File name:

1 (1300)

Full analysis: https://app.any.run/tasks/5f5c1f33-bf71-491c-911e-a107d286372e
Verdict: Malicious activity
Analysis date: March 24, 2025, 13:20:37
OS: Windows 10 Professional (build: 19045, 64 bit)
Indicators:
MIME: application/vnd.microsoft.portable-executable
File info: PE32 executable (GUI) Intel 80386, for MS Windows, 3 sections
MD5:

B40073597A3074ED90EC8A618FE38DC0

SHA1:

98F181F12CE30C30EB1BB1E5593BFE59F9B2DEC7

SHA256:

4610B42C9AE5442135F4C7B4D0DFAAF0726897F92E3AD38078CE17204A2F0900

SSDEEP:

3072:vjD+0bA/wDYCVgN8ikWNW54tEzupzKbZfpfuPh+oLcwuIF:vjD+0bAID4mZW5tdW9fpfuPh+oLcwuI

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    No malicious indicators.
  • SUSPICIOUS

    • Starts itself from another location

      • 1 (1300).exe (PID: 1764)
      • Unicorn-55984.exe (PID: 1324)
      • Unicorn-40655.exe (PID: 3900)
      • Unicorn-20868.exe (PID: 6040)
      • Unicorn-12699.exe (PID: 2096)
      • Unicorn-47432.exe (PID: 4560)
      • Unicorn-41650.exe (PID: 4988)
      • Unicorn-55386.exe (PID: 1164)
      • Unicorn-58823.exe (PID: 6028)
      • Unicorn-52279.exe (PID: 6972)
      • Unicorn-21417.exe (PID: 5740)
      • Unicorn-28873.exe (PID: 5552)
      • Unicorn-64531.exe (PID: 1616)
      • Unicorn-33032.exe (PID: 1328)
      • Unicorn-27028.exe (PID: 6468)
      • Unicorn-50115.exe (PID: 2240)
      • Unicorn-20077.exe (PID: 5260)
      • Unicorn-29031.exe (PID: 5436)
      • Unicorn-9165.exe (PID: 4464)
      • Unicorn-55673.exe (PID: 1240)
      • Unicorn-35004.exe (PID: 5936)
      • Unicorn-49543.exe (PID: 208)
      • Unicorn-42352.exe (PID: 6872)
      • Unicorn-2066.exe (PID: 864)
      • Unicorn-13001.exe (PID: 4784)
      • Unicorn-21666.exe (PID: 6876)
      • Unicorn-42352.exe (PID: 5392)
      • Unicorn-9274.exe (PID: 632)
      • Unicorn-32596.exe (PID: 7248)
      • Unicorn-4562.exe (PID: 7268)
      • Unicorn-55756.exe (PID: 7200)
      • Unicorn-61931.exe (PID: 7284)
      • Unicorn-50778.exe (PID: 7320)
      • Unicorn-65076.exe (PID: 7304)
      • Unicorn-32404.exe (PID: 7340)
      • Unicorn-19886.exe (PID: 7356)
      • Unicorn-1319.exe (PID: 1040)
      • Unicorn-24406.exe (PID: 7408)
      • Unicorn-49760.exe (PID: 7436)
      • Unicorn-56524.exe (PID: 7384)
      • Unicorn-5006.exe (PID: 7488)
      • Unicorn-6489.exe (PID: 7500)
      • Unicorn-61820.exe (PID: 7540)
      • Unicorn-53387.exe (PID: 7556)
      • Unicorn-33232.exe (PID: 7576)
      • Unicorn-4259.exe (PID: 7636)
      • Unicorn-40246.exe (PID: 7676)
      • Unicorn-16512.exe (PID: 7596)
      • Unicorn-4259.exe (PID: 7620)
      • Unicorn-47330.exe (PID: 7700)
      • Unicorn-33594.exe (PID: 7708)
      • Unicorn-41762.exe (PID: 7660)
      • Unicorn-52698.exe (PID: 7688)
      • Unicorn-51851.exe (PID: 7804)
      • Unicorn-22516.exe (PID: 7764)
      • Unicorn-5914.exe (PID: 7796)
      • Unicorn-49626.exe (PID: 7192)
      • Unicorn-51467.exe (PID: 7860)
      • Unicorn-42744.exe (PID: 7924)
      • Unicorn-22516.exe (PID: 7772)
      • Unicorn-36614.exe (PID: 7916)
      • Unicorn-63941.exe (PID: 7932)
      • Unicorn-53735.exe (PID: 7964)
      • Unicorn-16102.exe (PID: 7884)
      • Unicorn-40091.exe (PID: 8040)
      • Unicorn-46636.exe (PID: 8032)
      • Unicorn-62972.exe (PID: 7980)
      • Unicorn-59957.exe (PID: 8048)
      • Unicorn-25453.exe (PID: 8064)
      • Unicorn-40781.exe (PID: 8120)
      • Unicorn-8571.exe (PID: 8112)
      • Unicorn-28437.exe (PID: 8104)
      • Unicorn-4259.exe (PID: 7624)
      • Unicorn-54010.exe (PID: 8096)
      • Unicorn-6563.exe (PID: 8168)
      • Unicorn-52640.exe (PID: 672)
      • Unicorn-3439.exe (PID: 3332)
      • Unicorn-33424.exe (PID: 7456)
      • Unicorn-3439.exe (PID: 7188)
      • Unicorn-54539.exe (PID: 7988)
      • Unicorn-20788.exe (PID: 7464)
      • Unicorn-62654.exe (PID: 8272)
      • Unicorn-24606.exe (PID: 5416)
      • Unicorn-1201.exe (PID: 8240)
      • Unicorn-44472.exe (PID: 6744)
      • Unicorn-64435.exe (PID: 8260)
      • Unicorn-62375.exe (PID: 7516)
      • Unicorn-40196.exe (PID: 8296)
      • Unicorn-65063.exe (PID: 8332)
      • Unicorn-27560.exe (PID: 8316)
      • Unicorn-51494.exe (PID: 8348)
      • Unicorn-8483.exe (PID: 8400)
      • Unicorn-21482.exe (PID: 8448)
      • Unicorn-28712.exe (PID: 8472)
      • Unicorn-28712.exe (PID: 8480)
      • Unicorn-16460.exe (PID: 8488)
      • Unicorn-28672.exe (PID: 8572)
      • Unicorn-23666.exe (PID: 8684)
      • Unicorn-32988.exe (PID: 8556)
      • Unicorn-486.exe (PID: 8616)
      • Unicorn-57492.exe (PID: 8524)
      • Unicorn-29266.exe (PID: 8708)
      • Unicorn-37072.exe (PID: 8588)
      • Unicorn-37072.exe (PID: 8596)
      • Unicorn-3750.exe (PID: 8676)
      • Unicorn-49687.exe (PID: 8640)
      • Unicorn-43002.exe (PID: 8700)
      • Unicorn-43002.exe (PID: 8692)
      • Unicorn-37072.exe (PID: 8608)
      • Unicorn-52998.exe (PID: 8908)
      • Unicorn-23018.exe (PID: 8996)
      • Unicorn-32578.exe (PID: 8964)
      • Unicorn-33953.exe (PID: 8988)
      • Unicorn-14103.exe (PID: 8924)
      • Unicorn-65342.exe (PID: 8956)
      • Unicorn-18934.exe (PID: 9004)
      • Unicorn-25972.exe (PID: 9056)
      • Unicorn-43054.exe (PID: 9088)
      • Unicorn-10796.exe (PID: 9108)
      • Unicorn-46392.exe (PID: 9164)
      • Unicorn-64591.exe (PID: 9184)
      • Unicorn-13527.exe (PID: 9124)
      • Unicorn-56423.exe (PID: 9192)
      • Unicorn-22132.exe (PID: 7844)
      • Unicorn-59687.exe (PID: 6004)
      • Unicorn-39532.exe (PID: 7020)
      • Unicorn-2391.exe (PID: 9228)
      • Unicorn-2391.exe (PID: 9220)
      • Unicorn-55411.exe (PID: 9236)
      • Unicorn-16873.exe (PID: 9336)
      • Unicorn-39340.exe (PID: 9292)
      • Unicorn-39340.exe (PID: 9308)
      • Unicorn-46802.exe (PID: 9392)
      • Unicorn-55676.exe (PID: 9264)
      • Unicorn-18728.exe (PID: 8792)
      • Unicorn-39340.exe (PID: 9296)
      • Unicorn-46802.exe (PID: 9388)
      • Unicorn-5514.exe (PID: 9460)
      • Unicorn-5826.exe (PID: 9504)
      • Unicorn-60537.exe (PID: 9380)
      • Unicorn-11114.exe (PID: 9452)
      • Unicorn-51763.exe (PID: 9520)
      • Unicorn-22049.exe (PID: 9468)
      • Unicorn-15411.exe (PID: 9568)
      • Unicorn-48151.exe (PID: 8188)
      • Unicorn-24326.exe (PID: 9600)
      • Unicorn-31940.exe (PID: 9608)
      • Unicorn-24606.exe (PID: 6620)
      • Unicorn-50122.exe (PID: 9704)
      • Unicorn-7627.exe (PID: 9824)
      • Unicorn-17206.exe (PID: 8580)
      • Unicorn-52744.exe (PID: 9852)
      • Unicorn-803.exe (PID: 9876)
      • Unicorn-42390.exe (PID: 9896)
      • Unicorn-65079.exe (PID: 9960)
      • Unicorn-65079.exe (PID: 9952)
      • Unicorn-17886.exe (PID: 9940)
      • Unicorn-34030.exe (PID: 10008)
      • Unicorn-29392.exe (PID: 10044)
      • Unicorn-9526.exe (PID: 10028)
      • Unicorn-12863.exe (PID: 9980)
      • Unicorn-59849.exe (PID: 10188)
      • Unicorn-47482.exe (PID: 10060)
      • Unicorn-63910.exe (PID: 10092)
      • Unicorn-41452.exe (PID: 10132)
      • Unicorn-64565.exe (PID: 10108)
      • Unicorn-29392.exe (PID: 10036)
      • Unicorn-37368.exe (PID: 10172)
      • Unicorn-51466.exe (PID: 10208)
      • Unicorn-51466.exe (PID: 10216)
      • Unicorn-41452.exe (PID: 10136)
      • Unicorn-37922.exe (PID: 10100)
      • Unicorn-1851.exe (PID: 8932)
      • Unicorn-30906.exe (PID: 8424)
      • Unicorn-51466.exe (PID: 10224)
      • Unicorn-24659.exe (PID: 8836)
      • Unicorn-52810.exe (PID: 8388)
      • Unicorn-30906.exe (PID: 9924)
      • Unicorn-57606.exe (PID: 8800)
      • Unicorn-16839.exe (PID: 10284)
      • Unicorn-50772.exe (PID: 9932)
      • Unicorn-12650.exe (PID: 9064)
      • Unicorn-37366.exe (PID: 10264)
      • Unicorn-14186.exe (PID: 10316)
      • Unicorn-50196.exe (PID: 10384)
      • Unicorn-19561.exe (PID: 10416)
      • Unicorn-43927.exe (PID: 10476)
      • Unicorn-25692.exe (PID: 10424)
      • Unicorn-59708.exe (PID: 10468)
      • Unicorn-10559.exe (PID: 5972)
      • Unicorn-15338.exe (PID: 10512)
      • Unicorn-2391.exe (PID: 9244)
      • Unicorn-54363.exe (PID: 10552)
      • Unicorn-35566.exe (PID: 10592)
      • Unicorn-55432.exe (PID: 10600)
      • Unicorn-51348.exe (PID: 10608)
      • Unicorn-1130.exe (PID: 9404)
      • Unicorn-54363.exe (PID: 10556)
      • Unicorn-65498.exe (PID: 9512)
      • Unicorn-31120.exe (PID: 10532)
      • Unicorn-63963.exe (PID: 10640)
      • Unicorn-63408.exe (PID: 10692)
      • Unicorn-51156.exe (PID: 10708)
      • Unicorn-23122.exe (PID: 10752)
      • Unicorn-30736.exe (PID: 10812)
      • Unicorn-13057.exe (PID: 10744)
      • Unicorn-14207.exe (PID: 10660)
      • Unicorn-28689.exe (PID: 10780)
      • Unicorn-34820.exe (PID: 10772)
      • Unicorn-53002.exe (PID: 10868)
      • Unicorn-9931.exe (PID: 10844)
      • Unicorn-34820.exe (PID: 10764)
      • Unicorn-44834.exe (PID: 10892)
    • Executable content was dropped or overwritten

      • 1 (1300).exe (PID: 1764)
      • Unicorn-55984.exe (PID: 1324)
      • Unicorn-20868.exe (PID: 6040)
      • Unicorn-12699.exe (PID: 2096)
      • Unicorn-47432.exe (PID: 4560)
      • Unicorn-40655.exe (PID: 3900)
      • Unicorn-41650.exe (PID: 4988)
      • Unicorn-27028.exe (PID: 6468)
      • Unicorn-64531.exe (PID: 1616)
      • Unicorn-55386.exe (PID: 1164)
      • Unicorn-58823.exe (PID: 6028)
      • Unicorn-35004.exe (PID: 5936)
      • Unicorn-28873.exe (PID: 5552)
      • Unicorn-52279.exe (PID: 6972)
      • Unicorn-9274.exe (PID: 632)
      • Unicorn-33032.exe (PID: 1328)
      • Unicorn-50115.exe (PID: 2240)
      • Unicorn-1319.exe (PID: 1040)
      • Unicorn-20077.exe (PID: 5260)
      • Unicorn-29031.exe (PID: 5436)
      • Unicorn-9165.exe (PID: 4464)
      • Unicorn-55673.exe (PID: 1240)
      • Unicorn-42352.exe (PID: 6872)
      • Unicorn-21666.exe (PID: 6876)
      • Unicorn-49543.exe (PID: 208)
      • Unicorn-21417.exe (PID: 5740)
      • Unicorn-42352.exe (PID: 5392)
      • Unicorn-32596.exe (PID: 7248)
      • Unicorn-4562.exe (PID: 7268)
      • Unicorn-49626.exe (PID: 7192)
      • Unicorn-61931.exe (PID: 7284)
      • Unicorn-65076.exe (PID: 7304)
      • Unicorn-50778.exe (PID: 7320)
      • Unicorn-32404.exe (PID: 7340)
      • Unicorn-19886.exe (PID: 7356)
      • Unicorn-56524.exe (PID: 7384)
      • Unicorn-24406.exe (PID: 7408)
      • Unicorn-49760.exe (PID: 7436)
      • Unicorn-33424.exe (PID: 7456)
      • Unicorn-5006.exe (PID: 7488)
      • Unicorn-6489.exe (PID: 7500)
      • Unicorn-62375.exe (PID: 7516)
      • Unicorn-61820.exe (PID: 7540)
      • Unicorn-53387.exe (PID: 7556)
      • Unicorn-40246.exe (PID: 7676)
      • Unicorn-16512.exe (PID: 7596)
      • Unicorn-4259.exe (PID: 7620)
      • Unicorn-33232.exe (PID: 7576)
      • Unicorn-47330.exe (PID: 7700)
      • Unicorn-4259.exe (PID: 7624)
      • Unicorn-13001.exe (PID: 4784)
      • Unicorn-2066.exe (PID: 864)
      • Unicorn-51851.exe (PID: 7804)
      • Unicorn-22516.exe (PID: 7764)
      • Unicorn-5914.exe (PID: 7796)
      • Unicorn-22516.exe (PID: 7772)
      • Unicorn-22132.exe (PID: 7844)
      • Unicorn-51467.exe (PID: 7860)
      • Unicorn-16102.exe (PID: 7884)
      • Unicorn-42744.exe (PID: 7924)
      • Unicorn-55756.exe (PID: 7200)
      • Unicorn-36614.exe (PID: 7916)
      • Unicorn-53735.exe (PID: 7964)
      • Unicorn-40091.exe (PID: 8040)
      • Unicorn-63941.exe (PID: 7932)
      • Unicorn-46636.exe (PID: 8032)
      • Unicorn-54539.exe (PID: 7988)
      • Unicorn-8571.exe (PID: 8112)
      • Unicorn-54010.exe (PID: 8096)
      • Unicorn-48151.exe (PID: 8188)
      • Unicorn-6563.exe (PID: 8168)
      • Unicorn-3439.exe (PID: 7188)
      • Unicorn-52640.exe (PID: 672)
      • Unicorn-3439.exe (PID: 3332)
      • Unicorn-44472.exe (PID: 6744)
      • Unicorn-20788.exe (PID: 7464)
      • Unicorn-24606.exe (PID: 5416)
      • Unicorn-1201.exe (PID: 8240)
      • Unicorn-24606.exe (PID: 6620)
      • Unicorn-64435.exe (PID: 8260)
      • Unicorn-65063.exe (PID: 8332)
      • Unicorn-27560.exe (PID: 8316)
      • Unicorn-51494.exe (PID: 8348)
      • Unicorn-21482.exe (PID: 8448)
      • Unicorn-28712.exe (PID: 8472)
      • Unicorn-28712.exe (PID: 8480)
      • Unicorn-57492.exe (PID: 8524)
      • Unicorn-8483.exe (PID: 8400)
      • Unicorn-4259.exe (PID: 7636)
      • Unicorn-16460.exe (PID: 8488)
      • Unicorn-28672.exe (PID: 8572)
      • Unicorn-17206.exe (PID: 8580)
      • Unicorn-32988.exe (PID: 8556)
      • Unicorn-486.exe (PID: 8616)
      • Unicorn-37072.exe (PID: 8588)
      • Unicorn-37072.exe (PID: 8596)
      • Unicorn-3750.exe (PID: 8676)
      • Unicorn-43002.exe (PID: 8700)
      • Unicorn-43002.exe (PID: 8692)
      • Unicorn-37072.exe (PID: 8608)
      • Unicorn-52698.exe (PID: 7688)
      • Unicorn-41762.exe (PID: 7660)
      • Unicorn-52998.exe (PID: 8908)
      • Unicorn-18934.exe (PID: 9004)
      • Unicorn-1851.exe (PID: 8932)
      • Unicorn-23018.exe (PID: 8996)
      • Unicorn-33953.exe (PID: 8988)
      • Unicorn-14103.exe (PID: 8924)
      • Unicorn-65342.exe (PID: 8956)
      • Unicorn-12650.exe (PID: 9064)
      • Unicorn-25972.exe (PID: 9056)
      • Unicorn-43054.exe (PID: 9088)
      • Unicorn-10796.exe (PID: 9108)
      • Unicorn-46392.exe (PID: 9164)
      • Unicorn-56423.exe (PID: 9192)
      • Unicorn-13527.exe (PID: 9124)
      • Unicorn-64591.exe (PID: 9184)
      • Unicorn-39532.exe (PID: 7020)
      • Unicorn-55411.exe (PID: 9236)
      • Unicorn-2391.exe (PID: 9220)
      • Unicorn-39340.exe (PID: 9292)
      • Unicorn-59687.exe (PID: 6004)
      • Unicorn-39340.exe (PID: 9308)
      • Unicorn-2391.exe (PID: 9244)
      • Unicorn-55676.exe (PID: 9264)
      • Unicorn-39340.exe (PID: 9296)
      • Unicorn-10559.exe (PID: 5972)
      • Unicorn-1130.exe (PID: 9404)
      • Unicorn-65498.exe (PID: 9512)
      • Unicorn-5826.exe (PID: 9504)
      • Unicorn-62972.exe (PID: 7980)
      • Unicorn-11114.exe (PID: 9452)
      • Unicorn-46802.exe (PID: 9388)
      • Unicorn-5514.exe (PID: 9460)
      • Unicorn-60537.exe (PID: 9380)
      • Unicorn-59957.exe (PID: 8048)
      • Unicorn-25453.exe (PID: 8064)
      • Unicorn-51763.exe (PID: 9520)
      • Unicorn-22049.exe (PID: 9468)
      • Unicorn-40781.exe (PID: 8120)
      • Unicorn-15411.exe (PID: 9568)
      • Unicorn-36304.exe (PID: 2644)
      • Unicorn-24326.exe (PID: 9600)
      • Unicorn-31940.exe (PID: 9608)
      • Unicorn-40196.exe (PID: 8296)
      • Unicorn-62654.exe (PID: 8272)
      • Unicorn-50122.exe (PID: 9704)
      • Unicorn-7627.exe (PID: 9824)
      • Unicorn-23666.exe (PID: 8684)
      • Unicorn-29266.exe (PID: 8708)
      • Unicorn-49687.exe (PID: 8640)
      • Unicorn-52744.exe (PID: 9852)
      • Unicorn-33594.exe (PID: 7708)
      • Unicorn-42390.exe (PID: 9896)
      • Unicorn-65079.exe (PID: 9960)
      • Unicorn-65079.exe (PID: 9952)
      • Unicorn-803.exe (PID: 9876)
      • Unicorn-12863.exe (PID: 9980)
      • Unicorn-34030.exe (PID: 10008)
      • Unicorn-9526.exe (PID: 10028)
      • Unicorn-29392.exe (PID: 10036)
      • Unicorn-17886.exe (PID: 9940)
      • Unicorn-29392.exe (PID: 10044)
      • Unicorn-59849.exe (PID: 10188)
      • Unicorn-63910.exe (PID: 10092)
      • Unicorn-41452.exe (PID: 10132)
      • Unicorn-47482.exe (PID: 10060)
      • Unicorn-37368.exe (PID: 10172)
      • Unicorn-51466.exe (PID: 10208)
      • Unicorn-51466.exe (PID: 10216)
      • Unicorn-41452.exe (PID: 10136)
      • Unicorn-37922.exe (PID: 10100)
      • Unicorn-47382.exe (PID: 8796)
      • Unicorn-52810.exe (PID: 8388)
      • Unicorn-24659.exe (PID: 8836)
      • Unicorn-32578.exe (PID: 8964)
      • Unicorn-30906.exe (PID: 8424)
      • Unicorn-51466.exe (PID: 10224)
      • Unicorn-30906.exe (PID: 9924)
      • Unicorn-50772.exe (PID: 9932)
      • Unicorn-57606.exe (PID: 8800)
      • Unicorn-37366.exe (PID: 10264)
      • Unicorn-16839.exe (PID: 10284)
      • Unicorn-34052.exe (PID: 10332)
      • Unicorn-50196.exe (PID: 10384)
      • Unicorn-14186.exe (PID: 10316)
      • Unicorn-19561.exe (PID: 10416)
      • Unicorn-25692.exe (PID: 10424)
      • Unicorn-43927.exe (PID: 10476)
      • Unicorn-16873.exe (PID: 9336)
      • Unicorn-15338.exe (PID: 10512)
      • Unicorn-59708.exe (PID: 10468)
      • Unicorn-35566.exe (PID: 10592)
      • Unicorn-55432.exe (PID: 10600)
      • Unicorn-54363.exe (PID: 10556)
      • Unicorn-54363.exe (PID: 10552)
      • Unicorn-51348.exe (PID: 10608)
      • Unicorn-28437.exe (PID: 8104)
      • Unicorn-31120.exe (PID: 10532)
      • Unicorn-51156.exe (PID: 10708)
      • Unicorn-63408.exe (PID: 10692)
      • Unicorn-63963.exe (PID: 10640)
      • Unicorn-14207.exe (PID: 10660)
      • Unicorn-23122.exe (PID: 10752)
      • Unicorn-63408.exe (PID: 10684)
      • Unicorn-28689.exe (PID: 10780)
      • Unicorn-30736.exe (PID: 10812)
      • Unicorn-13057.exe (PID: 10744)
      • Unicorn-34820.exe (PID: 10764)
      • Unicorn-44834.exe (PID: 10892)
      • Unicorn-9931.exe (PID: 10844)
      • Unicorn-53002.exe (PID: 10868)
      • Unicorn-44695.exe (PID: 11016)
      • Unicorn-63216.exe (PID: 10876)
      • Unicorn-22930.exe (PID: 10928)
      • Unicorn-40750.exe (PID: 10936)
      • Unicorn-22930.exe (PID: 10920)
      • Unicorn-23263.exe (PID: 10984)
      • Unicorn-34820.exe (PID: 10772)
      • Unicorn-64565.exe (PID: 10108)
      • Unicorn-17529.exe (PID: 10968)
      • Unicorn-60839.exe (PID: 11040)
      • Unicorn-18728.exe (PID: 8792)
      • Unicorn-46802.exe (PID: 9392)
      • Unicorn-2391.exe (PID: 9228)
      • Unicorn-11010.exe (PID: 11000)
    • Executes application which crashes

      • Unicorn-5359.exe (PID: 9136)
      • Unicorn-42756.exe (PID: 10700)
      • Unicorn-34052.exe (PID: 10332)
  • INFO

    • Reads the computer name

      • 1 (1300).exe (PID: 1764)
      • Unicorn-55984.exe (PID: 1324)
      • Unicorn-47432.exe (PID: 4560)
      • Unicorn-40655.exe (PID: 3900)
      • Unicorn-12699.exe (PID: 2096)
      • Unicorn-41650.exe (PID: 4988)
      • Unicorn-58823.exe (PID: 6028)
      • Unicorn-52279.exe (PID: 6972)
      • Unicorn-21417.exe (PID: 5740)
      • Unicorn-9274.exe (PID: 632)
      • Unicorn-33032.exe (PID: 1328)
      • Unicorn-64531.exe (PID: 1616)
      • Unicorn-1319.exe (PID: 1040)
      • Unicorn-55673.exe (PID: 1240)
      • Unicorn-49543.exe (PID: 208)
      • Unicorn-2066.exe (PID: 864)
      • Unicorn-13001.exe (PID: 4784)
      • Unicorn-29031.exe (PID: 5436)
      • Unicorn-9165.exe (PID: 4464)
      • Unicorn-32596.exe (PID: 7248)
      • Unicorn-4562.exe (PID: 7268)
      • Unicorn-56524.exe (PID: 7384)
      • Unicorn-65076.exe (PID: 7304)
      • Unicorn-32404.exe (PID: 7340)
      • Unicorn-19886.exe (PID: 7356)
      • Unicorn-24406.exe (PID: 7408)
      • Unicorn-62375.exe (PID: 7516)
      • Unicorn-20788.exe (PID: 7464)
      • Unicorn-6489.exe (PID: 7500)
      • Unicorn-61820.exe (PID: 7540)
      • Unicorn-33232.exe (PID: 7576)
      • Unicorn-4259.exe (PID: 7636)
      • Unicorn-4259.exe (PID: 7620)
      • Unicorn-16512.exe (PID: 7596)
      • Unicorn-41762.exe (PID: 7660)
      • Unicorn-4259.exe (PID: 7624)
      • Unicorn-22516.exe (PID: 7764)
      • Unicorn-22516.exe (PID: 7772)
      • Unicorn-16102.exe (PID: 7884)
      • Unicorn-42744.exe (PID: 7924)
      • Unicorn-22132.exe (PID: 7844)
      • Unicorn-40091.exe (PID: 8040)
      • Unicorn-40781.exe (PID: 8120)
      • Unicorn-28437.exe (PID: 8104)
      • Unicorn-54010.exe (PID: 8096)
      • Unicorn-62972.exe (PID: 7980)
      • Unicorn-25453.exe (PID: 8064)
      • Unicorn-52640.exe (PID: 672)
      • Unicorn-36304.exe (PID: 2644)
      • Unicorn-62654.exe (PID: 8272)
      • Unicorn-51494.exe (PID: 8348)
      • Unicorn-8483.exe (PID: 8400)
      • Unicorn-28672.exe (PID: 8572)
      • Unicorn-28712.exe (PID: 8480)
      • Unicorn-16460.exe (PID: 8488)
      • Unicorn-32988.exe (PID: 8556)
      • Unicorn-40196.exe (PID: 8296)
      • Unicorn-486.exe (PID: 8616)
      • Unicorn-43002.exe (PID: 8700)
      • Unicorn-23018.exe (PID: 8996)
      • Unicorn-32578.exe (PID: 8964)
      • Unicorn-10796.exe (PID: 9108)
      • Unicorn-59687.exe (PID: 6004)
      • Unicorn-39532.exe (PID: 7020)
      • Unicorn-2391.exe (PID: 9220)
      • Unicorn-2391.exe (PID: 9228)
      • Unicorn-5359.exe (PID: 9136)
      • Unicorn-64591.exe (PID: 9184)
      • Unicorn-10559.exe (PID: 5972)
      • Unicorn-18728.exe (PID: 8792)
      • Unicorn-46802.exe (PID: 9388)
      • Unicorn-46802.exe (PID: 9392)
      • Unicorn-5514.exe (PID: 9460)
      • Unicorn-60537.exe (PID: 9380)
      • Unicorn-5826.exe (PID: 9504)
      • Unicorn-11114.exe (PID: 9452)
      • Unicorn-65498.exe (PID: 9512)
      • Unicorn-15411.exe (PID: 9568)
      • Unicorn-24326.exe (PID: 9600)
      • Unicorn-50122.exe (PID: 9704)
      • Unicorn-42390.exe (PID: 9896)
      • Unicorn-7627.exe (PID: 9824)
      • Unicorn-52744.exe (PID: 9852)
      • Unicorn-17886.exe (PID: 9940)
      • Unicorn-9526.exe (PID: 10028)
      • Unicorn-47482.exe (PID: 10060)
      • Unicorn-29392.exe (PID: 10036)
      • Unicorn-41452.exe (PID: 10136)
      • Unicorn-37368.exe (PID: 10172)
      • Unicorn-51466.exe (PID: 10224)
      • Unicorn-52810.exe (PID: 8388)
      • Unicorn-37366.exe (PID: 10264)
      • Unicorn-34052.exe (PID: 10332)
      • Unicorn-25692.exe (PID: 10424)
      • Unicorn-59708.exe (PID: 10468)
      • Unicorn-55432.exe (PID: 10600)
      • Unicorn-63963.exe (PID: 10640)
      • Unicorn-14207.exe (PID: 10660)
      • Unicorn-28689.exe (PID: 10780)
      • Unicorn-34820.exe (PID: 10772)
      • Unicorn-22930.exe (PID: 10928)
      • Unicorn-40750.exe (PID: 10936)
      • Unicorn-22930.exe (PID: 10920)
    • Create files in a temporary directory

      • 1 (1300).exe (PID: 1764)
      • Unicorn-55984.exe (PID: 1324)
      • Unicorn-40655.exe (PID: 3900)
      • Unicorn-41650.exe (PID: 4988)
      • Unicorn-64531.exe (PID: 1616)
      • Unicorn-35004.exe (PID: 5936)
      • Unicorn-12699.exe (PID: 2096)
      • Unicorn-55386.exe (PID: 1164)
      • Unicorn-9274.exe (PID: 632)
      • Unicorn-27028.exe (PID: 6468)
      • Unicorn-50115.exe (PID: 2240)
      • Unicorn-58823.exe (PID: 6028)
      • Unicorn-29031.exe (PID: 5436)
      • Unicorn-9165.exe (PID: 4464)
      • Unicorn-55673.exe (PID: 1240)
      • Unicorn-42352.exe (PID: 6872)
      • Unicorn-52279.exe (PID: 6972)
      • Unicorn-49543.exe (PID: 208)
      • Unicorn-21417.exe (PID: 5740)
      • Unicorn-42352.exe (PID: 5392)
      • Unicorn-32596.exe (PID: 7248)
      • Unicorn-33032.exe (PID: 1328)
      • Unicorn-4562.exe (PID: 7268)
      • Unicorn-65076.exe (PID: 7304)
      • Unicorn-19886.exe (PID: 7356)
      • Unicorn-56524.exe (PID: 7384)
      • Unicorn-61931.exe (PID: 7284)
      • Unicorn-1319.exe (PID: 1040)
      • Unicorn-24406.exe (PID: 7408)
      • Unicorn-33424.exe (PID: 7456)
      • Unicorn-5006.exe (PID: 7488)
      • Unicorn-6489.exe (PID: 7500)
      • Unicorn-62375.exe (PID: 7516)
      • Unicorn-61820.exe (PID: 7540)
      • Unicorn-53387.exe (PID: 7556)
      • Unicorn-33232.exe (PID: 7576)
      • Unicorn-40246.exe (PID: 7676)
      • Unicorn-16512.exe (PID: 7596)
      • Unicorn-4259.exe (PID: 7620)
      • Unicorn-47330.exe (PID: 7700)
      • Unicorn-21666.exe (PID: 6876)
      • Unicorn-28873.exe (PID: 5552)
      • Unicorn-2066.exe (PID: 864)
      • Unicorn-51851.exe (PID: 7804)
      • Unicorn-5914.exe (PID: 7796)
      • Unicorn-22516.exe (PID: 7772)
      • Unicorn-49626.exe (PID: 7192)
      • Unicorn-51467.exe (PID: 7860)
      • Unicorn-22132.exe (PID: 7844)
      • Unicorn-36614.exe (PID: 7916)
      • Unicorn-63941.exe (PID: 7932)
      • Unicorn-43106.exe (PID: 7972)
      • Unicorn-53735.exe (PID: 7964)
      • Unicorn-16102.exe (PID: 7884)
      • Unicorn-46636.exe (PID: 8032)
      • Unicorn-20077.exe (PID: 5260)
      • Unicorn-20868.exe (PID: 6040)
      • Unicorn-50778.exe (PID: 7320)
      • Unicorn-48151.exe (PID: 8188)
      • Unicorn-6563.exe (PID: 8168)
      • Unicorn-3439.exe (PID: 7188)
      • Unicorn-52640.exe (PID: 672)
      • Unicorn-3439.exe (PID: 3332)
      • Unicorn-44472.exe (PID: 6744)
      • Unicorn-24606.exe (PID: 5416)
      • Unicorn-1201.exe (PID: 8240)
      • Unicorn-64435.exe (PID: 8260)
      • Unicorn-65063.exe (PID: 8332)
      • Unicorn-28712.exe (PID: 8472)
      • Unicorn-57492.exe (PID: 8524)
      • Unicorn-47432.exe (PID: 4560)
      • Unicorn-13001.exe (PID: 4784)
      • Unicorn-3750.exe (PID: 8676)
      • Unicorn-37072.exe (PID: 8596)
      • Unicorn-41762.exe (PID: 7660)
      • Unicorn-23018.exe (PID: 8996)
      • Unicorn-1851.exe (PID: 8932)
      • Unicorn-52998.exe (PID: 8908)
      • Unicorn-12650.exe (PID: 9064)
      • Unicorn-43054.exe (PID: 9088)
      • Unicorn-22516.exe (PID: 7764)
      • Unicorn-13527.exe (PID: 9124)
      • Unicorn-64591.exe (PID: 9184)
      • Unicorn-42744.exe (PID: 7924)
      • Unicorn-2391.exe (PID: 9220)
      • Unicorn-65498.exe (PID: 9512)
      • Unicorn-62972.exe (PID: 7980)
      • Unicorn-46802.exe (PID: 9388)
      • Unicorn-25453.exe (PID: 8064)
      • Unicorn-51763.exe (PID: 9520)
      • Unicorn-15411.exe (PID: 9568)
      • Unicorn-49760.exe (PID: 7436)
      • Unicorn-54539.exe (PID: 7988)
      • Unicorn-54010.exe (PID: 8096)
      • Unicorn-27560.exe (PID: 8316)
      • Unicorn-20788.exe (PID: 7464)
      • Unicorn-21482.exe (PID: 8448)
      • Unicorn-32404.exe (PID: 7340)
      • Unicorn-4259.exe (PID: 7636)
      • Unicorn-7627.exe (PID: 9824)
      • Unicorn-28712.exe (PID: 8480)
      • Unicorn-37072.exe (PID: 8608)
      • Unicorn-19561.exe (PID: 10416)
      • Unicorn-2391.exe (PID: 9244)
      • Unicorn-4259.exe (PID: 7624)
    • Checks supported languages

      • 1 (1300).exe (PID: 1764)
      • Unicorn-55984.exe (PID: 1324)
      • Unicorn-47432.exe (PID: 4560)
      • Unicorn-40655.exe (PID: 3900)
      • Unicorn-55386.exe (PID: 1164)
      • Unicorn-64531.exe (PID: 1616)
      • Unicorn-27028.exe (PID: 6468)
      • Unicorn-58823.exe (PID: 6028)
      • Unicorn-52279.exe (PID: 6972)
      • Unicorn-41650.exe (PID: 4988)
      • Unicorn-21417.exe (PID: 5740)
      • Unicorn-33032.exe (PID: 1328)
      • Unicorn-50115.exe (PID: 2240)
      • Unicorn-35004.exe (PID: 5936)
      • Unicorn-28873.exe (PID: 5552)
      • Unicorn-20077.exe (PID: 5260)
      • Unicorn-2066.exe (PID: 864)
      • Unicorn-55673.exe (PID: 1240)
      • Unicorn-42352.exe (PID: 6872)
      • Unicorn-42352.exe (PID: 5392)
      • Unicorn-49626.exe (PID: 7192)
      • Unicorn-32596.exe (PID: 7248)
      • Unicorn-4562.exe (PID: 7268)
      • Unicorn-61931.exe (PID: 7284)
      • Unicorn-19886.exe (PID: 7356)
      • Unicorn-24406.exe (PID: 7408)
      • Unicorn-56524.exe (PID: 7384)
      • Unicorn-53387.exe (PID: 7556)
      • Unicorn-5006.exe (PID: 7488)
      • Unicorn-33424.exe (PID: 7456)
      • Unicorn-6489.exe (PID: 7500)
      • Unicorn-62375.exe (PID: 7516)
      • Unicorn-61820.exe (PID: 7540)
      • Unicorn-16512.exe (PID: 7596)
      • Unicorn-52698.exe (PID: 7688)
      • Unicorn-4259.exe (PID: 7624)
      • Unicorn-41762.exe (PID: 7660)
      • Unicorn-40246.exe (PID: 7676)
      • Unicorn-51851.exe (PID: 7804)
      • Unicorn-5914.exe (PID: 7796)
      • Unicorn-51467.exe (PID: 7860)
      • Unicorn-22516.exe (PID: 7772)
      • Unicorn-42744.exe (PID: 7924)
      • Unicorn-40091.exe (PID: 8040)
      • Unicorn-53735.exe (PID: 7964)
      • Unicorn-43106.exe (PID: 7972)
      • Unicorn-54539.exe (PID: 7988)
      • Unicorn-25453.exe (PID: 8064)
      • Unicorn-8571.exe (PID: 8112)
      • Unicorn-54010.exe (PID: 8096)
      • Unicorn-6563.exe (PID: 8168)
      • Unicorn-48151.exe (PID: 8188)
      • Unicorn-3439.exe (PID: 7188)
      • Unicorn-3439.exe (PID: 3332)
      • Unicorn-59957.exe (PID: 8048)
      • Unicorn-24606.exe (PID: 6620)
      • Unicorn-40196.exe (PID: 8296)
      • Unicorn-27560.exe (PID: 8316)
      • Unicorn-21482.exe (PID: 8448)
      • Unicorn-8483.exe (PID: 8400)
      • Unicorn-28712.exe (PID: 8480)
      • Unicorn-16460.exe (PID: 8488)
      • Unicorn-57492.exe (PID: 8524)
      • Unicorn-486.exe (PID: 8616)
      • Unicorn-32988.exe (PID: 8556)
      • Unicorn-37072.exe (PID: 8596)
      • Unicorn-23666.exe (PID: 8684)
      • Unicorn-37072.exe (PID: 8588)
      • Unicorn-37072.exe (PID: 8608)
      • Unicorn-43002.exe (PID: 8692)
      • Unicorn-52998.exe (PID: 8908)
      • Unicorn-1851.exe (PID: 8932)
      • Unicorn-3750.exe (PID: 8676)
      • Unicorn-14103.exe (PID: 8924)
      • Unicorn-23018.exe (PID: 8996)
      • Unicorn-33953.exe (PID: 8988)
      • Unicorn-43054.exe (PID: 9088)
      • Unicorn-10796.exe (PID: 9108)
      • Unicorn-32578.exe (PID: 8964)
      • Unicorn-65342.exe (PID: 8956)
      • Unicorn-5359.exe (PID: 9136)
      • Unicorn-59687.exe (PID: 6004)
      • Unicorn-39532.exe (PID: 7020)
      • Unicorn-13527.exe (PID: 9124)
      • Unicorn-46392.exe (PID: 9164)
      • Unicorn-10559.exe (PID: 5972)
      • Unicorn-2391.exe (PID: 9228)
      • Unicorn-18728.exe (PID: 8792)
      • Unicorn-16873.exe (PID: 9336)
      • Unicorn-46802.exe (PID: 9392)
      • Unicorn-1130.exe (PID: 9404)
      • Unicorn-46802.exe (PID: 9388)
      • Unicorn-5514.exe (PID: 9460)
      • Unicorn-2391.exe (PID: 9244)
      • Unicorn-55676.exe (PID: 9264)
      • Unicorn-39340.exe (PID: 9308)
      • Unicorn-39340.exe (PID: 9292)
      • Unicorn-60537.exe (PID: 9380)
      • Unicorn-15411.exe (PID: 9568)
      • Unicorn-24326.exe (PID: 9600)
      • Unicorn-31940.exe (PID: 9608)
      • Unicorn-50122.exe (PID: 9704)
      • Unicorn-11114.exe (PID: 9452)
      • Unicorn-22049.exe (PID: 9468)
      • Unicorn-51763.exe (PID: 9520)
      • Unicorn-5826.exe (PID: 9504)
      • Unicorn-803.exe (PID: 9876)
      • Unicorn-7627.exe (PID: 9824)
      • Unicorn-12863.exe (PID: 9980)
      • Unicorn-9526.exe (PID: 10028)
      • Unicorn-47482.exe (PID: 10060)
      • Unicorn-17886.exe (PID: 9940)
      • Unicorn-41452.exe (PID: 10132)
      • Unicorn-41452.exe (PID: 10136)
      • Unicorn-59849.exe (PID: 10188)
      • Unicorn-47382.exe (PID: 8796)
      • Unicorn-57606.exe (PID: 8800)
      • Unicorn-52810.exe (PID: 8388)
      • Unicorn-29392.exe (PID: 10036)
      • Unicorn-63910.exe (PID: 10092)
      • Unicorn-37366.exe (PID: 10264)
      • Unicorn-14186.exe (PID: 10316)
      • Unicorn-34052.exe (PID: 10332)
      • Unicorn-50196.exe (PID: 10384)
      • Unicorn-19561.exe (PID: 10416)
      • Unicorn-50772.exe (PID: 9932)
      • Unicorn-30906.exe (PID: 9924)
      • Unicorn-15338.exe (PID: 10512)
      • Unicorn-31120.exe (PID: 10532)
      • Unicorn-51348.exe (PID: 10608)
      • Unicorn-35566.exe (PID: 10592)
      • Unicorn-14207.exe (PID: 10660)
      • Unicorn-59708.exe (PID: 10468)
      • Unicorn-63408.exe (PID: 10692)
      • Unicorn-63408.exe (PID: 10684)
      • Unicorn-28689.exe (PID: 10780)
      • Unicorn-34820.exe (PID: 10764)
      • Unicorn-34820.exe (PID: 10772)
      • Unicorn-30736.exe (PID: 10812)
      • Unicorn-53002.exe (PID: 10868)
      • Unicorn-63216.exe (PID: 10876)
      • Unicorn-22930.exe (PID: 10928)
      • Unicorn-40750.exe (PID: 10936)
      • Unicorn-23263.exe (PID: 10984)
      • Unicorn-17529.exe (PID: 10968)
      • Unicorn-11010.exe (PID: 11000)
      • Unicorn-44695.exe (PID: 11016)
      • Unicorn-60839.exe (PID: 11040)
      • Unicorn-21328.exe (PID: 11276)
      • Unicorn-59983.exe (PID: 11292)
      • Unicorn-14119.exe (PID: 11412)
      • Unicorn-10035.exe (PID: 11396)
      • Unicorn-34732.exe (PID: 11476)
      • Unicorn-3713.exe (PID: 11496)
      • Unicorn-39008.exe (PID: 11356)
      • Unicorn-34924.exe (PID: 11340)
      • Unicorn-42516.exe (PID: 11668)
      • Unicorn-25915.exe (PID: 11684)
      • Unicorn-31608.exe (PID: 11732)
      • Unicorn-18758.exe (PID: 11552)
      • Unicorn-37232.exe (PID: 11604)
      • Unicorn-41430.exe (PID: 11816)
      • Unicorn-63704.exe (PID: 11852)
      • Unicorn-47368.exe (PID: 11888)
      • Unicorn-32376.exe (PID: 12000)
      • Unicorn-36460.exe (PID: 11984)
      • Unicorn-15442.exe (PID: 11824)
      • Unicorn-12318.exe (PID: 12076)
      • Unicorn-60388.exe (PID: 12108)
      • Unicorn-50174.exe (PID: 12140)
      • Unicorn-8447.exe (PID: 12244)
      • Unicorn-45396.exe (PID: 12280)
      • Unicorn-36465.exe (PID: 12272)
      • Unicorn-49480.exe (PID: 10488)
      • Unicorn-20892.exe (PID: 2564)
      • Unicorn-31800.exe (PID: 12180)
      • Unicorn-19548.exe (PID: 12208)
      • Unicorn-37036.exe (PID: 12160)
      • Unicorn-8063.exe (PID: 12356)
      • Unicorn-61348.exe (PID: 12380)
      • Unicorn-23885.exe (PID: 12564)
      • Unicorn-24327.exe (PID: 12520)
      • Unicorn-11577.exe (PID: 12496)
      • Unicorn-20508.exe (PID: 12512)
      • Unicorn-642.exe (PID: 12504)
      • Unicorn-37206.exe (PID: 12624)
      • Unicorn-23885.exe (PID: 12572)
      • Unicorn-450.exe (PID: 12684)
      • Unicorn-40928.exe (PID: 12456)
      • Unicorn-48202.exe (PID: 12760)
      • Unicorn-4707.exe (PID: 12824)
      • Unicorn-6977.exe (PID: 12832)
      • Unicorn-49791.exe (PID: 12888)
      • Unicorn-41126.exe (PID: 12880)
      • Unicorn-54311.exe (PID: 12952)
      • Unicorn-1218.exe (PID: 13008)
      • Unicorn-27205.exe (PID: 13000)
      • Unicorn-26437.exe (PID: 12668)
      • Unicorn-54067.exe (PID: 12768)
      • Unicorn-43926.exe (PID: 12896)
      • Unicorn-53756.exe (PID: 12972)
      • Unicorn-9791.exe (PID: 13108)
      • Unicorn-56387.exe (PID: 13300)
      • Unicorn-35774.exe (PID: 13284)
      • Unicorn-23330.exe (PID: 924)
      • Unicorn-23138.exe (PID: 11980)
      • Unicorn-23138.exe (PID: 12756)
      • Unicorn-14970.exe (PID: 12940)
      • Unicorn-46386.exe (PID: 13344)
      • Unicorn-24482.exe (PID: 13360)
      • Unicorn-17797.exe (PID: 13400)
      • Unicorn-62530.exe (PID: 13432)
      • Unicorn-48795.exe (PID: 13444)
      • Unicorn-48795.exe (PID: 13440)
      • Unicorn-14606.exe (PID: 13492)
      • Unicorn-19578.exe (PID: 13380)
      • Unicorn-17413.exe (PID: 13632)
      • Unicorn-3678.exe (PID: 13656)
      • Unicorn-19268.exe (PID: 13724)
      • Unicorn-23119.exe (PID: 13708)
      • Unicorn-41586.exe (PID: 13744)
      • Unicorn-46962.exe (PID: 13792)
      • Unicorn-16122.exe (PID: 13484)
      • Unicorn-19386.exe (PID: 13528)
      • Unicorn-19386.exe (PID: 13520)
      • Unicorn-6750.exe (PID: 13572)
      • Unicorn-55454.exe (PID: 13588)
      • Unicorn-22781.exe (PID: 13608)
      • Unicorn-17413.exe (PID: 13636)
      • Unicorn-62007.exe (PID: 13824)
      • Unicorn-32842.exe (PID: 13932)
      • Unicorn-4503.exe (PID: 13844)
      • Unicorn-8530.exe (PID: 13876)
      • Unicorn-26349.exe (PID: 13884)
      • Unicorn-62914.exe (PID: 13908)
      • Unicorn-8338.exe (PID: 13968)
      • Unicorn-62037.exe (PID: 13980)
      • Unicorn-47922.exe (PID: 14080)
      • Unicorn-50440.exe (PID: 13840)
      • Unicorn-12754.exe (PID: 4724)
      • Unicorn-5598.exe (PID: 14168)
      • Unicorn-61069.exe (PID: 14140)
      • Unicorn-42162.exe (PID: 14248)
      • Unicorn-64066.exe (PID: 14208)
      • Unicorn-5598.exe (PID: 14148)
      • Unicorn-57944.exe (PID: 14292)
      • Unicorn-6889.exe (PID: 13480)
      • Unicorn-8286.exe (PID: 14368)
      • Unicorn-9682.exe (PID: 14104)
      • Unicorn-28202.exe (PID: 14424)
      • Unicorn-32485.exe (PID: 14500)
      • Unicorn-10781.exe (PID: 14524)
      • Unicorn-40654.exe (PID: 14492)
      • Unicorn-36438.exe (PID: 14592)
      • Unicorn-383.exe (PID: 14416)
      • Unicorn-29932.exe (PID: 14724)
      • Unicorn-21847.exe (PID: 14808)
      • Unicorn-63564.exe (PID: 14832)
      • Unicorn-41307.exe (PID: 14644)
      • Unicorn-54436.exe (PID: 14700)
      • Unicorn-42952.exe (PID: 14896)
      • Unicorn-14363.exe (PID: 14932)
      • Unicorn-50928.exe (PID: 15004)
      • Unicorn-22340.exe (PID: 15056)
      • Unicorn-14363.exe (PID: 14936)
      • Unicorn-15515.exe (PID: 15132)
      • Unicorn-45950.exe (PID: 15156)
      • Unicorn-35744.exe (PID: 15188)
      • Unicorn-35552.exe (PID: 15240)
      • Unicorn-16868.exe (PID: 15392)
      • Unicorn-3133.exe (PID: 15400)
      • Unicorn-57103.exe (PID: 15456)
      • Unicorn-3455.exe (PID: 15384)
      • Unicorn-12754.exe (PID: 15332)
      • Unicorn-32952.exe (PID: 8848)
      • Unicorn-30.exe (PID: 15680)
      • Unicorn-19792.exe (PID: 15576)
      • Unicorn-45604.exe (PID: 15608)
      • Unicorn-33087.exe (PID: 15644)
      • Unicorn-48380.exe (PID: 15504)
      • Unicorn-32598.exe (PID: 15512)
      • Unicorn-12547.exe (PID: 15948)
      • Unicorn-21078.exe (PID: 15968)
      • Unicorn-12355.exe (PID: 15996)
      • Unicorn-40242.exe (PID: 16012)
      • Unicorn-59702.exe (PID: 15672)
      • Unicorn-41328.exe (PID: 15780)
      • Unicorn-18861.exe (PID: 15808)
      • Unicorn-36289.exe (PID: 15908)
      • Unicorn-54327.exe (PID: 15876)
      • Unicorn-850.exe (PID: 15932)
      • Unicorn-60470.exe (PID: 16036)
      • Unicorn-61946.exe (PID: 16156)
      • Unicorn-9423.exe (PID: 16172)
      • Unicorn-34098.exe (PID: 16228)
      • Unicorn-54711.exe (PID: 16268)
      • Unicorn-2909.exe (PID: 16292)
      • Unicorn-63284.exe (PID: 7896)
      • Unicorn-46948.exe (PID: 16084)
      • Unicorn-59947.exe (PID: 16388)
      • Unicorn-4955.exe (PID: 16284)
      • Unicorn-41010.exe (PID: 16328)
      • Unicorn-47140.exe (PID: 16340)
      • Unicorn-2909.exe (PID: 16276)
      • Unicorn-30347.exe (PID: 16076)
      • Unicorn-47311.exe (PID: 16436)
      • Unicorn-63092.exe (PID: 16420)
      • Unicorn-30974.exe (PID: 16468)
      • Unicorn-14638.exe (PID: 16520)
      • Unicorn-10746.exe (PID: 16092)
      • Unicorn-26698.exe (PID: 16664)
      • Unicorn-5723.exe (PID: 16760)
      • Unicorn-47119.exe (PID: 16600)
      • Unicorn-18168.exe (PID: 16568)
      • Unicorn-22060.exe (PID: 16724)
      • Unicorn-51587.exe (PID: 16580)
      • Unicorn-63839.exe (PID: 16552)
      • Unicorn-1447.exe (PID: 16620)
      • Unicorn-36210.exe (PID: 16788)
      • Unicorn-51992.exe (PID: 16816)
      • Unicorn-7067.exe (PID: 16928)
      • Unicorn-59968.exe (PID: 16996)
      • Unicorn-41394.exe (PID: 17140)
      • Unicorn-64799.exe (PID: 17192)
      • Unicorn-64799.exe (PID: 17188)
      • Unicorn-28042.exe (PID: 16800)
      • Unicorn-7238.exe (PID: 17220)
      • Unicorn-19126.exe (PID: 17436)
      • Unicorn-44592.exe (PID: 16644)
      • Unicorn-32148.exe (PID: 17544)
      • Unicorn-19682.exe (PID: 16988)
      • Unicorn-33225.exe (PID: 17336)
      • Unicorn-15812.exe (PID: 17596)
      • Unicorn-11021.exe (PID: 17620)
      • Unicorn-42983.exe (PID: 16116)
      • Unicorn-35661.exe (PID: 17412)
      • Unicorn-798.exe (PID: 16044)
    • The sample compiled with chinese language support

      • 1 (1300).exe (PID: 1764)
      • Unicorn-65079.exe (PID: 9952)
      • Unicorn-29392.exe (PID: 10044)
      • Unicorn-63910.exe (PID: 10092)
      • Unicorn-34030.exe (PID: 10008)
      • Unicorn-9526.exe (PID: 10028)
      • Unicorn-64565.exe (PID: 10108)
      • Unicorn-59849.exe (PID: 10188)
      • Unicorn-47382.exe (PID: 8796)
      • Unicorn-41452.exe (PID: 10136)
      • Unicorn-47482.exe (PID: 10060)
      • Unicorn-37922.exe (PID: 10100)
      • Unicorn-49687.exe (PID: 8640)
      • Unicorn-65079.exe (PID: 9960)
      • Unicorn-12863.exe (PID: 9980)
      • Unicorn-51466.exe (PID: 10224)
      • Unicorn-52998.exe (PID: 8908)
      • Unicorn-24659.exe (PID: 8836)
      • Unicorn-51851.exe (PID: 7804)
      • Unicorn-57606.exe (PID: 8800)
      • Unicorn-52810.exe (PID: 8388)
      • Unicorn-30906.exe (PID: 8424)
      • Unicorn-32578.exe (PID: 8964)
      • Unicorn-30906.exe (PID: 9924)
      • Unicorn-65342.exe (PID: 8956)
      • Unicorn-49626.exe (PID: 7192)
      • Unicorn-50772.exe (PID: 9932)
      • Unicorn-55756.exe (PID: 7200)
      • Unicorn-51466.exe (PID: 10208)
      • Unicorn-37368.exe (PID: 10172)
      • Unicorn-1201.exe (PID: 8240)
      • Unicorn-22516.exe (PID: 7772)
      • Unicorn-41650.exe (PID: 4988)
      • Unicorn-25972.exe (PID: 9056)
      • Unicorn-46392.exe (PID: 9164)
      • Unicorn-37366.exe (PID: 10264)
      • Unicorn-43054.exe (PID: 9088)
      • Unicorn-51467.exe (PID: 7860)
      • Unicorn-16839.exe (PID: 10284)
      • Unicorn-13527.exe (PID: 9124)
      • Unicorn-32596.exe (PID: 7248)
      • Unicorn-33032.exe (PID: 1328)
      • Unicorn-22132.exe (PID: 7844)
      • Unicorn-14186.exe (PID: 10316)
      • Unicorn-59687.exe (PID: 6004)
      • Unicorn-22516.exe (PID: 7764)
      • Unicorn-9274.exe (PID: 632)
      • Unicorn-10796.exe (PID: 9108)
      • Unicorn-36614.exe (PID: 7916)
      • Unicorn-50196.exe (PID: 10384)
      • Unicorn-25692.exe (PID: 10424)
      • Unicorn-39532.exe (PID: 7020)
      • Unicorn-16873.exe (PID: 9336)
      • Unicorn-4562.exe (PID: 7268)
      • Unicorn-59708.exe (PID: 10468)
      • Unicorn-43927.exe (PID: 10476)
      • Unicorn-39340.exe (PID: 9308)
      • Unicorn-15338.exe (PID: 10512)
      • Unicorn-10559.exe (PID: 5972)
      • Unicorn-64531.exe (PID: 1616)
      • Unicorn-39340.exe (PID: 9296)
      • Unicorn-64591.exe (PID: 9184)
      • Unicorn-56423.exe (PID: 9192)
      • Unicorn-2391.exe (PID: 9220)
      • Unicorn-14103.exe (PID: 8924)
      • Unicorn-55432.exe (PID: 10600)
      • Unicorn-46802.exe (PID: 9388)
      • Unicorn-1130.exe (PID: 9404)
      • Unicorn-54363.exe (PID: 10556)
      • Unicorn-35566.exe (PID: 10592)
      • Unicorn-5514.exe (PID: 9460)
      • Unicorn-31120.exe (PID: 10532)
      • Unicorn-63941.exe (PID: 7932)
      • Unicorn-60537.exe (PID: 9380)
      • Unicorn-51348.exe (PID: 10608)
      • Unicorn-40781.exe (PID: 8120)
      • Unicorn-53735.exe (PID: 7964)
      • Unicorn-11114.exe (PID: 9452)
      • Unicorn-27028.exe (PID: 6468)
      • Unicorn-62972.exe (PID: 7980)
      • Unicorn-65076.exe (PID: 7304)
      • Unicorn-25453.exe (PID: 8064)
      • Unicorn-54363.exe (PID: 10552)
      • Unicorn-2391.exe (PID: 9244)
      • Unicorn-51763.exe (PID: 9520)
      • Unicorn-51156.exe (PID: 10708)
      • Unicorn-1319.exe (PID: 1040)
      • Unicorn-58823.exe (PID: 6028)
      • Unicorn-50778.exe (PID: 7320)
      • Unicorn-20077.exe (PID: 5260)
      • Unicorn-40655.exe (PID: 3900)
      • Unicorn-6563.exe (PID: 8168)
      • Unicorn-20868.exe (PID: 6040)
      • Unicorn-63963.exe (PID: 10640)
      • Unicorn-14207.exe (PID: 10660)
      • Unicorn-15411.exe (PID: 9568)
      • Unicorn-48151.exe (PID: 8188)
      • Unicorn-23122.exe (PID: 10752)
      • Unicorn-49760.exe (PID: 7436)
      • Unicorn-63408.exe (PID: 10684)
      • Unicorn-24326.exe (PID: 9600)
      • Unicorn-4259.exe (PID: 7624)
      • Unicorn-63408.exe (PID: 10692)
      • Unicorn-30736.exe (PID: 10812)
      • Unicorn-3439.exe (PID: 3332)
      • Unicorn-44834.exe (PID: 10892)
      • Unicorn-28689.exe (PID: 10780)
      • Unicorn-3439.exe (PID: 7188)
      • Unicorn-52640.exe (PID: 672)
      • Unicorn-34820.exe (PID: 10764)
      • Unicorn-33424.exe (PID: 7456)
      • Unicorn-36304.exe (PID: 2644)
      • Unicorn-53002.exe (PID: 10868)
      • Unicorn-5006.exe (PID: 7488)
      • Unicorn-31940.exe (PID: 9608)
      • Unicorn-13057.exe (PID: 10744)
      • Unicorn-29031.exe (PID: 5436)
      • Unicorn-49543.exe (PID: 208)
      • Unicorn-63216.exe (PID: 10876)
      • Unicorn-6489.exe (PID: 7500)
      • Unicorn-54539.exe (PID: 7988)
      • Unicorn-35004.exe (PID: 5936)
      • Unicorn-55673.exe (PID: 1240)
      • Unicorn-27560.exe (PID: 8316)
      • Unicorn-54010.exe (PID: 8096)
      • Unicorn-32404.exe (PID: 7340)
      • Unicorn-24606.exe (PID: 6620)
      • Unicorn-8483.exe (PID: 8400)
      • Unicorn-47432.exe (PID: 4560)
      • Unicorn-50122.exe (PID: 9704)
      • Unicorn-21482.exe (PID: 8448)
      • Unicorn-33232.exe (PID: 7576)
      • Unicorn-12699.exe (PID: 2096)
      • Unicorn-52279.exe (PID: 6972)
      • Unicorn-53387.exe (PID: 7556)
      • Unicorn-44695.exe (PID: 11016)
      • Unicorn-51494.exe (PID: 8348)
      • Unicorn-17529.exe (PID: 10968)
      • Unicorn-22930.exe (PID: 10920)
      • Unicorn-55984.exe (PID: 1324)
      • Unicorn-28712.exe (PID: 8480)
      • Unicorn-4259.exe (PID: 7620)
      • Unicorn-7627.exe (PID: 9824)
      • Unicorn-23666.exe (PID: 8684)
      • Unicorn-28672.exe (PID: 8572)
      • Unicorn-16460.exe (PID: 8488)
      • Unicorn-32988.exe (PID: 8556)
      • Unicorn-16512.exe (PID: 7596)
      • Unicorn-47330.exe (PID: 7700)
      • Unicorn-37072.exe (PID: 8608)
      • Unicorn-13001.exe (PID: 4784)
      • Unicorn-43002.exe (PID: 8700)
      • Unicorn-60839.exe (PID: 11040)
      • Unicorn-57492.exe (PID: 8524)
      • Unicorn-42352.exe (PID: 6872)
      • Unicorn-40246.exe (PID: 7676)
      • Unicorn-52744.exe (PID: 9852)
      • Unicorn-28873.exe (PID: 5552)
      • Unicorn-803.exe (PID: 9876)
      • Unicorn-55386.exe (PID: 1164)
      • Unicorn-52698.exe (PID: 7688)
      • Unicorn-24606.exe (PID: 5416)
      • Unicorn-42390.exe (PID: 9896)
      • Unicorn-44472.exe (PID: 6744)
      • Unicorn-29392.exe (PID: 10036)
      • Unicorn-17886.exe (PID: 9940)
      • Unicorn-33953.exe (PID: 8988)
      • Unicorn-5914.exe (PID: 7796)
      • Unicorn-12650.exe (PID: 9064)
      • Unicorn-55411.exe (PID: 9236)
      • Unicorn-61931.exe (PID: 7284)
      • Unicorn-2066.exe (PID: 864)
      • Unicorn-33594.exe (PID: 7708)
      • Unicorn-19561.exe (PID: 10416)
      • Unicorn-5826.exe (PID: 9504)
      • Unicorn-46636.exe (PID: 8032)
      • Unicorn-65498.exe (PID: 9512)
      • Unicorn-8571.exe (PID: 8112)
      • Unicorn-20788.exe (PID: 7464)
      • Unicorn-28437.exe (PID: 8104)
      • Unicorn-50115.exe (PID: 2240)
      • Unicorn-59957.exe (PID: 8048)
      • Unicorn-34820.exe (PID: 10772)
      • Unicorn-62375.exe (PID: 7516)
      • Unicorn-65063.exe (PID: 8332)
      • Unicorn-42744.exe (PID: 7924)
      • Unicorn-2391.exe (PID: 9228)
      • Unicorn-55676.exe (PID: 9264)
      • Unicorn-46802.exe (PID: 9392)
      • Unicorn-18728.exe (PID: 8792)
      • Unicorn-11010.exe (PID: 11000)
      • Unicorn-19886.exe (PID: 7356)
      • Unicorn-23263.exe (PID: 10984)
      • Unicorn-40750.exe (PID: 10936)
      • Unicorn-22930.exe (PID: 10928)
      • Unicorn-37072.exe (PID: 8596)
      • Unicorn-41762.exe (PID: 7660)
      • Unicorn-37072.exe (PID: 8588)
      • Unicorn-4259.exe (PID: 7636)
      • Unicorn-486.exe (PID: 8616)
      • Unicorn-43002.exe (PID: 8692)
      • Unicorn-3750.exe (PID: 8676)
      • Unicorn-42352.exe (PID: 5392)
      • Unicorn-9931.exe (PID: 10844)
      • Unicorn-61820.exe (PID: 7540)
      • Unicorn-9165.exe (PID: 4464)
      • Unicorn-40196.exe (PID: 8296)
      • Unicorn-41452.exe (PID: 10132)
      • Unicorn-64435.exe (PID: 8260)
      • Unicorn-18934.exe (PID: 9004)
      • Unicorn-16102.exe (PID: 7884)
      • Unicorn-24406.exe (PID: 7408)
      • Unicorn-62654.exe (PID: 8272)
      • Unicorn-56524.exe (PID: 7384)
      • Unicorn-28712.exe (PID: 8472)
      • Unicorn-51466.exe (PID: 10216)
      • Unicorn-1851.exe (PID: 8932)
      • Unicorn-23018.exe (PID: 8996)
      • Unicorn-21666.exe (PID: 6876)
      • Unicorn-21417.exe (PID: 5740)
      • Unicorn-17206.exe (PID: 8580)
    • Creates files or folders in the user directory

      • WerFault.exe (PID: 11964)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | Win32 Executable (generic) (52.9)
.exe | Generic Win/DOS Executable (23.5)
.exe | DOS Executable Generic (23.5)

EXIF

EXE

MachineType: Intel 386 or later, and compatibles
TimeStamp: 2019:04:26 10:28:09+00:00
ImageFileCharacteristics: No relocs, Executable, No line numbers, No symbols, 32-bit
PEType: PE32
LinkerVersion: 6
CodeSize: 176128
InitializedDataSize: 8192
UninitializedDataSize: -
EntryPoint: 0x13b0
OSVersion: 4
ImageVersion: 1
SubsystemVersion: 4
Subsystem: Windows GUI
FileVersionNumber: 1.0.0.0
ProductVersionNumber: 1.0.0.0
FileFlagsMask: 0x0000
FileFlags: (none)
FileOS: Win32
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: Chinese (Simplified)
CharacterSet: Unicode
ComanyName: aaaa
ProductName: Kawaii-Unicorn
FileVersion: 1
ProductVersion: 1
InternalName: Kawaii-Unicorn
OriginalFileName: Kawaii-Unicorn.exe
No data.
screenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
701
Monitored processes
558
Malicious processes
87
Suspicious processes
57

Behavior graph

Click at the process to see the details
start 1 (1300).exe sppextcomobj.exe no specs slui.exe no specs unicorn-55984.exe unicorn-40655.exe unicorn-47432.exe unicorn-20868.exe unicorn-12699.exe unicorn-55386.exe unicorn-41650.exe unicorn-27028.exe unicorn-64531.exe unicorn-58823.exe unicorn-52279.exe unicorn-28873.exe unicorn-35004.exe unicorn-21417.exe unicorn-9274.exe unicorn-33032.exe unicorn-50115.exe unicorn-12886.exe no specs unicorn-20077.exe unicorn-1319.exe unicorn-9165.exe unicorn-29031.exe unicorn-49543.exe unicorn-55673.exe unicorn-42352.exe unicorn-42352.exe unicorn-2066.exe unicorn-13001.exe unicorn-21666.exe unicorn-49626.exe unicorn-55756.exe unicorn-32596.exe unicorn-4562.exe unicorn-61931.exe unicorn-65076.exe unicorn-50778.exe unicorn-32404.exe unicorn-19886.exe unicorn-56524.exe unicorn-24406.exe unicorn-49760.exe unicorn-33424.exe unicorn-20788.exe unicorn-5006.exe unicorn-6489.exe unicorn-62375.exe unicorn-61820.exe unicorn-53387.exe unicorn-33232.exe unicorn-16512.exe unicorn-4259.exe unicorn-4259.exe unicorn-4259.exe unicorn-41762.exe unicorn-40246.exe unicorn-52698.exe unicorn-47330.exe unicorn-33594.exe unicorn-22516.exe unicorn-22516.exe unicorn-5914.exe unicorn-51851.exe unicorn-22132.exe unicorn-51467.exe unicorn-16102.exe unicorn-36614.exe unicorn-42744.exe unicorn-63941.exe unicorn-53735.exe unicorn-43106.exe no specs unicorn-62972.exe unicorn-54539.exe unicorn-46636.exe unicorn-40091.exe unicorn-59957.exe unicorn-25453.exe unicorn-54010.exe unicorn-28437.exe unicorn-8571.exe unicorn-40781.exe unicorn-6563.exe unicorn-48151.exe unicorn-3439.exe unicorn-3439.exe unicorn-52640.exe unicorn-24606.exe unicorn-24606.exe unicorn-44472.exe unicorn-36304.exe unicorn-1201.exe unicorn-64435.exe unicorn-62654.exe unicorn-40196.exe unicorn-27560.exe unicorn-65063.exe unicorn-51494.exe unicorn-8483.exe unicorn-21482.exe unicorn-28712.exe unicorn-28712.exe unicorn-16460.exe unicorn-57492.exe unicorn-32988.exe unicorn-28672.exe unicorn-17206.exe unicorn-37072.exe unicorn-37072.exe unicorn-37072.exe unicorn-486.exe unicorn-49687.exe unicorn-3750.exe unicorn-23666.exe unicorn-43002.exe unicorn-43002.exe unicorn-29266.exe unicorn-52998.exe unicorn-14103.exe unicorn-1851.exe unicorn-65342.exe unicorn-32578.exe unicorn-33953.exe unicorn-23018.exe unicorn-18934.exe unicorn-25972.exe unicorn-12650.exe unicorn-43054.exe unicorn-10796.exe unicorn-13527.exe unicorn-5359.exe unicorn-46392.exe unicorn-64591.exe unicorn-56423.exe unicorn-59687.exe unicorn-39532.exe unicorn-18728.exe unicorn-10559.exe unicorn-2391.exe unicorn-2391.exe unicorn-55411.exe unicorn-2391.exe unicorn-55676.exe unicorn-39340.exe unicorn-39340.exe unicorn-39340.exe unicorn-16873.exe unicorn-60537.exe unicorn-46802.exe unicorn-46802.exe unicorn-1130.exe unicorn-11114.exe unicorn-5514.exe unicorn-22049.exe unicorn-5826.exe unicorn-65498.exe unicorn-51763.exe unicorn-15411.exe unicorn-24326.exe unicorn-31940.exe unicorn-50122.exe unicorn-7627.exe unicorn-52744.exe unicorn-803.exe unicorn-42390.exe unicorn-33668.exe no specs unicorn-17886.exe unicorn-65079.exe unicorn-65079.exe unicorn-12863.exe unicorn-34030.exe unicorn-9526.exe unicorn-29392.exe unicorn-29392.exe unicorn-47482.exe unicorn-63910.exe unicorn-37922.exe unicorn-64565.exe unicorn-41452.exe unicorn-41452.exe unicorn-37368.exe unicorn-59849.exe unicorn-51466.exe unicorn-51466.exe unicorn-51466.exe unicorn-47382.exe unicorn-24659.exe unicorn-57606.exe unicorn-52810.exe unicorn-30906.exe unicorn-30906.exe unicorn-50772.exe unicorn-37366.exe unicorn-16839.exe unicorn-14186.exe unicorn-34052.exe unicorn-50196.exe unicorn-19561.exe unicorn-25692.exe unicorn-59708.exe unicorn-43927.exe unicorn-15338.exe unicorn-31120.exe unicorn-54363.exe unicorn-54363.exe unicorn-35566.exe unicorn-55432.exe unicorn-51348.exe unicorn-63963.exe unicorn-14207.exe unicorn-63408.exe unicorn-63408.exe unicorn-42756.exe unicorn-51156.exe unicorn-13057.exe unicorn-23122.exe unicorn-34820.exe unicorn-34820.exe unicorn-28689.exe unicorn-30736.exe unicorn-9931.exe unicorn-53002.exe unicorn-63216.exe unicorn-44834.exe unicorn-22930.exe unicorn-22930.exe unicorn-40750.exe unicorn-17529.exe unicorn-23263.exe unicorn-11010.exe unicorn-44695.exe unicorn-60839.exe unicorn-9075.exe no specs unicorn-21328.exe no specs unicorn-59983.exe no specs unicorn-34924.exe no specs unicorn-34924.exe no specs unicorn-39008.exe no specs unicorn-10035.exe no specs unicorn-14119.exe no specs unicorn-34732.exe no specs unicorn-3713.exe no specs unicorn-49485.exe no specs unicorn-18758.exe no specs unicorn-32493.exe no specs unicorn-37232.exe no specs unicorn-31632.exe no specs unicorn-50684.exe no specs unicorn-42516.exe no specs unicorn-25915.exe no specs unicorn-6911.exe no specs unicorn-31608.exe no specs unicorn-64835.exe no specs unicorn-41430.exe no specs unicorn-15442.exe no specs unicorn-63704.exe no specs unicorn-55271.exe no specs unicorn-47368.exe no specs werfault.exe no specs unicorn-36460.exe no specs unicorn-32376.exe no specs unicorn-24570.exe no specs unicorn-24570.exe no specs unicorn-44436.exe no specs unicorn-12318.exe no specs unicorn-973.exe no specs unicorn-60388.exe no specs unicorn-52220.exe no specs unicorn-50174.exe no specs unicorn-31800.exe no specs unicorn-31800.exe no specs unicorn-19548.exe no specs unicorn-19548.exe no specs unicorn-8447.exe no specs unicorn-36465.exe no specs unicorn-45396.exe no specs unicorn-45396.exe no specs unicorn-49480.exe no specs unicorn-41312.exe no specs unicorn-20892.exe no specs unicorn-20892.exe no specs werfault.exe no specs unicorn-37036.exe no specs unicorn-32952.exe no specs unicorn-8063.exe no specs unicorn-41482.exe no specs unicorn-61348.exe no specs unicorn-33314.exe no specs unicorn-40928.exe no specs unicorn-8810.exe no specs unicorn-28676.exe no specs unicorn-11577.exe no specs unicorn-642.exe no specs unicorn-20508.exe no specs unicorn-24327.exe no specs unicorn-23885.exe no specs unicorn-23885.exe no specs unicorn-37206.exe no specs unicorn-44820.exe no specs unicorn-8618.exe no specs unicorn-26437.exe no specs unicorn-32568.exe no specs unicorn-450.exe no specs unicorn-450.exe no specs unicorn-48202.exe no specs unicorn-54067.exe no specs unicorn-38550.exe no specs unicorn-4707.exe no specs unicorn-6977.exe no specs unicorn-45010.exe no specs unicorn-41126.exe no specs unicorn-49791.exe no specs unicorn-43926.exe no specs unicorn-54311.exe no specs unicorn-53756.exe no specs unicorn-27205.exe no specs unicorn-1218.exe no specs unicorn-17960.exe no specs unicorn-9791.exe no specs unicorn-21586.exe no specs unicorn-35774.exe no specs unicorn-56387.exe no specs unicorn-23330.exe no specs unicorn-20729.exe no specs unicorn-36874.exe no specs unicorn-23138.exe no specs unicorn-23138.exe no specs unicorn-14970.exe no specs unicorn-1269.exe no specs unicorn-46386.exe no specs unicorn-24482.exe no specs unicorn-19578.exe no specs unicorn-13713.exe no specs unicorn-17797.exe no specs unicorn-62530.exe no specs unicorn-48795.exe no specs unicorn-48795.exe no specs unicorn-16122.exe no specs unicorn-14606.exe no specs unicorn-19386.exe no specs unicorn-19386.exe no specs unicorn-19386.exe no specs unicorn-6750.exe no specs unicorn-55454.exe no specs unicorn-22781.exe no specs unicorn-17413.exe no specs unicorn-17413.exe no specs unicorn-23279.exe no specs unicorn-3678.exe no specs unicorn-23119.exe no specs unicorn-19268.exe no specs unicorn-41586.exe no specs unicorn-33226.exe no specs unicorn-46962.exe no specs unicorn-62007.exe no specs unicorn-50440.exe no specs unicorn-4503.exe no specs unicorn-8530.exe no specs unicorn-26349.exe no specs unicorn-62914.exe no specs unicorn-32842.exe no specs unicorn-48624.exe no specs unicorn-8338.exe no specs unicorn-8338.exe no specs unicorn-62037.exe no specs unicorn-48302.exe no specs unicorn-54607.exe no specs unicorn-47922.exe no specs unicorn-9682.exe no specs unicorn-61069.exe no specs unicorn-5598.exe no specs unicorn-58883.exe no specs unicorn-5598.exe no specs unicorn-34930.exe no specs unicorn-4394.exe no specs unicorn-64066.exe no specs unicorn-42162.exe no specs unicorn-38078.exe no specs unicorn-38078.exe no specs unicorn-57944.exe no specs unicorn-25007.exe no specs unicorn-12754.exe no specs unicorn-58691.exe no specs unicorn-6889.exe no specs unicorn-6889.exe no specs unicorn-8286.exe no specs unicorn-383.exe no specs unicorn-28202.exe no specs unicorn-40654.exe no specs unicorn-32485.exe no specs unicorn-10781.exe no specs unicorn-16912.exe no specs unicorn-22841.exe no specs unicorn-36438.exe no specs unicorn-36438.exe no specs unicorn-41307.exe no specs unicorn-54436.exe no specs unicorn-29932.exe no specs unicorn-21847.exe no specs unicorn-63564.exe no specs unicorn-2111.exe no specs unicorn-42952.exe no specs unicorn-14363.exe no specs unicorn-14363.exe no specs unicorn-63180.exe no specs unicorn-50928.exe no specs unicorn-30508.exe no specs unicorn-22340.exe no specs unicorn-35936.exe no specs unicorn-15515.exe no specs unicorn-45950.exe no specs unicorn-35744.exe no specs unicorn-60056.exe no specs unicorn-35552.exe no specs unicorn-23300.exe no specs unicorn-12754.exe no specs unicorn-32620.exe no specs unicorn-3455.exe no specs unicorn-16868.exe no specs unicorn-3133.exe no specs unicorn-44488.exe no specs unicorn-57103.exe no specs unicorn-57103.exe no specs unicorn-28514.exe no specs unicorn-48380.exe no specs unicorn-32598.exe no specs unicorn-19792.exe no specs unicorn-33906.exe no specs unicorn-45604.exe no specs unicorn-33087.exe no specs unicorn-59702.exe no specs unicorn-59702.exe no specs unicorn-30.exe no specs unicorn-41328.exe no specs unicorn-16591.exe no specs unicorn-18861.exe no specs unicorn-54327.exe no specs unicorn-33522.exe no specs unicorn-36289.exe no specs unicorn-850.exe no specs unicorn-12547.exe no specs unicorn-21078.exe no specs unicorn-12355.exe no specs unicorn-40242.exe no specs unicorn-60470.exe no specs unicorn-798.exe no specs unicorn-1810.exe no specs werfault.exe no specs unicorn-61946.exe no specs unicorn-51011.exe no specs unicorn-9423.exe no specs werfault.exe no specs unicorn-34098.exe no specs unicorn-17762.exe no specs unicorn-54711.exe no specs unicorn-2909.exe no specs unicorn-4955.exe no specs unicorn-2909.exe no specs unicorn-41010.exe no specs unicorn-47140.exe no specs unicorn-63284.exe no specs unicorn-46948.exe no specs unicorn-30347.exe no specs unicorn-10746.exe no specs unicorn-14010.exe no specs unicorn-59947.exe no specs unicorn-63092.exe no specs unicorn-47311.exe no specs unicorn-47311.exe no specs unicorn-47311.exe no specs unicorn-30974.exe no specs unicorn-14638.exe no specs unicorn-58239.exe no specs unicorn-63839.exe no specs unicorn-63839.exe no specs unicorn-18168.exe no specs unicorn-51587.exe no specs unicorn-47119.exe no specs unicorn-1447.exe no specs unicorn-26698.exe no specs unicorn-26698.exe no specs unicorn-22060.exe no specs unicorn-7761.exe no specs unicorn-5723.exe no specs unicorn-36210.exe no specs unicorn-28042.exe no specs unicorn-51992.exe no specs unicorn-61321.exe no specs unicorn-61321.exe no specs unicorn-47586.exe no specs unicorn-47586.exe no specs unicorn-7067.exe no specs unicorn-19682.exe no specs unicorn-59968.exe no specs unicorn-25249.exe no specs unicorn-10197.exe no specs unicorn-41394.exe no specs unicorn-41394.exe no specs unicorn-41394.exe no specs unicorn-12997.exe no specs unicorn-59199.exe no specs unicorn-64799.exe no specs unicorn-64799.exe no specs unicorn-20973.exe no specs unicorn-7238.exe no specs unicorn-20973.exe no specs unicorn-26839.exe no specs unicorn-33225.exe no specs unicorn-19490.exe no specs unicorn-42983.exe no specs unicorn-44592.exe no specs unicorn-35661.exe no specs unicorn-44327.exe no specs unicorn-3294.exe no specs unicorn-19126.exe no specs unicorn-60928.exe no specs unicorn-34317.exe no specs unicorn-60696.exe no specs unicorn-39165.exe no specs unicorn-32148.exe no specs unicorn-15812.exe no specs unicorn-24756.exe no specs unicorn-11021.exe no specs unicorn-22719.exe no specs unicorn-58306.exe no specs unicorn-64171.exe no specs unicorn-56268.exe no specs unicorn-19512.exe no specs unicorn-57015.exe no specs unicorn-57015.exe no specs unicorn-40892.exe no specs unicorn-64826.exe no specs unicorn-48868.exe no specs unicorn-1897.exe no specs unicorn-3149.exe no specs unicorn-23661.exe no specs unicorn-25708.exe no specs unicorn-35722.exe no specs unicorn-33419.exe no specs unicorn-33684.exe no specs unicorn-4711.exe no specs unicorn-15109.exe no specs unicorn-15109.exe no specs unicorn-20974.exe no specs unicorn-15109.exe no specs unicorn-4519.exe no specs unicorn-33035.exe no specs unicorn-8530.exe no specs unicorn-57102.exe no specs unicorn-62967.exe no specs unicorn-62967.exe no specs unicorn-54302.exe no specs unicorn-32597.exe no specs unicorn-32597.exe no specs unicorn-30295.exe no specs unicorn-24429.exe no specs unicorn-13991.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
208C:\Users\admin\AppData\Local\Temp\Unicorn-49543.exeC:\Users\admin\AppData\Local\Temp\Unicorn-49543.exe
Unicorn-47432.exe
User:
admin
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-49543.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
632C:\Users\admin\AppData\Local\Temp\Unicorn-9274.exeC:\Users\admin\AppData\Local\Temp\Unicorn-9274.exe
Unicorn-41650.exe
User:
admin
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-9274.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
672C:\Users\admin\AppData\Local\Temp\Unicorn-52640.exeC:\Users\admin\AppData\Local\Temp\Unicorn-52640.exe
Unicorn-5006.exe
User:
admin
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-52640.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
864C:\Users\admin\AppData\Local\Temp\Unicorn-2066.exeC:\Users\admin\AppData\Local\Temp\Unicorn-2066.exe
Unicorn-55386.exe
User:
admin
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-2066.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
924C:\Users\admin\AppData\Local\Temp\Unicorn-23330.exeC:\Users\admin\AppData\Local\Temp\Unicorn-23330.exeUnicorn-3439.exe
User:
admin
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-23330.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
976C:\Users\admin\AppData\Local\Temp\Unicorn-32597.exeC:\Users\admin\AppData\Local\Temp\Unicorn-32597.exeUnicorn-40196.exe
User:
admin
Integrity Level:
MEDIUM
Version:
1.00
1040C:\Users\admin\AppData\Local\Temp\Unicorn-1319.exeC:\Users\admin\AppData\Local\Temp\Unicorn-1319.exe
Unicorn-58823.exe
User:
admin
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-1319.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1164C:\Users\admin\AppData\Local\Temp\Unicorn-55386.exeC:\Users\admin\AppData\Local\Temp\Unicorn-55386.exe
1 (1300).exe
User:
admin
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-55386.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1240C:\Users\admin\AppData\Local\Temp\Unicorn-55673.exeC:\Users\admin\AppData\Local\Temp\Unicorn-55673.exe
Unicorn-35004.exe
User:
admin
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-55673.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1324C:\Users\admin\AppData\Local\Temp\Unicorn-55984.exeC:\Users\admin\AppData\Local\Temp\Unicorn-55984.exe
1 (1300).exe
User:
admin
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-55984.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
Total events
17 651
Read events
17 651
Write events
0
Delete events
0

Modification events

No data
Executable files
1 106
Suspicious files
5
Text files
2
Unknown types
1

Dropped files

PID
Process
Filename
Type
1324Unicorn-55984.exeC:\Users\admin\AppData\Local\Temp\Unicorn-28873.exeexecutable
MD5:1589F8687C891CB8E8B46C43E0778595
SHA256:BA2693743BE62CF5FC7845525D9E9FFB970AB0A77E0939B6A2F73DE5E22D071B
4560Unicorn-47432.exeC:\Users\admin\AppData\Local\Temp\Unicorn-52279.exeexecutable
MD5:0AC006FAB2A363D6159008D7FE270F50
SHA256:20841FF65EAAB499554B4B63A464A25005301624D16C96BB57018745211405B9
17641 (1300).exeC:\Users\admin\AppData\Local\Temp\Unicorn-55386.exeexecutable
MD5:5D47904B2FE42233D11DC2E746C8997E
SHA256:618B6A521EADB3CE86CED23E241F97C3C2F0A7236E59BEF200A40B5EA2EC5227
1164Unicorn-55386.exeC:\Users\admin\AppData\Local\Temp\Unicorn-35004.exeexecutable
MD5:1F92B6A34CE2CACF74ED4FA6F3CAA149
SHA256:613BD5D5D481F9FB442A7A4F2CA36D1A0EA50ECDFC469060FAABF9625C672B36
3900Unicorn-40655.exeC:\Users\admin\AppData\Local\Temp\Unicorn-64531.exeexecutable
MD5:925F5811615D87C660078BC323DC69CD
SHA256:E9B19E7AC0FDEC61EF60F5D388671C59E79E025FFCB793630015C53F9FA5ADFD
3900Unicorn-40655.exeC:\Users\admin\AppData\Local\Temp\Unicorn-20077.exeexecutable
MD5:521774127D3DD06E98164B88AD98B6EE
SHA256:9E66F5F18BC9D25E2D069CF9E7048348281EDE6BED3CCA58C0596B9591F0FACA
17641 (1300).exeC:\Users\admin\AppData\Local\Temp\Unicorn-21417.exeexecutable
MD5:BF374131135D507DBEAA637B951006E5
SHA256:20CAB03195B173894D7A6F141D79F90DA43AD9BECB1C6C56748D32F9F0A2AEDA
6040Unicorn-20868.exeC:\Users\admin\AppData\Local\Temp\Unicorn-27028.exeexecutable
MD5:0925C3ABEF00732DAB2378A35FCD803A
SHA256:761A403090E0DBC103CCF732AD62DCDD6AD4DB5516A87D4C78C273F6368B4DBE
6040Unicorn-20868.exeC:\Users\admin\AppData\Local\Temp\Unicorn-50115.exeexecutable
MD5:662DF2C2A7C9966E823B7C3DAE6FF7E4
SHA256:41102C184A7660965471F38882B0CBAFE83D7E0F0AA762543F6A9D3EB56D8755
4988Unicorn-41650.exeC:\Users\admin\AppData\Local\Temp\Unicorn-9274.exeexecutable
MD5:6754AA944B74C81E179B26A47E06665F
SHA256:B4216D23F97F926AE84EAA30F28A7F664A4435BFC4A6EE3102B678DBED49DF39
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
7
TCP/UDP connections
30
DNS requests
18
Threats
0

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
8784
SIHClient.exe
GET
200
184.30.21.171:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Product%20Root%20Certificate%20Authority%202018.crl
unknown
whitelisted
6544
svchost.exe
GET
200
2.23.77.188:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
2504
backgroundTaskHost.exe
GET
200
2.23.77.188:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAUZZSZEml49Gjh0j13P68w%3D
unknown
whitelisted
GET
200
2.16.168.114:80
http://crl.microsoft.com/pki/crl/products/MicRooCerAut2011_2011_03_22.crl
unknown
whitelisted
GET
200
23.219.150.101:80
http://www.microsoft.com/pkiops/crl/MicSecSerCA2011_2011-10-18.crl
unknown
whitelisted
GET
200
2.16.168.124:80
http://crl.microsoft.com/pki/crl/products/MicRooCerAut2011_2011_03_22.crl
unknown
whitelisted
8784
SIHClient.exe
GET
200
184.30.21.171:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Update%20Secure%20Server%20CA%202.1.crl
unknown
whitelisted
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
4
System
192.168.100.255:137
whitelisted
5496
MoUsoCoreWorker.exe
51.104.136.2:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
2104
svchost.exe
51.104.136.2:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
4
System
192.168.100.255:138
whitelisted
2.16.168.124:80
crl.microsoft.com
Akamai International B.V.
RU
whitelisted
4628
RUXIMICS.exe
51.104.136.2:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
3216
svchost.exe
20.198.162.78:443
client.wns.windows.com
MICROSOFT-CORP-MSN-AS-BLOCK
SG
whitelisted
6544
svchost.exe
40.126.31.3:443
login.live.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
6544
svchost.exe
2.23.77.188:80
ocsp.digicert.com
AKAMAI-AS
DE
whitelisted
2504
backgroundTaskHost.exe
20.223.36.55:443
arc.msn.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted

DNS requests

Domain
IP
Reputation
google.com
  • 142.250.74.206
whitelisted
settings-win.data.microsoft.com
  • 51.104.136.2
whitelisted
crl.microsoft.com
  • 2.16.168.124
  • 2.16.168.114
whitelisted
client.wns.windows.com
  • 20.198.162.78
whitelisted
login.live.com
  • 40.126.31.3
  • 40.126.31.129
  • 40.126.31.2
  • 20.190.159.2
  • 40.126.31.69
  • 40.126.31.73
  • 40.126.31.67
  • 40.126.31.130
whitelisted
ocsp.digicert.com
  • 2.23.77.188
whitelisted
arc.msn.com
  • 20.223.36.55
whitelisted
slscr.update.microsoft.com
  • 20.109.210.53
whitelisted
www.microsoft.com
  • 184.30.21.171
  • 23.219.150.101
whitelisted
fe3cr.delivery.mp.microsoft.com
  • 20.242.39.171
whitelisted

Threats

No threats detected
No debug info