC:\Users\admin\AppData\Local\Temp\Unicorn-47512.exe
Unicorn-20334.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-47512.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1388C:\Users\admin\AppData\Local\Temp\Unicorn-10755.exeC:\Users\admin\AppData\Local\Temp\Unicorn-10755.exe
Unicorn-33340.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-10755.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1512C:\Users\admin\AppData\Local\Temp\Unicorn-2836.exeC:\Users\admin\AppData\Local\Temp\Unicorn-2836.exe
Unicorn-22741.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-2836.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
Total events
11 568
Read events
11 568
Write events
0
Delete events
0

Modification events

No data
Executable files
740
Suspicious files
3
Text files
1
Unknown types
0

Dropped files

PID
Process
Filename
Type
7416Unicorn-14854.exeC:\Users\admin\AppData\Local\Temp\Unicorn-57252.exeexecutable
MD5:4EEFF78CCF2C51C4DCE1FEAC8DD0E723
SHA256:AAE5B8768D1ACC8827330929C1C6355BB94C881F5FC3CD67061308DAFE8383A7
7472Unicorn-9675.exeC:\Users\admin\AppData\Local\Temp\Unicorn-23641.exeexecutable
MD5:DAD693CA998C4A6D5809FDA6FB3B5B0A
SHA256:76ECC6A223D009E9DC8B5A80A1D5A5FC7D2997010CE7B2FE65350A75649D710E
62681 (1336).exeC:\Users\admin\AppData\Local\Temp\Unicorn-51122.exeexecutable
MD5:C65D16541B226EE87604361C416CCDF8
SHA256:8267958673BC67516D01795983AD8CAB05AC8510FFDEE6AEF2D620DCA2C447A1
62681 (1336).exeC:\Users\admin\AppData\Local\Temp\Unicorn-14854.exeexecutable
MD5:A604DA1C9634B202E594E9F6E88408F4
SHA256:3880FA8948444B82BF98A3B3BA79A33F907B0A1C5092F244FBB2D1DB7F9F8CC6
5968Unicorn-2890.exeC:\Users\admin\AppData\Local\Temp\Unicorn-55140.exeexecutable
MD5:2F4E8DA08428C2794A84F10374846C70
SHA256:882EFC1E022AD4E28AC8D7A84D71936668270968C4BBC836BF03914C3D36ED12
7400Unicorn-55140.exeC:\Users\admin\AppData\Local\Temp\Unicorn-3967.exeexecutable
MD5:C013C280B3C4836A6DF065F9704BA8E2
SHA256:A1618F8FEF693F6BD4FB9C453340CF3B27916E6C7FD800FE14406AC53C103C82
5968Unicorn-2890.exeC:\Users\admin\AppData\Local\Temp\Unicorn-9675.exeexecutable
MD5:A2BB48AF7336473E381B82792DFD5099
SHA256:BFB109623A293A432DB7BDBDACAC5EF9E0E1F5FEAF0008398A0044FF73B3CF25
62681 (1336).exeC:\Users\admin\AppData\Local\Temp\Unicorn-2890.exeexecutable
MD5:6883BF24B97378DF12EAEC83BE3578E3
SHA256:BEFB0571BCD7575A520E695B2CC4C119A3A81F90D69E760EABF3305F80B2115A
7492Unicorn-57252.exeC:\Users\admin\AppData\Local\Temp\Unicorn-4372.exeexecutable
MD5:A766F8E41BEB01D11BA352438A6140FA
SHA256:8ABB8D2456F6262BDE83043FA5F52CB88ED490817FEC83D2055EA582AEE31861
7472Unicorn-9675.exeC:\Users\admin\AppData\Local\Temp\Unicorn-2270.exeexecutable
MD5:1A2A30751FD649015DDCA64B40BDD23B
SHA256:704D7DE9091268593F5EEA7D383EFFC6914B130D9C631D353D13C496E94EB6F2
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
5
TCP/UDP connections
22
DNS requests
16
Threats
0

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
GET
200
23.48.23.176:80
http://crl.microsoft.com/pki/crl/products/MicRooCerAut2011_2011_03_22.crl
unknown
whitelisted
5116
SIHClient.exe
GET
200
23.219.150.101:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Product%20Root%20Certificate%20Authority%202018.crl
unknown
whitelisted
5116
SIHClient.exe
GET
200
23.219.150.101:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Update%20Secure%20Server%20CA%202.1.crl
unknown
whitelisted
6544
svchost.exe
GET
200
184.30.131.245:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
1812
backgroundTaskHost.exe
GET
200
184.30.131.245:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAUZZSZEml49Gjh0j13P68w%3D
unknown
whitelisted
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
20.73.194.208:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
4
System
192.168.100.255:137
whitelisted
23.48.23.176:80
crl.microsoft.com
Akamai International B.V.
DE
whitelisted
4
System
192.168.100.255:138
whitelisted
3216
svchost.exe
40.113.103.199:443
client.wns.windows.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
6544
svchost.exe
20.190.159.128:443
login.live.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
6544
svchost.exe
184.30.131.245:80
ocsp.digicert.com
AKAMAI-AS
US
whitelisted
1812
backgroundTaskHost.exe
20.223.35.26:443
arc.msn.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
1812
backgroundTaskHost.exe
184.30.131.245:80
ocsp.digicert.com
AKAMAI-AS
US
whitelisted
5116
SIHClient.exe
4.175.87.197:443
slscr.update.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
US
whitelisted

DNS requests

Domain
IP
Reputation
google.com
  • 142.250.186.174
whitelisted
settings-win.data.microsoft.com
  • 20.73.194.208
  • 51.104.136.2
whitelisted
crl.microsoft.com
  • 23.48.23.176
  • 23.48.23.177
  • 23.48.23.167
  • 23.48.23.168
  • 23.48.23.174
  • 23.48.23.189
  • 23.48.23.162
  • 23.48.23.179
  • 23.48.23.172
whitelisted
client.wns.windows.com
  • 40.113.103.199
whitelisted
login.live.com
  • 20.190.159.128
  • 40.126.31.129
  • 40.126.31.128
  • 20.190.159.68
  • 20.190.159.71
  • 20.190.159.64
  • 40.126.31.3
  • 40.126.31.2
whitelisted
ocsp.digicert.com
  • 184.30.131.245
whitelisted
arc.msn.com
  • 20.223.35.26
whitelisted
slscr.update.microsoft.com
  • 4.175.87.197
whitelisted
www.microsoft.com
  • 23.219.150.101
whitelisted
fe3cr.delivery.mp.microsoft.com
  • 20.242.39.171
whitelisted

Threats

No threats detected
No debug info