File name:

1 (522)

Full analysis: https://app.any.run/tasks/81530843-7f5f-4fa4-8427-57a77c3511ee
Verdict: Malicious activity
Analysis date: March 25, 2025, 00:38:41
OS: Windows 10 Professional (build: 19044, 64 bit)
Indicators:
MIME: application/vnd.microsoft.portable-executable
File info: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, 3 sections
MD5:

026D5AB851AB2D2DA4F956C8B7E3F1B0

SHA1:

86E65403DF36F16229B39D04C2FB45DB7C5560CC

SHA256:

7A7FE1B4C2311C82D5DF9F0836D8D6A7D330E52C6DF783A2E1DC362B7DCD7795

SSDEEP:

6144:57K8f7IJeDzHA5DlU/e+3AMx/tXQlvJGBH/WyeOUFk/8SwjwpyAvEhgVs1V+sHVa:5+aMCHA55U2iXmhaHOyeOUhx4DxmDsR

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    No malicious indicators.
  • SUSPICIOUS

    • Executable content was dropped or overwritten

      • Unicorn-18648.exe (PID: 7772)
      • 1 (522).exe (PID: 7328)
      • Unicorn-42764.exe (PID: 7756)
      • Unicorn-45941.exe (PID: 7416)
      • Unicorn-40443.exe (PID: 1276)
      • Unicorn-23679.exe (PID: 7236)
      • Unicorn-36830.exe (PID: 7228)
      • Unicorn-24178.exe (PID: 7324)
      • Unicorn-29810.exe (PID: 7252)
      • Unicorn-54774.exe (PID: 4920)
      • Unicorn-40602.exe (PID: 6516)
      • Unicorn-14385.exe (PID: 5408)
      • Unicorn-11327.exe (PID: 4164)
      • Unicorn-31163.exe (PID: 5324)
      • Unicorn-51365.exe (PID: 896)
      • Unicorn-24571.exe (PID: 7180)
      • Unicorn-60569.exe (PID: 1020)
      • Unicorn-5681.exe (PID: 1184)
      • Unicorn-36216.exe (PID: 1052)
      • Unicorn-17558.exe (PID: 536)
      • Unicorn-26709.exe (PID: 5392)
      • Unicorn-34104.exe (PID: 516)
      • Unicorn-14238.exe (PID: 6388)
      • Unicorn-46325.exe (PID: 5640)
      • Unicorn-39064.exe (PID: 5528)
      • Unicorn-42136.exe (PID: 6184)
      • Unicorn-21114.exe (PID: 3240)
      • Unicorn-55872.exe (PID: 6476)
      • Unicorn-45001.exe (PID: 5756)
      • Unicorn-13308.exe (PID: 7456)
      • Unicorn-12952.exe (PID: 1040)
      • Unicorn-11873.exe (PID: 6712)
      • Unicorn-18101.exe (PID: 3008)
      • Unicorn-32818.exe (PID: 1012)
      • Unicorn-55238.exe (PID: 7984)
      • Unicorn-61055.exe (PID: 7812)
      • Unicorn-8798.exe (PID: 7460)
      • Unicorn-48098.exe (PID: 7860)
      • Unicorn-30177.exe (PID: 8116)
      • Unicorn-40873.exe (PID: 8156)
      • Unicorn-8820.exe (PID: 644)
      • Unicorn-55675.exe (PID: 8112)
      • Unicorn-25461.exe (PID: 7660)
      • Unicorn-12602.exe (PID: 7592)
      • Unicorn-41714.exe (PID: 7412)
      • Unicorn-26904.exe (PID: 8036)
      • Unicorn-49173.exe (PID: 8152)
      • Unicorn-29931.exe (PID: 7808)
      • Unicorn-35028.exe (PID: 4620)
      • Unicorn-10106.exe (PID: 1240)
      • Unicorn-28641.exe (PID: 5304)
      • Unicorn-21408.exe (PID: 7680)
      • Unicorn-1073.exe (PID: 5064)
      • Unicorn-12991.exe (PID: 7444)
      • Unicorn-27381.exe (PID: 1512)
      • Unicorn-53565.exe (PID: 7956)
      • Unicorn-48735.exe (PID: 7368)
      • Unicorn-21272.exe (PID: 7640)
      • Unicorn-56760.exe (PID: 1188)
      • Unicorn-28254.exe (PID: 1096)
      • Unicorn-628.exe (PID: 4180)
      • Unicorn-24968.exe (PID: 2772)
      • Unicorn-8244.exe (PID: 904)
      • Unicorn-13316.exe (PID: 8032)
      • Unicorn-1139.exe (PID: 8340)
      • Unicorn-62882.exe (PID: 7716)
      • Unicorn-61755.exe (PID: 6640)
      • Unicorn-43913.exe (PID: 8172)
      • Unicorn-56885.exe (PID: 8296)
      • Unicorn-42875.exe (PID: 6048)
      • Unicorn-12440.exe (PID: 7404)
      • Unicorn-54617.exe (PID: 8288)
      • Unicorn-9542.exe (PID: 8324)
      • Unicorn-13704.exe (PID: 6872)
      • Unicorn-38168.exe (PID: 7348)
      • Unicorn-42405.exe (PID: 4428)
      • Unicorn-51904.exe (PID: 7616)
      • Unicorn-13611.exe (PID: 6080)
      • Unicorn-49283.exe (PID: 7440)
      • Unicorn-40704.exe (PID: 8464)
      • Unicorn-23557.exe (PID: 8356)
      • Unicorn-50805.exe (PID: 2192)
      • Unicorn-43000.exe (PID: 4068)
      • Unicorn-29036.exe (PID: 6668)
      • Unicorn-6174.exe (PID: 8420)
      • Unicorn-40565.exe (PID: 8400)
      • Unicorn-31838.exe (PID: 5048)
      • Unicorn-26214.exe (PID: 8932)
      • Unicorn-62779.exe (PID: 8872)
      • Unicorn-62642.exe (PID: 8148)
      • Unicorn-5623.exe (PID: 4424)
      • Unicorn-1527.exe (PID: 7900)
      • Unicorn-42878.exe (PID: 8828)
      • Unicorn-62642.exe (PID: 6392)
      • Unicorn-56192.exe (PID: 8644)
      • Unicorn-63071.exe (PID: 8432)
      • Unicorn-15864.exe (PID: 8500)
      • Unicorn-52941.exe (PID: 8568)
      • Unicorn-2663.exe (PID: 9204)
      • Unicorn-5339.exe (PID: 8560)
      • Unicorn-39416.exe (PID: 2340)
      • Unicorn-11394.exe (PID: 9068)
      • Unicorn-51816.exe (PID: 9672)
      • Unicorn-23576.exe (PID: 9756)
      • Unicorn-64513.exe (PID: 9156)
      • Unicorn-7235.exe (PID: 1912)
      • Unicorn-11214.exe (PID: 2332)
      • Unicorn-55098.exe (PID: 9612)
      • Unicorn-29668.exe (PID: 9632)
      • Unicorn-16006.exe (PID: 8884)
      • Unicorn-58962.exe (PID: 8576)
      • Unicorn-9795.exe (PID: 8744)
      • Unicorn-64504.exe (PID: 8600)
      • Unicorn-28784.exe (PID: 8976)
      • Unicorn-18235.exe (PID: 8348)
      • Unicorn-4516.exe (PID: 9336)
      • Unicorn-3203.exe (PID: 7904)
      • Unicorn-22660.exe (PID: 8628)
      • Unicorn-26625.exe (PID: 8756)
      • Unicorn-48641.exe (PID: 10032)
      • Unicorn-31629.exe (PID: 3300)
      • Unicorn-62846.exe (PID: 9532)
      • Unicorn-49058.exe (PID: 9244)
      • Unicorn-48165.exe (PID: 3268)
      • Unicorn-63016.exe (PID: 872)
      • Unicorn-24847.exe (PID: 9644)
      • Unicorn-11007.exe (PID: 6576)
      • Unicorn-37886.exe (PID: 8992)
      • Unicorn-43373.exe (PID: 780)
      • Unicorn-40896.exe (PID: 8900)
      • Unicorn-43178.exe (PID: 8892)
      • Unicorn-51743.exe (PID: 8528)
      • Unicorn-759.exe (PID: 9360)
      • Unicorn-31875.exe (PID: 9196)
      • Unicorn-6420.exe (PID: 9600)
      • Unicorn-35506.exe (PID: 8584)
      • Unicorn-14403.exe (PID: 8704)
      • Unicorn-8192.exe (PID: 9012)
      • Unicorn-44228.exe (PID: 11512)
      • Unicorn-52665.exe (PID: 7212)
      • Unicorn-35114.exe (PID: 11476)
      • Unicorn-12733.exe (PID: 11496)
      • Unicorn-54651.exe (PID: 9328)
      • Unicorn-15533.exe (PID: 12688)
      • Unicorn-65355.exe (PID: 12736)
      • Unicorn-35134.exe (PID: 12120)
      • Unicorn-19012.exe (PID: 8724)
      • Unicorn-7591.exe (PID: 10340)
      • Unicorn-62974.exe (PID: 6228)
      • Unicorn-21556.exe (PID: 9788)
      • Unicorn-15347.exe (PID: 9556)
      • Unicorn-50965.exe (PID: 2384)
      • Unicorn-51858.exe (PID: 9268)
      • Unicorn-42346.exe (PID: 12104)
      • Unicorn-60737.exe (PID: 12524)
      • Unicorn-35133.exe (PID: 9988)
      • Unicorn-51858.exe (PID: 9252)
      • Unicorn-47751.exe (PID: 11300)
      • Unicorn-60734.exe (PID: 8668)
      • Unicorn-47717.exe (PID: 12696)
      • Unicorn-52377.exe (PID: 8472)
      • Unicorn-32871.exe (PID: 9420)
      • Unicorn-16420.exe (PID: 11968)
      • Unicorn-37179.exe (PID: 9440)
      • Unicorn-206.exe (PID: 7220)
      • Unicorn-55431.exe (PID: 11248)
      • Unicorn-60651.exe (PID: 8696)
      • Unicorn-32429.exe (PID: 11752)
      • Unicorn-34126.exe (PID: 10740)
      • Unicorn-52648.exe (PID: 12236)
      • Unicorn-56914.exe (PID: 8864)
      • Unicorn-62660.exe (PID: 11292)
      • Unicorn-54885.exe (PID: 11424)
      • Unicorn-58744.exe (PID: 7296)
      • Unicorn-813.exe (PID: 11708)
      • Unicorn-56254.exe (PID: 5020)
      • Unicorn-31594.exe (PID: 12160)
      • Unicorn-59474.exe (PID: 10556)
      • Unicorn-2983.exe (PID: 13500)
      • Unicorn-63525.exe (PID: 12348)
      • Unicorn-23168.exe (PID: 11464)
      • Unicorn-59523.exe (PID: 10080)
      • Unicorn-47303.exe (PID: 208)
      • Unicorn-51474.exe (PID: 12308)
      • Unicorn-30855.exe (PID: 11688)
      • Unicorn-18564.exe (PID: 10156)
      • Unicorn-46520.exe (PID: 6980)
      • Unicorn-50965.exe (PID: 7876)
      • Unicorn-57281.exe (PID: 9964)
      • Unicorn-44191.exe (PID: 7144)
      • Unicorn-55495.exe (PID: 10996)
      • Unicorn-64830.exe (PID: 10332)
      • Unicorn-41982.exe (PID: 10636)
      • Unicorn-14658.exe (PID: 6132)
      • Unicorn-6723.exe (PID: 8820)
      • Unicorn-19153.exe (PID: 12744)
      • Unicorn-33255.exe (PID: 14776)
      • Unicorn-50898.exe (PID: 12192)
      • Unicorn-22381.exe (PID: 10644)
      • Unicorn-1057.exe (PID: 10840)
      • Unicorn-10112.exe (PID: 11348)
      • Unicorn-8190.exe (PID: 7792)
      • Unicorn-20604.exe (PID: 14784)
      • Unicorn-45203.exe (PID: 9380)
      • Unicorn-18628.exe (PID: 10820)
      • Unicorn-4229.exe (PID: 8592)
      • Unicorn-27525.exe (PID: 6960)
      • Unicorn-51858.exe (PID: 9260)
      • Unicorn-29005.exe (PID: 9448)
      • Unicorn-45742.exe (PID: 10812)
      • Unicorn-36004.exe (PID: 14816)
      • Unicorn-35626.exe (PID: 12252)
      • Unicorn-34807.exe (PID: 10660)
      • Unicorn-27525.exe (PID: 2104)
      • Unicorn-31992.exe (PID: 10404)
      • Unicorn-24949.exe (PID: 14320)
      • Unicorn-29220.exe (PID: 12128)
      • Unicorn-20554.exe (PID: 14704)
      • Unicorn-61141.exe (PID: 10176)
      • Unicorn-23940.exe (PID: 14768)
      • Unicorn-64775.exe (PID: 10196)
      • Unicorn-57701.exe (PID: 14828)
      • Unicorn-21649.exe (PID: 10124)
      • Unicorn-35006.exe (PID: 14288)
      • Unicorn-28487.exe (PID: 14976)
      • Unicorn-8390.exe (PID: 10304)
      • Unicorn-8066.exe (PID: 15100)
      • Unicorn-28324.exe (PID: 14888)
      • Unicorn-65378.exe (PID: 8276)
      • Unicorn-30483.exe (PID: 13284)
      • Unicorn-1124.exe (PID: 11440)
      • Unicorn-32257.exe (PID: 10416)
      • Unicorn-36367.exe (PID: 10096)
      • Unicorn-19982.exe (PID: 10516)
      • Unicorn-56830.exe (PID: 8128)
      • Unicorn-1485.exe (PID: 9496)
      • Unicorn-8390.exe (PID: 10312)
      • Unicorn-29053.exe (PID: 9580)
      • Unicorn-48199.exe (PID: 13408)
      • Unicorn-16647.exe (PID: 10272)
      • Unicorn-31331.exe (PID: 9456)
      • Unicorn-31331.exe (PID: 9464)
      • Unicorn-55659.exe (PID: 10848)
      • Unicorn-5418.exe (PID: 12780)
      • Unicorn-45188.exe (PID: 9096)
      • Unicorn-41607.exe (PID: 11412)
      • Unicorn-37229.exe (PID: 8272)
      • Unicorn-49362.exe (PID: 12208)
      • Unicorn-21476.exe (PID: 8852)
      • Unicorn-131.exe (PID: 1748)
      • Unicorn-4132.exe (PID: 12200)
      • Unicorn-36004.exe (PID: 14808)
      • Unicorn-54206.exe (PID: 10796)
      • Unicorn-43053.exe (PID: 4016)
      • Unicorn-31331.exe (PID: 9472)
      • Unicorn-62057.exe (PID: 8636)
      • Unicorn-5868.exe (PID: 8448)
      • Unicorn-15110.exe (PID: 10832)
      • Unicorn-45566.exe (PID: 10868)
      • Unicorn-24065.exe (PID: 9180)
      • Unicorn-24772.exe (PID: 10776)
      • Unicorn-15533.exe (PID: 12112)
      • Unicorn-36967.exe (PID: 4284)
      • Unicorn-51509.exe (PID: 15216)
      • Unicorn-59103.exe (PID: 9812)
      • Unicorn-15427.exe (PID: 10472)
    • Starts itself from another location

      • 1 (522).exe (PID: 7328)
      • Unicorn-42764.exe (PID: 7756)
      • Unicorn-45941.exe (PID: 7416)
      • Unicorn-18648.exe (PID: 7772)
      • Unicorn-40443.exe (PID: 1276)
      • Unicorn-23679.exe (PID: 7236)
      • Unicorn-24178.exe (PID: 7324)
      • Unicorn-36830.exe (PID: 7228)
      • Unicorn-29810.exe (PID: 7252)
      • Unicorn-40602.exe (PID: 6516)
      • Unicorn-14385.exe (PID: 5408)
      • Unicorn-31163.exe (PID: 5324)
      • Unicorn-11873.exe (PID: 6712)
      • Unicorn-11327.exe (PID: 4164)
      • Unicorn-24571.exe (PID: 7180)
      • Unicorn-60569.exe (PID: 1020)
      • Unicorn-5681.exe (PID: 1184)
      • Unicorn-36216.exe (PID: 1052)
      • Unicorn-17558.exe (PID: 536)
      • Unicorn-51365.exe (PID: 896)
      • Unicorn-26709.exe (PID: 5392)
      • Unicorn-54774.exe (PID: 4920)
      • Unicorn-1073.exe (PID: 5064)
      • Unicorn-46325.exe (PID: 5640)
      • Unicorn-21114.exe (PID: 3240)
      • Unicorn-35028.exe (PID: 4620)
      • Unicorn-39064.exe (PID: 5528)
      • Unicorn-55872.exe (PID: 6476)
      • Unicorn-45001.exe (PID: 5756)
      • Unicorn-12952.exe (PID: 1040)
      • Unicorn-13308.exe (PID: 7456)
      • Unicorn-34104.exe (PID: 516)
      • Unicorn-42136.exe (PID: 6184)
      • Unicorn-18101.exe (PID: 3008)
      • Unicorn-32818.exe (PID: 1012)
      • Unicorn-55238.exe (PID: 7984)
      • Unicorn-61055.exe (PID: 7812)
      • Unicorn-48098.exe (PID: 7860)
      • Unicorn-8798.exe (PID: 7460)
      • Unicorn-1527.exe (PID: 7900)
      • Unicorn-40873.exe (PID: 8156)
      • Unicorn-30177.exe (PID: 8116)
      • Unicorn-55675.exe (PID: 8112)
      • Unicorn-25461.exe (PID: 7660)
      • Unicorn-8820.exe (PID: 644)
      • Unicorn-26904.exe (PID: 8036)
      • Unicorn-31838.exe (PID: 5048)
      • Unicorn-12602.exe (PID: 7592)
      • Unicorn-49173.exe (PID: 8152)
      • Unicorn-29931.exe (PID: 7808)
      • Unicorn-12991.exe (PID: 7444)
      • Unicorn-10106.exe (PID: 1240)
      • Unicorn-28641.exe (PID: 5304)
      • Unicorn-21408.exe (PID: 7680)
      • Unicorn-27381.exe (PID: 1512)
      • Unicorn-41714.exe (PID: 7412)
      • Unicorn-53565.exe (PID: 7956)
      • Unicorn-48735.exe (PID: 7368)
      • Unicorn-56760.exe (PID: 1188)
      • Unicorn-28254.exe (PID: 1096)
      • Unicorn-11007.exe (PID: 6576)
      • Unicorn-21272.exe (PID: 7640)
      • Unicorn-8244.exe (PID: 904)
      • Unicorn-1139.exe (PID: 8340)
      • Unicorn-24968.exe (PID: 2772)
      • Unicorn-14238.exe (PID: 6388)
      • Unicorn-62882.exe (PID: 7716)
      • Unicorn-61755.exe (PID: 6640)
      • Unicorn-42875.exe (PID: 6048)
      • Unicorn-43913.exe (PID: 8172)
      • Unicorn-56885.exe (PID: 8296)
      • Unicorn-38168.exe (PID: 7348)
      • Unicorn-12440.exe (PID: 7404)
      • Unicorn-9542.exe (PID: 8324)
      • Unicorn-13704.exe (PID: 6872)
      • Unicorn-54617.exe (PID: 8288)
      • Unicorn-50755.exe (PID: 7940)
      • Unicorn-51904.exe (PID: 7616)
      • Unicorn-13611.exe (PID: 6080)
      • Unicorn-628.exe (PID: 4180)
      • Unicorn-50805.exe (PID: 2192)
      • Unicorn-43000.exe (PID: 4068)
      • Unicorn-23557.exe (PID: 8356)
      • Unicorn-40704.exe (PID: 8464)
      • Unicorn-29036.exe (PID: 6668)
      • Unicorn-40565.exe (PID: 8400)
      • Unicorn-6174.exe (PID: 8420)
      • Unicorn-42405.exe (PID: 4428)
      • Unicorn-43178.exe (PID: 8892)
      • Unicorn-26214.exe (PID: 8932)
      • Unicorn-40896.exe (PID: 8900)
      • Unicorn-62779.exe (PID: 8872)
      • Unicorn-62642.exe (PID: 8148)
      • Unicorn-5623.exe (PID: 4424)
      • Unicorn-62642.exe (PID: 6392)
      • Unicorn-42878.exe (PID: 8828)
      • Unicorn-63071.exe (PID: 8432)
      • Unicorn-15864.exe (PID: 8500)
      • Unicorn-56192.exe (PID: 8644)
      • Unicorn-52941.exe (PID: 8568)
      • Unicorn-39416.exe (PID: 2340)
      • Unicorn-5339.exe (PID: 8560)
      • Unicorn-2663.exe (PID: 9204)
      • Unicorn-51816.exe (PID: 9672)
      • Unicorn-64513.exe (PID: 9156)
      • Unicorn-11214.exe (PID: 2332)
      • Unicorn-23576.exe (PID: 9756)
      • Unicorn-21556.exe (PID: 9788)
      • Unicorn-16006.exe (PID: 8884)
      • Unicorn-55098.exe (PID: 9612)
      • Unicorn-58962.exe (PID: 8576)
      • Unicorn-9795.exe (PID: 8744)
      • Unicorn-49283.exe (PID: 7440)
      • Unicorn-4516.exe (PID: 9336)
      • Unicorn-28784.exe (PID: 8976)
      • Unicorn-64504.exe (PID: 8600)
      • Unicorn-18235.exe (PID: 8348)
      • Unicorn-29668.exe (PID: 9632)
      • Unicorn-3203.exe (PID: 7904)
      • Unicorn-22660.exe (PID: 8628)
      • Unicorn-31233.exe (PID: 8772)
      • Unicorn-37229.exe (PID: 8272)
      • Unicorn-48641.exe (PID: 10032)
      • Unicorn-50965.exe (PID: 2384)
      • Unicorn-62846.exe (PID: 9532)
      • Unicorn-49058.exe (PID: 9244)
      • Unicorn-26625.exe (PID: 8756)
      • Unicorn-131.exe (PID: 1748)
      • Unicorn-37886.exe (PID: 8992)
      • Unicorn-52665.exe (PID: 7212)
      • Unicorn-43373.exe (PID: 780)
      • Unicorn-31629.exe (PID: 3300)
      • Unicorn-48165.exe (PID: 3268)
      • Unicorn-13316.exe (PID: 8032)
      • Unicorn-63016.exe (PID: 872)
      • Unicorn-6420.exe (PID: 9600)
      • Unicorn-759.exe (PID: 9360)
      • Unicorn-51743.exe (PID: 8528)
      • Unicorn-24847.exe (PID: 9644)
      • Unicorn-31875.exe (PID: 9196)
      • Unicorn-14403.exe (PID: 8704)
      • Unicorn-35506.exe (PID: 8584)
      • Unicorn-12733.exe (PID: 11496)
      • Unicorn-35114.exe (PID: 11476)
      • Unicorn-44228.exe (PID: 11512)
      • Unicorn-11394.exe (PID: 9068)
      • Unicorn-47717.exe (PID: 12696)
      • Unicorn-15533.exe (PID: 12688)
      • Unicorn-54651.exe (PID: 9328)
      • Unicorn-65355.exe (PID: 12736)
      • Unicorn-19012.exe (PID: 8724)
      • Unicorn-7591.exe (PID: 10340)
      • Unicorn-62974.exe (PID: 6228)
      • Unicorn-15347.exe (PID: 9556)
      • Unicorn-51858.exe (PID: 9268)
      • Unicorn-42346.exe (PID: 12104)
      • Unicorn-60737.exe (PID: 12524)
      • Unicorn-60734.exe (PID: 8668)
      • Unicorn-51858.exe (PID: 9252)
      • Unicorn-56744.exe (PID: 11432)
      • Unicorn-47751.exe (PID: 11300)
      • Unicorn-61141.exe (PID: 10176)
      • Unicorn-32871.exe (PID: 9420)
      • Unicorn-52377.exe (PID: 8472)
      • Unicorn-16420.exe (PID: 11968)
      • Unicorn-37179.exe (PID: 9440)
      • Unicorn-206.exe (PID: 7220)
      • Unicorn-55431.exe (PID: 11248)
      • Unicorn-8192.exe (PID: 9012)
      • Unicorn-32429.exe (PID: 11752)
      • Unicorn-35133.exe (PID: 9988)
      • Unicorn-60651.exe (PID: 8696)
      • Unicorn-14658.exe (PID: 6132)
      • Unicorn-34126.exe (PID: 10740)
      • Unicorn-52277.exe (PID: 8280)
      • Unicorn-56914.exe (PID: 8864)
      • Unicorn-54885.exe (PID: 11424)
      • Unicorn-813.exe (PID: 11708)
      • Unicorn-56254.exe (PID: 5020)
    • Executes application which crashes

      • Unicorn-42875.exe (PID: 6048)
  • INFO

    • Reads the computer name

      • 1 (522).exe (PID: 7328)
      • Unicorn-45941.exe (PID: 7416)
      • Unicorn-42764.exe (PID: 7756)
      • Unicorn-18648.exe (PID: 7772)
      • Unicorn-36830.exe (PID: 7228)
      • Unicorn-24178.exe (PID: 7324)
      • Unicorn-40443.exe (PID: 1276)
      • Unicorn-23679.exe (PID: 7236)
      • Unicorn-29810.exe (PID: 7252)
      • Unicorn-54774.exe (PID: 4920)
      • Unicorn-40602.exe (PID: 6516)
      • Unicorn-11327.exe (PID: 4164)
      • Unicorn-14385.exe (PID: 5408)
      • Unicorn-31163.exe (PID: 5324)
      • Unicorn-11873.exe (PID: 6712)
      • Unicorn-51365.exe (PID: 896)
      • Unicorn-24571.exe (PID: 7180)
      • Unicorn-5681.exe (PID: 1184)
      • Unicorn-60569.exe (PID: 1020)
      • Unicorn-17558.exe (PID: 536)
      • Unicorn-36216.exe (PID: 1052)
      • Unicorn-26709.exe (PID: 5392)
      • Unicorn-1073.exe (PID: 5064)
      • Unicorn-34104.exe (PID: 516)
      • Unicorn-14238.exe (PID: 6388)
      • Unicorn-42136.exe (PID: 6184)
      • Unicorn-46325.exe (PID: 5640)
      • Unicorn-35028.exe (PID: 4620)
      • Unicorn-39064.exe (PID: 5528)
      • Unicorn-21114.exe (PID: 3240)
      • Unicorn-55872.exe (PID: 6476)
      • Unicorn-18101.exe (PID: 3008)
      • Unicorn-12952.exe (PID: 1040)
      • Unicorn-45001.exe (PID: 5756)
      • Unicorn-13308.exe (PID: 7456)
      • Unicorn-32818.exe (PID: 1012)
      • Unicorn-61055.exe (PID: 7812)
      • Unicorn-48098.exe (PID: 7860)
      • Unicorn-55238.exe (PID: 7984)
      • Unicorn-8798.exe (PID: 7460)
      • Unicorn-40873.exe (PID: 8156)
      • Unicorn-30177.exe (PID: 8116)
      • Unicorn-1527.exe (PID: 7900)
      • Unicorn-8820.exe (PID: 644)
      • Unicorn-55675.exe (PID: 8112)
      • Unicorn-26904.exe (PID: 8036)
      • Unicorn-25461.exe (PID: 7660)
      • Unicorn-12602.exe (PID: 7592)
      • Unicorn-31838.exe (PID: 5048)
      • Unicorn-41714.exe (PID: 7412)
      • Unicorn-49173.exe (PID: 8152)
      • Unicorn-12991.exe (PID: 7444)
      • Unicorn-10106.exe (PID: 1240)
      • Unicorn-28641.exe (PID: 5304)
      • Unicorn-21408.exe (PID: 7680)
      • Unicorn-29931.exe (PID: 7808)
      • Unicorn-27381.exe (PID: 1512)
      • Unicorn-48735.exe (PID: 7368)
      • Unicorn-53565.exe (PID: 7956)
      • Unicorn-21272.exe (PID: 7640)
      • Unicorn-56760.exe (PID: 1188)
      • Unicorn-28254.exe (PID: 1096)
      • Unicorn-11007.exe (PID: 6576)
      • Unicorn-628.exe (PID: 4180)
      • Unicorn-13316.exe (PID: 8032)
      • Unicorn-1139.exe (PID: 8340)
      • Unicorn-8244.exe (PID: 904)
      • Unicorn-62882.exe (PID: 7716)
      • Unicorn-24968.exe (PID: 2772)
      • Unicorn-42875.exe (PID: 6048)
      • Unicorn-43913.exe (PID: 8172)
      • Unicorn-61755.exe (PID: 6640)
      • Unicorn-38168.exe (PID: 7348)
      • Unicorn-54617.exe (PID: 8288)
      • Unicorn-56885.exe (PID: 8296)
      • Unicorn-12440.exe (PID: 7404)
      • Unicorn-42405.exe (PID: 4428)
      • Unicorn-50755.exe (PID: 7940)
      • Unicorn-13704.exe (PID: 6872)
      • Unicorn-51904.exe (PID: 7616)
      • Unicorn-13611.exe (PID: 6080)
      • Unicorn-9542.exe (PID: 8324)
      • Unicorn-49283.exe (PID: 7440)
      • Unicorn-43000.exe (PID: 4068)
      • Unicorn-40704.exe (PID: 8464)
      • Unicorn-23557.exe (PID: 8356)
      • Unicorn-50805.exe (PID: 2192)
      • Unicorn-29036.exe (PID: 6668)
      • Unicorn-6174.exe (PID: 8420)
      • Unicorn-40565.exe (PID: 8400)
      • Unicorn-62642.exe (PID: 6392)
      • Unicorn-5623.exe (PID: 4424)
      • Unicorn-40896.exe (PID: 8900)
      • Unicorn-26214.exe (PID: 8932)
      • Unicorn-43178.exe (PID: 8892)
      • Unicorn-62779.exe (PID: 8872)
      • Unicorn-62642.exe (PID: 8148)
      • Unicorn-11394.exe (PID: 9068)
      • Unicorn-42878.exe (PID: 8828)
      • Unicorn-56192.exe (PID: 8644)
      • Unicorn-18235.exe (PID: 8348)
      • Unicorn-63071.exe (PID: 8432)
      • Unicorn-15864.exe (PID: 8500)
      • Unicorn-2663.exe (PID: 9204)
      • Unicorn-52941.exe (PID: 8568)
      • Unicorn-64513.exe (PID: 9156)
      • Unicorn-39416.exe (PID: 2340)
      • Unicorn-5339.exe (PID: 8560)
      • Unicorn-14403.exe (PID: 8704)
      • Unicorn-51816.exe (PID: 9672)
      • Unicorn-16006.exe (PID: 8884)
      • Unicorn-21556.exe (PID: 9788)
      • Unicorn-7235.exe (PID: 1912)
      • Unicorn-11214.exe (PID: 2332)
      • Unicorn-58962.exe (PID: 8576)
      • Unicorn-23576.exe (PID: 9756)
      • Unicorn-55098.exe (PID: 9612)
      • Unicorn-3203.exe (PID: 7904)
      • Unicorn-9795.exe (PID: 8744)
      • Unicorn-29668.exe (PID: 9632)
      • Unicorn-4516.exe (PID: 9336)
      • Unicorn-64504.exe (PID: 8600)
      • Unicorn-28784.exe (PID: 8976)
      • Unicorn-22660.exe (PID: 8628)
      • Unicorn-49058.exe (PID: 9244)
      • Unicorn-48641.exe (PID: 10032)
      • Unicorn-31233.exe (PID: 8772)
      • Unicorn-26625.exe (PID: 8756)
      • Unicorn-50965.exe (PID: 2384)
      • Unicorn-31629.exe (PID: 3300)
      • Unicorn-62846.exe (PID: 9532)
      • Unicorn-37229.exe (PID: 8272)
      • Unicorn-63016.exe (PID: 872)
      • Unicorn-131.exe (PID: 1748)
      • Unicorn-48165.exe (PID: 3268)
      • Unicorn-52665.exe (PID: 7212)
      • Unicorn-24847.exe (PID: 9644)
      • Unicorn-43373.exe (PID: 780)
      • Unicorn-37886.exe (PID: 8992)
      • Unicorn-8192.exe (PID: 9012)
      • Unicorn-35506.exe (PID: 8584)
      • Unicorn-6420.exe (PID: 9600)
      • Unicorn-759.exe (PID: 9360)
      • Unicorn-51743.exe (PID: 8528)
      • Unicorn-31875.exe (PID: 9196)
      • Unicorn-3857.exe (PID: 10856)
      • Unicorn-35114.exe (PID: 11476)
      • Unicorn-44228.exe (PID: 11512)
      • Unicorn-12733.exe (PID: 11496)
      • Unicorn-35134.exe (PID: 12120)
      • Unicorn-19012.exe (PID: 8724)
      • Unicorn-49362.exe (PID: 12208)
      • Unicorn-54651.exe (PID: 9328)
      • Unicorn-47717.exe (PID: 12696)
      • Unicorn-37179.exe (PID: 9440)
      • Unicorn-15533.exe (PID: 12688)
      • Unicorn-65355.exe (PID: 12736)
      • Unicorn-59103.exe (PID: 9812)
      • Unicorn-60737.exe (PID: 12524)
      • Unicorn-27931.exe (PID: 12292)
      • Unicorn-32429.exe (PID: 11752)
      • Unicorn-5868.exe (PID: 8448)
      • Unicorn-51858.exe (PID: 9252)
      • Unicorn-62057.exe (PID: 8636)
      • Unicorn-56744.exe (PID: 11432)
      • Unicorn-60651.exe (PID: 8696)
      • Unicorn-47794.exe (PID: 8484)
      • Unicorn-55431.exe (PID: 11248)
      • Unicorn-41607.exe (PID: 11412)
      • Unicorn-34126.exe (PID: 10740)
      • Unicorn-24772.exe (PID: 10776)
      • Unicorn-35133.exe (PID: 9988)
      • Unicorn-5251.exe (PID: 10576)
      • Unicorn-52377.exe (PID: 8472)
      • Unicorn-52648.exe (PID: 12236)
      • Unicorn-15533.exe (PID: 12112)
      • Unicorn-24065.exe (PID: 9180)
      • Unicorn-16647.exe (PID: 10272)
      • Unicorn-44612.exe (PID: 9104)
      • Unicorn-30155.exe (PID: 11976)
      • Unicorn-56914.exe (PID: 8864)
      • Unicorn-813.exe (PID: 11708)
      • Unicorn-15347.exe (PID: 9556)
      • Unicorn-45188.exe (PID: 9096)
      • Unicorn-54885.exe (PID: 11424)
      • Unicorn-21476.exe (PID: 8852)
      • Unicorn-7591.exe (PID: 10340)
      • Unicorn-62974.exe (PID: 6228)
      • Unicorn-60734.exe (PID: 8668)
      • Unicorn-15110.exe (PID: 10832)
      • Unicorn-62660.exe (PID: 11292)
      • Unicorn-18302.exe (PID: 9120)
      • Unicorn-54983.exe (PID: 9168)
      • Unicorn-52277.exe (PID: 8280)
      • Unicorn-15427.exe (PID: 10472)
      • Unicorn-18052.exe (PID: 8736)
      • Unicorn-51474.exe (PID: 12308)
      • Unicorn-36967.exe (PID: 4284)
      • Unicorn-51858.exe (PID: 9268)
      • Unicorn-42346.exe (PID: 12104)
      • Unicorn-47303.exe (PID: 208)
      • Unicorn-61141.exe (PID: 10176)
      • Unicorn-25982.exe (PID: 9000)
      • Unicorn-30855.exe (PID: 11688)
      • Unicorn-56254.exe (PID: 5020)
      • Unicorn-45203.exe (PID: 9380)
      • Unicorn-16420.exe (PID: 11968)
      • Unicorn-45566.exe (PID: 10868)
      • Unicorn-50898.exe (PID: 12192)
      • Unicorn-47751.exe (PID: 11300)
      • Unicorn-38535.exe (PID: 11384)
      • Unicorn-32871.exe (PID: 9420)
      • Unicorn-4229.exe (PID: 8592)
      • Unicorn-46165.exe (PID: 11760)
      • Unicorn-14658.exe (PID: 6132)
      • Unicorn-206.exe (PID: 7220)
      • Unicorn-58744.exe (PID: 7296)
      • Unicorn-59474.exe (PID: 10556)
      • Unicorn-33748.exe (PID: 14304)
      • Unicorn-2983.exe (PID: 13500)
      • Unicorn-23168.exe (PID: 11464)
      • Unicorn-31594.exe (PID: 12160)
      • Unicorn-63525.exe (PID: 12348)
    • Checks supported languages

      • 1 (522).exe (PID: 7328)
      • Unicorn-45941.exe (PID: 7416)
      • Unicorn-18648.exe (PID: 7772)
      • Unicorn-42764.exe (PID: 7756)
      • Unicorn-36830.exe (PID: 7228)
      • Unicorn-40443.exe (PID: 1276)
      • Unicorn-14385.exe (PID: 5408)
      • Unicorn-24178.exe (PID: 7324)
      • Unicorn-54774.exe (PID: 4920)
      • Unicorn-23679.exe (PID: 7236)
      • Unicorn-29810.exe (PID: 7252)
      • Unicorn-40602.exe (PID: 6516)
      • Unicorn-60569.exe (PID: 1020)
      • Unicorn-51365.exe (PID: 896)
      • Unicorn-31163.exe (PID: 5324)
      • Unicorn-11873.exe (PID: 6712)
      • Unicorn-24571.exe (PID: 7180)
      • Unicorn-11327.exe (PID: 4164)
      • Unicorn-17558.exe (PID: 536)
      • Unicorn-5681.exe (PID: 1184)
      • Unicorn-36216.exe (PID: 1052)
      • Unicorn-26709.exe (PID: 5392)
      • Unicorn-46325.exe (PID: 5640)
      • Unicorn-34104.exe (PID: 516)
      • Unicorn-14238.exe (PID: 6388)
      • Unicorn-1073.exe (PID: 5064)
      • Unicorn-39064.exe (PID: 5528)
      • Unicorn-35028.exe (PID: 4620)
      • Unicorn-55872.exe (PID: 6476)
      • Unicorn-21114.exe (PID: 3240)
      • Unicorn-42136.exe (PID: 6184)
      • Unicorn-12952.exe (PID: 1040)
      • Unicorn-32818.exe (PID: 1012)
      • Unicorn-45001.exe (PID: 5756)
      • Unicorn-10106.exe (PID: 1240)
      • Unicorn-61055.exe (PID: 7812)
      • Unicorn-12602.exe (PID: 7592)
      • Unicorn-13308.exe (PID: 7456)
      • Unicorn-48098.exe (PID: 7860)
      • Unicorn-8798.exe (PID: 7460)
      • Unicorn-55675.exe (PID: 8112)
      • Unicorn-25461.exe (PID: 7660)
      • Unicorn-50755.exe (PID: 7940)
      • Unicorn-26904.exe (PID: 8036)
      • Unicorn-18101.exe (PID: 3008)
      • Unicorn-55238.exe (PID: 7984)
      • Unicorn-5623.exe (PID: 4424)
      • Unicorn-49173.exe (PID: 8152)
      • Unicorn-8820.exe (PID: 644)
      • Unicorn-29931.exe (PID: 7808)
      • Unicorn-56760.exe (PID: 1188)
      • Unicorn-8244.exe (PID: 904)
      • Unicorn-12991.exe (PID: 7444)
      • Unicorn-28254.exe (PID: 1096)
      • Unicorn-21408.exe (PID: 7680)
      • Unicorn-40873.exe (PID: 8156)
      • Unicorn-24968.exe (PID: 2772)
      • Unicorn-61755.exe (PID: 6640)
      • Unicorn-29036.exe (PID: 6668)
      • Unicorn-30177.exe (PID: 8116)
      • Unicorn-1527.exe (PID: 7900)
      • Unicorn-21272.exe (PID: 7640)
      • Unicorn-27381.exe (PID: 1512)
      • Unicorn-48735.exe (PID: 7368)
      • Unicorn-53565.exe (PID: 7956)
      • Unicorn-31838.exe (PID: 5048)
      • Unicorn-11007.exe (PID: 6576)
      • Unicorn-39416.exe (PID: 2340)
      • Unicorn-62882.exe (PID: 7716)
      • Unicorn-41714.exe (PID: 7412)
      • Unicorn-43913.exe (PID: 8172)
      • Unicorn-28641.exe (PID: 5304)
      • Unicorn-628.exe (PID: 4180)
      • Unicorn-13316.exe (PID: 8032)
      • Unicorn-42875.exe (PID: 6048)
      • Unicorn-13611.exe (PID: 6080)
      • Unicorn-43000.exe (PID: 4068)
      • Unicorn-42405.exe (PID: 4428)
      • Unicorn-50805.exe (PID: 2192)
      • Unicorn-49283.exe (PID: 7440)
      • Unicorn-62642.exe (PID: 8148)
      • Unicorn-13704.exe (PID: 6872)
      • Unicorn-62642.exe (PID: 6392)
      • Unicorn-38168.exe (PID: 7348)
      • Unicorn-51904.exe (PID: 7616)
      • Unicorn-52277.exe (PID: 8280)
      • Unicorn-12440.exe (PID: 7404)
      • Unicorn-56885.exe (PID: 8296)
      • Unicorn-54617.exe (PID: 8288)
      • Unicorn-9542.exe (PID: 8324)
      • Unicorn-18235.exe (PID: 8348)
      • Unicorn-23557.exe (PID: 8356)
      • Unicorn-40565.exe (PID: 8400)
      • Unicorn-6174.exe (PID: 8420)
      • Unicorn-1139.exe (PID: 8340)
      • Unicorn-5868.exe (PID: 8448)
      • Unicorn-40704.exe (PID: 8464)
      • Unicorn-15864.exe (PID: 8500)
      • Unicorn-51743.exe (PID: 8528)
      • Unicorn-47794.exe (PID: 8484)
      • Unicorn-5339.exe (PID: 8560)
      • Unicorn-52941.exe (PID: 8568)
      • Unicorn-63071.exe (PID: 8432)
      • Unicorn-64504.exe (PID: 8600)
      • Unicorn-35506.exe (PID: 8584)
      • Unicorn-4229.exe (PID: 8592)
      • Unicorn-22660.exe (PID: 8628)
      • Unicorn-62057.exe (PID: 8636)
      • Unicorn-56192.exe (PID: 8644)
      • Unicorn-52377.exe (PID: 8472)
      • Unicorn-26214.exe (PID: 8932)
      • Unicorn-40896.exe (PID: 8900)
      • Unicorn-43178.exe (PID: 8892)
      • Unicorn-60651.exe (PID: 8696)
      • Unicorn-19588.exe (PID: 8716)
      • Unicorn-14403.exe (PID: 8704)
      • Unicorn-18052.exe (PID: 8736)
      • Unicorn-19012.exe (PID: 8724)
      • Unicorn-60734.exe (PID: 8668)
      • Unicorn-26625.exe (PID: 8756)
      • Unicorn-31233.exe (PID: 8772)
      • Unicorn-51399.exe (PID: 8804)
      • Unicorn-6723.exe (PID: 8820)
      • Unicorn-42878.exe (PID: 8828)
      • Unicorn-9795.exe (PID: 8744)
      • Unicorn-56914.exe (PID: 8864)
      • Unicorn-62779.exe (PID: 8872)
      • Unicorn-21476.exe (PID: 8852)
      • Unicorn-16006.exe (PID: 8884)
      • Unicorn-37886.exe (PID: 8992)
      • Unicorn-8192.exe (PID: 9012)
      • Unicorn-26724.exe (PID: 9052)
      • Unicorn-11394.exe (PID: 9068)
      • Unicorn-64513.exe (PID: 9156)
      • Unicorn-18302.exe (PID: 9120)
      • Unicorn-44612.exe (PID: 9104)
      • Unicorn-45188.exe (PID: 9096)
      • Unicorn-24065.exe (PID: 9180)
      • Unicorn-28784.exe (PID: 8976)
      • Unicorn-31875.exe (PID: 9196)
      • Unicorn-2663.exe (PID: 9204)
      • Unicorn-54983.exe (PID: 9168)
      • Unicorn-31629.exe (PID: 3300)
      • Unicorn-48165.exe (PID: 3268)
      • Unicorn-50965.exe (PID: 7876)
      • Unicorn-56830.exe (PID: 8128)
      • Unicorn-37229.exe (PID: 8272)
      • Unicorn-37229.exe (PID: 8316)
      • Unicorn-7235.exe (PID: 1912)
      • Unicorn-56254.exe (PID: 5020)
      • Unicorn-65378.exe (PID: 8276)
      • Unicorn-50965.exe (PID: 2384)
      • Unicorn-58962.exe (PID: 8576)
      • Unicorn-3203.exe (PID: 7904)
      • Unicorn-47303.exe (PID: 208)
      • Unicorn-25982.exe (PID: 9000)
      • Unicorn-21123.exe (PID: 9220)
      • Unicorn-49058.exe (PID: 9244)
      • Unicorn-51858.exe (PID: 9252)
      • Unicorn-51858.exe (PID: 9260)
      • Unicorn-51858.exe (PID: 9268)
      • Unicorn-131.exe (PID: 1748)
      • Unicorn-63016.exe (PID: 872)
      • Unicorn-11214.exe (PID: 2332)
      • Unicorn-51816.exe (PID: 9672)
      • Unicorn-23576.exe (PID: 9756)
      • Unicorn-51844.exe (PID: 9296)
      • Unicorn-4516.exe (PID: 9336)
      • Unicorn-21556.exe (PID: 9788)
      • Unicorn-54651.exe (PID: 9328)
      • Unicorn-39015.exe (PID: 9368)
      • Unicorn-47236.exe (PID: 9344)
      • Unicorn-21362.exe (PID: 9352)
      • Unicorn-759.exe (PID: 9360)
      • Unicorn-45203.exe (PID: 9380)
      • Unicorn-29005.exe (PID: 9448)
      • Unicorn-31331.exe (PID: 9472)
      • Unicorn-31331.exe (PID: 9456)
      • Unicorn-31331.exe (PID: 9464)
      • Unicorn-8938.exe (PID: 9484)
      • Unicorn-1485.exe (PID: 9496)
      • Unicorn-32871.exe (PID: 9420)
      • Unicorn-37179.exe (PID: 9440)
      • Unicorn-29053.exe (PID: 9580)
      • Unicorn-6420.exe (PID: 9600)
      • Unicorn-55098.exe (PID: 9612)
      • Unicorn-29668.exe (PID: 9632)
      • Unicorn-62846.exe (PID: 9532)
      • Unicorn-55385.exe (PID: 9656)
      • Unicorn-55848.exe (PID: 9664)
      • Unicorn-59103.exe (PID: 9812)
      • Unicorn-24775.exe (PID: 9848)
      • Unicorn-24847.exe (PID: 9644)
      • Unicorn-57281.exe (PID: 9964)
      • Unicorn-14717.exe (PID: 9916)
      • Unicorn-35133.exe (PID: 9988)
      • Unicorn-48641.exe (PID: 10032)
      • Unicorn-15347.exe (PID: 9556)
      • Unicorn-59523.exe (PID: 10080)
      • Unicorn-36367.exe (PID: 10096)
      • Unicorn-21649.exe (PID: 10124)
      • Unicorn-61141.exe (PID: 10176)
      • Unicorn-18564.exe (PID: 10156)
      • Unicorn-64775.exe (PID: 10196)
      • Unicorn-52665.exe (PID: 7212)
      • Unicorn-56830.exe (PID: 9544)
      • Unicorn-62974.exe (PID: 6228)
      • Unicorn-43373.exe (PID: 780)
      • Unicorn-36967.exe (PID: 4284)
      • Unicorn-8390.exe (PID: 10312)
      • Unicorn-8390.exe (PID: 10304)
      • Unicorn-64830.exe (PID: 10332)
      • Unicorn-31992.exe (PID: 10404)
      • Unicorn-32257.exe (PID: 10416)
      • Unicorn-51006.exe (PID: 10488)
      • Unicorn-19982.exe (PID: 10516)
      • Unicorn-59474.exe (PID: 10556)
      • Unicorn-5251.exe (PID: 10576)
      • Unicorn-16647.exe (PID: 10272)
      • Unicorn-6013.exe (PID: 10280)
      • Unicorn-15427.exe (PID: 10472)
      • Unicorn-34807.exe (PID: 10660)
      • Unicorn-41982.exe (PID: 10636)
      • Unicorn-45566.exe (PID: 10868)
      • Unicorn-3857.exe (PID: 10856)
      • Unicorn-55659.exe (PID: 10848)
      • Unicorn-34126.exe (PID: 10740)
      • Unicorn-54206.exe (PID: 10796)
      • Unicorn-24772.exe (PID: 10776)
      • Unicorn-18628.exe (PID: 10820)
      • Unicorn-51463.exe (PID: 10596)
      • Unicorn-6148.exe (PID: 10612)
      • Unicorn-22381.exe (PID: 10644)
      • Unicorn-1057.exe (PID: 10840)
      • Unicorn-45742.exe (PID: 10812)
      • Unicorn-47854.exe (PID: 10788)
      • Unicorn-35114.exe (PID: 11476)
      • Unicorn-12733.exe (PID: 11496)
      • Unicorn-62660.exe (PID: 11292)
      • Unicorn-38535.exe (PID: 11384)
      • Unicorn-10112.exe (PID: 11348)
      • Unicorn-18669.exe (PID: 11364)
      • Unicorn-56744.exe (PID: 11432)
      • Unicorn-41607.exe (PID: 11412)
      • Unicorn-1124.exe (PID: 11440)
      • Unicorn-14859.exe (PID: 11448)
      • Unicorn-36117.exe (PID: 10652)
      • Unicorn-41982.exe (PID: 10628)
      • Unicorn-55495.exe (PID: 10996)
      • Unicorn-37886.exe (PID: 11240)
      • Unicorn-44228.exe (PID: 11512)
      • Unicorn-3843.exe (PID: 11168)
      • Unicorn-47751.exe (PID: 11300)
      • Unicorn-30855.exe (PID: 11688)
      • Unicorn-24724.exe (PID: 11524)
      • Unicorn-32429.exe (PID: 11752)
      • Unicorn-63028.exe (PID: 11700)
      • Unicorn-46165.exe (PID: 11760)
      • Unicorn-7591.exe (PID: 10340)
      • Unicorn-40958.exe (PID: 1852)
      • Unicorn-12997.exe (PID: 11852)
      • Unicorn-15110.exe (PID: 10832)
      • Unicorn-30155.exe (PID: 11976)
      • Unicorn-55431.exe (PID: 11248)
      • Unicorn-16420.exe (PID: 11968)
      • Unicorn-44191.exe (PID: 7144)
      • Unicorn-26861.exe (PID: 11900)
      • Unicorn-48388.exe (PID: 11356)
      • Unicorn-35626.exe (PID: 12228)
      • Unicorn-63297.exe (PID: 11372)
      • Unicorn-35626.exe (PID: 12252)
      • Unicorn-52648.exe (PID: 12236)
      • Unicorn-46562.exe (PID: 12216)
      • Unicorn-813.exe (PID: 11708)
      • Unicorn-54885.exe (PID: 11424)
      • Unicorn-15533.exe (PID: 12112)
      • Unicorn-50898.exe (PID: 12192)
      • Unicorn-9933.exe (PID: 12168)
      • Unicorn-31594.exe (PID: 12160)
      • Unicorn-28490.exe (PID: 12152)
      • Unicorn-15533.exe (PID: 12688)
      • Unicorn-29268.exe (PID: 12144)
      • Unicorn-34090.exe (PID: 12136)
      • Unicorn-35134.exe (PID: 12120)
      • Unicorn-42346.exe (PID: 12104)
      • Unicorn-47717.exe (PID: 12696)
      • Unicorn-35626.exe (PID: 12244)
      • Unicorn-49362.exe (PID: 12208)
      • Unicorn-4132.exe (PID: 12200)
      • Unicorn-6030.exe (PID: 12032)
      • Unicorn-16996.exe (PID: 12004)
      • Unicorn-29357.exe (PID: 11996)
      • Unicorn-29357.exe (PID: 11988)
      • Unicorn-42346.exe (PID: 12096)
      • Unicorn-57832.exe (PID: 12048)
      • Unicorn-65355.exe (PID: 12736)
      • Unicorn-23168.exe (PID: 11464)
      • Unicorn-2201.exe (PID: 12332)
      • Unicorn-50277.exe (PID: 12360)
      • Unicorn-63525.exe (PID: 12348)
      • Unicorn-7978.exe (PID: 12440)
      • Unicorn-10560.exe (PID: 12496)
      • Unicorn-12811.exe (PID: 12480)
      • Unicorn-60737.exe (PID: 12524)
      • Unicorn-22314.exe (PID: 12516)
      • Unicorn-51320.exe (PID: 12368)
      • Unicorn-54003.exe (PID: 12376)
      • Unicorn-54003.exe (PID: 12384)
      • Unicorn-42131.exe (PID: 12400)
      • Unicorn-26468.exe (PID: 12680)
      • Unicorn-27931.exe (PID: 12292)
      • Unicorn-51474.exe (PID: 12308)
      • Unicorn-25019.exe (PID: 12752)
      • Unicorn-60005.exe (PID: 12572)
      • Unicorn-54405.exe (PID: 12564)
      • Unicorn-14068.exe (PID: 12588)
      • Unicorn-60005.exe (PID: 12556)
      • Unicorn-60005.exe (PID: 12580)
      • Unicorn-16718.exe (PID: 13560)
      • Unicorn-64938.exe (PID: 13576)
      • Unicorn-61102.exe (PID: 13588)
      • Unicorn-14448.exe (PID: 13516)
      • Unicorn-30483.exe (PID: 13284)
      • Unicorn-206.exe (PID: 7220)
      • Unicorn-19153.exe (PID: 12744)
      • Unicorn-40156.exe (PID: 12044)
      • Unicorn-51249.exe (PID: 13308)
      • Unicorn-14658.exe (PID: 6132)
      • Unicorn-2983.exe (PID: 13500)
      • Unicorn-58744.exe (PID: 7296)
      • Unicorn-5019.exe (PID: 11960)
      • Unicorn-2983.exe (PID: 13480)
      • Unicorn-2983.exe (PID: 13492)
      • Unicorn-23166.exe (PID: 2780)
      • Unicorn-20554.exe (PID: 14712)
      • Unicorn-46068.exe (PID: 7340)
      • Unicorn-1092.exe (PID: 7000)
      • Unicorn-27525.exe (PID: 6960)
      • Unicorn-8190.exe (PID: 7792)
      • Unicorn-46520.exe (PID: 6980)
      • Unicorn-43053.exe (PID: 4016)
      • Unicorn-33866.exe (PID: 14328)
      • Unicorn-59218.exe (PID: 14280)
      • Unicorn-17733.exe (PID: 12540)
      • Unicorn-1252.exe (PID: 14312)
      • Unicorn-33748.exe (PID: 14304)
      • Unicorn-22812.exe (PID: 14296)
      • Unicorn-42005.exe (PID: 14272)
      • Unicorn-54003.exe (PID: 3016)
      • Unicorn-35006.exe (PID: 14288)
      • Unicorn-27525.exe (PID: 2104)
      • Unicorn-24949.exe (PID: 14320)
      • Unicorn-20554.exe (PID: 14704)
      • Unicorn-20554.exe (PID: 14720)
      • Unicorn-57966.exe (PID: 14668)
      • Unicorn-25479.exe (PID: 14696)
      • Unicorn-4811.exe (PID: 14680)
      • Unicorn-57672.exe (PID: 1672)
      • Unicorn-60860.exe (PID: 5548)
      • Unicorn-25479.exe (PID: 14688)
      • Unicorn-50680.exe (PID: 14652)
      • Unicorn-31908.exe (PID: 15208)
      • Unicorn-13699.exe (PID: 15188)
      • Unicorn-51509.exe (PID: 15216)
      • Unicorn-48199.exe (PID: 13408)
      • Unicorn-28333.exe (PID: 13416)
      • Unicorn-57701.exe (PID: 4884)
      • Unicorn-64135.exe (PID: 7432)
      • Unicorn-29220.exe (PID: 12128)
    • The sample compiled with chinese language support

      • 1 (522).exe (PID: 7328)
    • Create files in a temporary directory

      • Unicorn-45941.exe (PID: 7416)
      • 1 (522).exe (PID: 7328)
      • Unicorn-42764.exe (PID: 7756)
      • Unicorn-18648.exe (PID: 7772)
      • Unicorn-40443.exe (PID: 1276)
      • Unicorn-36830.exe (PID: 7228)
      • Unicorn-29810.exe (PID: 7252)
      • Unicorn-54774.exe (PID: 4920)
      • Unicorn-14385.exe (PID: 5408)
      • Unicorn-11327.exe (PID: 4164)
      • Unicorn-23679.exe (PID: 7236)
      • Unicorn-51365.exe (PID: 896)
      • Unicorn-31163.exe (PID: 5324)
      • Unicorn-24571.exe (PID: 7180)
      • Unicorn-24178.exe (PID: 7324)
      • Unicorn-60569.exe (PID: 1020)
      • Unicorn-5681.exe (PID: 1184)
      • Unicorn-36216.exe (PID: 1052)
      • Unicorn-17558.exe (PID: 536)
      • Unicorn-40602.exe (PID: 6516)
      • Unicorn-26709.exe (PID: 5392)
      • Unicorn-34104.exe (PID: 516)
      • Unicorn-14238.exe (PID: 6388)
      • Unicorn-46325.exe (PID: 5640)
      • Unicorn-39064.exe (PID: 5528)
      • Unicorn-21114.exe (PID: 3240)
      • Unicorn-55872.exe (PID: 6476)
      • Unicorn-45001.exe (PID: 5756)
      • Unicorn-13308.exe (PID: 7456)
      • Unicorn-11873.exe (PID: 6712)
      • Unicorn-12952.exe (PID: 1040)
      • Unicorn-18101.exe (PID: 3008)
      • Unicorn-42136.exe (PID: 6184)
      • Unicorn-32818.exe (PID: 1012)
      • Unicorn-55238.exe (PID: 7984)
      • Unicorn-61055.exe (PID: 7812)
      • Unicorn-8798.exe (PID: 7460)
      • Unicorn-48098.exe (PID: 7860)
      • Unicorn-30177.exe (PID: 8116)
      • Unicorn-40873.exe (PID: 8156)
      • Unicorn-8820.exe (PID: 644)
      • Unicorn-55675.exe (PID: 8112)
      • Unicorn-26904.exe (PID: 8036)
      • Unicorn-12602.exe (PID: 7592)
      • Unicorn-1073.exe (PID: 5064)
      • Unicorn-41714.exe (PID: 7412)
      • Unicorn-29931.exe (PID: 7808)
      • Unicorn-35028.exe (PID: 4620)
      • Unicorn-49173.exe (PID: 8152)
      • Unicorn-12991.exe (PID: 7444)
      • Unicorn-10106.exe (PID: 1240)
      • Unicorn-28641.exe (PID: 5304)
      • Unicorn-21408.exe (PID: 7680)
      • Unicorn-48735.exe (PID: 7368)
      • Unicorn-27381.exe (PID: 1512)
      • Unicorn-53565.exe (PID: 7956)
      • Unicorn-21272.exe (PID: 7640)
      • Unicorn-56760.exe (PID: 1188)
      • Unicorn-28254.exe (PID: 1096)
      • Unicorn-8244.exe (PID: 904)
      • Unicorn-1139.exe (PID: 8340)
      • Unicorn-13316.exe (PID: 8032)
      • Unicorn-24968.exe (PID: 2772)
      • Unicorn-62882.exe (PID: 7716)
      • Unicorn-61755.exe (PID: 6640)
      • Unicorn-43913.exe (PID: 8172)
      • Unicorn-56885.exe (PID: 8296)
      • Unicorn-42875.exe (PID: 6048)
      • Unicorn-12440.exe (PID: 7404)
      • Unicorn-54617.exe (PID: 8288)
      • Unicorn-9542.exe (PID: 8324)
      • Unicorn-13704.exe (PID: 6872)
      • Unicorn-38168.exe (PID: 7348)
      • Unicorn-42405.exe (PID: 4428)
      • Unicorn-51904.exe (PID: 7616)
      • Unicorn-628.exe (PID: 4180)
      • Unicorn-13611.exe (PID: 6080)
      • Unicorn-43000.exe (PID: 4068)
      • Unicorn-40704.exe (PID: 8464)
      • Unicorn-23557.exe (PID: 8356)
      • Unicorn-49283.exe (PID: 7440)
      • Unicorn-50805.exe (PID: 2192)
      • Unicorn-25461.exe (PID: 7660)
      • Unicorn-29036.exe (PID: 6668)
      • Unicorn-40565.exe (PID: 8400)
      • Unicorn-6174.exe (PID: 8420)
      • Unicorn-31838.exe (PID: 5048)
      • Unicorn-26214.exe (PID: 8932)
      • Unicorn-62779.exe (PID: 8872)
      • Unicorn-62642.exe (PID: 8148)
      • Unicorn-5623.exe (PID: 4424)
      • Unicorn-1527.exe (PID: 7900)
      • Unicorn-62642.exe (PID: 6392)
      • Unicorn-56192.exe (PID: 8644)
      • Unicorn-52941.exe (PID: 8568)
      • Unicorn-63071.exe (PID: 8432)
      • Unicorn-15864.exe (PID: 8500)
      • Unicorn-2663.exe (PID: 9204)
      • Unicorn-5339.exe (PID: 8560)
      • Unicorn-39416.exe (PID: 2340)
      • Unicorn-18235.exe (PID: 8348)
      • Unicorn-11394.exe (PID: 9068)
      • Unicorn-51816.exe (PID: 9672)
      • Unicorn-23576.exe (PID: 9756)
      • Unicorn-7235.exe (PID: 1912)
      • Unicorn-11214.exe (PID: 2332)
      • Unicorn-64513.exe (PID: 9156)
      • Unicorn-58962.exe (PID: 8576)
      • Unicorn-29668.exe (PID: 9632)
      • Unicorn-16006.exe (PID: 8884)
      • Unicorn-55098.exe (PID: 9612)
      • Unicorn-9795.exe (PID: 8744)
      • Unicorn-64504.exe (PID: 8600)
      • Unicorn-28784.exe (PID: 8976)
      • Unicorn-4516.exe (PID: 9336)
      • Unicorn-42878.exe (PID: 8828)
      • Unicorn-3203.exe (PID: 7904)
      • Unicorn-22660.exe (PID: 8628)
      • Unicorn-48641.exe (PID: 10032)
      • Unicorn-31629.exe (PID: 3300)
      • Unicorn-62846.exe (PID: 9532)
      • Unicorn-49058.exe (PID: 9244)
      • Unicorn-48165.exe (PID: 3268)
      • Unicorn-26625.exe (PID: 8756)
      • Unicorn-11007.exe (PID: 6576)
      • Unicorn-63016.exe (PID: 872)
      • Unicorn-37886.exe (PID: 8992)
      • Unicorn-24847.exe (PID: 9644)
      • Unicorn-43373.exe (PID: 780)
      • Unicorn-40896.exe (PID: 8900)
      • Unicorn-43178.exe (PID: 8892)
      • Unicorn-51743.exe (PID: 8528)
      • Unicorn-31875.exe (PID: 9196)
      • Unicorn-6420.exe (PID: 9600)
      • Unicorn-759.exe (PID: 9360)
      • Unicorn-14403.exe (PID: 8704)
      • Unicorn-35506.exe (PID: 8584)
      • Unicorn-12733.exe (PID: 11496)
      • Unicorn-8192.exe (PID: 9012)
      • Unicorn-52665.exe (PID: 7212)
      • Unicorn-47717.exe (PID: 12696)
      • Unicorn-35114.exe (PID: 11476)
      • Unicorn-44228.exe (PID: 11512)
      • Unicorn-54651.exe (PID: 9328)
      • Unicorn-15533.exe (PID: 12688)
      • Unicorn-65355.exe (PID: 12736)
      • Unicorn-35134.exe (PID: 12120)
      • Unicorn-19012.exe (PID: 8724)
      • Unicorn-62974.exe (PID: 6228)
      • Unicorn-50965.exe (PID: 2384)
      • Unicorn-21556.exe (PID: 9788)
      • Unicorn-15347.exe (PID: 9556)
      • Unicorn-7591.exe (PID: 10340)
      • Unicorn-51858.exe (PID: 9268)
      • Unicorn-42346.exe (PID: 12104)
      • Unicorn-60734.exe (PID: 8668)
      • Unicorn-60737.exe (PID: 12524)
      • Unicorn-35133.exe (PID: 9988)
      • Unicorn-51858.exe (PID: 9252)
      • Unicorn-47751.exe (PID: 11300)
      • Unicorn-52377.exe (PID: 8472)
      • Unicorn-32871.exe (PID: 9420)
      • Unicorn-37179.exe (PID: 9440)
      • Unicorn-206.exe (PID: 7220)
      • Unicorn-55431.exe (PID: 11248)
      • Unicorn-60651.exe (PID: 8696)
      • Unicorn-16420.exe (PID: 11968)
      • Unicorn-32429.exe (PID: 11752)
      • Unicorn-14658.exe (PID: 6132)
      • Unicorn-34126.exe (PID: 10740)
      • Unicorn-52648.exe (PID: 12236)
      • Unicorn-56914.exe (PID: 8864)
      • Unicorn-54885.exe (PID: 11424)
    • Reads security settings of Internet Explorer

      • BackgroundTransferHost.exe (PID: 1512)
      • BackgroundTransferHost.exe (PID: 6268)
      • BackgroundTransferHost.exe (PID: 7724)
      • BackgroundTransferHost.exe (PID: 7468)
      • BackgroundTransferHost.exe (PID: 6564)
    • Checks proxy server information

      • BackgroundTransferHost.exe (PID: 7724)
    • Reads the software policy settings

      • BackgroundTransferHost.exe (PID: 7724)
      • slui.exe (PID: 7516)
    • Creates files or folders in the user directory

      • BackgroundTransferHost.exe (PID: 7724)
      • WerFault.exe (PID: 11400)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | Win32 Executable Microsoft Visual Basic 6 (90.6)
.exe | Win32 Executable (generic) (4.9)
.exe | Generic Win/DOS Executable (2.2)
.exe | DOS Executable Generic (2.2)

EXIF

EXE

MachineType: Intel 386 or later, and compatibles
TimeStamp: 2019:01:19 13:34:56+00:00
ImageFileCharacteristics: No relocs, Executable, No line numbers, No symbols, 32-bit, No debug, Removable run from swap, Net run from swap, Uniprocessor only, Bytes reversed hi
PEType: PE32
LinkerVersion: 6
CodeSize: 176128
InitializedDataSize: 299008
UninitializedDataSize: -
EntryPoint: 0x13d4
OSVersion: 4
ImageVersion: 1
SubsystemVersion: 4
Subsystem: Windows GUI
FileVersionNumber: 1.0.0.0
ProductVersionNumber: 1.0.0.0
FileFlagsMask: 0x003f
FileFlags: (none)
FileOS: Win32
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: Chinese (Simplified)
CharacterSet: Unicode
CompanyName: UEFI
ProductName: Kawaii-Unicorn
FileVersion: 1
ProductVersion: 1
InternalName: Kawaii-Unicorn
OriginalFileName: Kawaii-Unicorn.exe
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
609
Monitored processes
472
Malicious processes
68
Suspicious processes
65

Behavior graph

Click at the process to see the details
start 1 (522).exe unicorn-45941.exe sppextcomobj.exe no specs slui.exe unicorn-42764.exe unicorn-18648.exe unicorn-40443.exe unicorn-36830.exe unicorn-23679.exe unicorn-29810.exe unicorn-24178.exe unicorn-54774.exe unicorn-14385.exe unicorn-40602.exe unicorn-51365.exe unicorn-31163.exe unicorn-11327.exe unicorn-11873.exe unicorn-24571.exe unicorn-60569.exe unicorn-5681.exe unicorn-17558.exe unicorn-36216.exe unicorn-26709.exe unicorn-46325.exe unicorn-34104.exe unicorn-14238.exe unicorn-1073.exe unicorn-39064.exe unicorn-21114.exe unicorn-35028.exe unicorn-42136.exe unicorn-55872.exe backgroundtransferhost.exe no specs unicorn-18101.exe unicorn-32818.exe unicorn-12952.exe unicorn-45001.exe unicorn-10106.exe unicorn-29624.exe no specs unicorn-12602.exe unicorn-8798.exe unicorn-13308.exe unicorn-61055.exe unicorn-48098.exe unicorn-25461.exe unicorn-50755.exe no specs backgroundtransferhost.exe unicorn-55675.exe unicorn-26904.exe backgroundtransferhost.exe no specs unicorn-5623.exe unicorn-55238.exe unicorn-49173.exe unicorn-29931.exe unicorn-8820.exe unicorn-56760.exe unicorn-8244.exe unicorn-12991.exe unicorn-24968.exe unicorn-28254.exe unicorn-21408.exe unicorn-61755.exe unicorn-29036.exe unicorn-27381.exe unicorn-48735.exe unicorn-41714.exe unicorn-53565.exe unicorn-21272.exe backgroundtransferhost.exe no specs unicorn-40873.exe unicorn-30177.exe unicorn-1527.exe unicorn-43913.exe unicorn-28641.exe unicorn-31838.exe unicorn-11007.exe unicorn-39416.exe unicorn-62882.exe unicorn-42875.exe unicorn-13611.exe backgroundtransferhost.exe no specs unicorn-628.exe unicorn-13316.exe unicorn-43000.exe unicorn-42405.exe unicorn-50805.exe unicorn-49283.exe unicorn-12440.exe unicorn-13704.exe unicorn-62642.exe unicorn-62642.exe unicorn-38168.exe unicorn-51904.exe unicorn-29563.exe no specs unicorn-52277.exe no specs unicorn-54617.exe unicorn-56885.exe unicorn-9542.exe unicorn-1139.exe unicorn-18235.exe unicorn-23557.exe unicorn-40565.exe unicorn-6174.exe unicorn-63071.exe unicorn-5868.exe unicorn-40704.exe unicorn-52377.exe unicorn-47794.exe no specs unicorn-15864.exe unicorn-51743.exe unicorn-5339.exe unicorn-52941.exe unicorn-35506.exe unicorn-4229.exe unicorn-64504.exe unicorn-22660.exe unicorn-62057.exe unicorn-56192.exe unicorn-60734.exe unicorn-60651.exe unicorn-14403.exe unicorn-19588.exe no specs unicorn-19012.exe unicorn-18052.exe no specs unicorn-9795.exe unicorn-26625.exe unicorn-31233.exe no specs unicorn-51399.exe no specs unicorn-6723.exe unicorn-42878.exe unicorn-21476.exe unicorn-56914.exe unicorn-62779.exe unicorn-16006.exe unicorn-43178.exe unicorn-40896.exe unicorn-26214.exe unicorn-28784.exe unicorn-37886.exe unicorn-25982.exe no specs unicorn-8192.exe unicorn-26724.exe no specs unicorn-11394.exe unicorn-45188.exe unicorn-44612.exe no specs unicorn-18302.exe no specs unicorn-64513.exe unicorn-54983.exe no specs unicorn-24065.exe unicorn-31875.exe unicorn-2663.exe unicorn-50965.exe unicorn-31629.exe unicorn-65378.exe unicorn-48165.exe unicorn-50965.exe unicorn-56830.exe unicorn-37229.exe unicorn-7235.exe unicorn-37229.exe no specs unicorn-56254.exe unicorn-131.exe unicorn-63016.exe unicorn-11214.exe unicorn-58962.exe unicorn-47303.exe unicorn-3203.exe unicorn-21123.exe no specs unicorn-49058.exe unicorn-51858.exe unicorn-51858.exe unicorn-51858.exe unicorn-51844.exe no specs unicorn-54651.exe unicorn-4516.exe unicorn-47236.exe no specs unicorn-21362.exe no specs unicorn-759.exe unicorn-39015.exe no specs unicorn-45203.exe unicorn-32871.exe unicorn-37179.exe unicorn-29005.exe unicorn-31331.exe unicorn-31331.exe unicorn-31331.exe unicorn-8938.exe no specs unicorn-1485.exe unicorn-62846.exe unicorn-56830.exe no specs unicorn-15347.exe unicorn-29053.exe unicorn-6420.exe unicorn-55098.exe unicorn-29668.exe unicorn-24847.exe unicorn-55385.exe no specs unicorn-55848.exe no specs unicorn-51816.exe unicorn-23576.exe unicorn-21556.exe unicorn-59103.exe unicorn-24775.exe no specs unicorn-14717.exe no specs unicorn-57281.exe unicorn-35133.exe unicorn-48641.exe unicorn-59523.exe unicorn-36367.exe unicorn-21649.exe unicorn-18564.exe unicorn-61141.exe unicorn-64775.exe unicorn-62974.exe unicorn-43373.exe unicorn-36967.exe unicorn-52665.exe unicorn-16647.exe unicorn-6013.exe no specs unicorn-8390.exe unicorn-8390.exe unicorn-64830.exe unicorn-7591.exe unicorn-31992.exe unicorn-32257.exe unicorn-15427.exe unicorn-51006.exe no specs unicorn-19982.exe unicorn-59474.exe unicorn-5251.exe no specs unicorn-51463.exe no specs unicorn-6148.exe no specs unicorn-41982.exe no specs unicorn-41982.exe unicorn-22381.exe unicorn-36117.exe no specs unicorn-34807.exe unicorn-34126.exe unicorn-24772.exe unicorn-47854.exe no specs unicorn-54206.exe unicorn-45742.exe unicorn-18628.exe unicorn-15110.exe unicorn-1057.exe unicorn-55659.exe unicorn-3857.exe no specs unicorn-45566.exe unicorn-55495.exe unicorn-3843.exe no specs unicorn-37886.exe no specs unicorn-55431.exe unicorn-40958.exe no specs unicorn-62660.exe unicorn-47751.exe unicorn-10112.exe unicorn-18669.exe no specs unicorn-38535.exe no specs werfault.exe no specs unicorn-41607.exe unicorn-56744.exe no specs unicorn-1124.exe unicorn-14859.exe no specs unicorn-35114.exe unicorn-12733.exe unicorn-44228.exe unicorn-24724.exe no specs unicorn-30855.exe unicorn-63028.exe no specs unicorn-32429.exe unicorn-46165.exe no specs unicorn-12997.exe no specs unicorn-26861.exe no specs unicorn-5019.exe no specs unicorn-16420.exe unicorn-30155.exe no specs unicorn-29357.exe no specs unicorn-29357.exe no specs unicorn-16996.exe no specs unicorn-6030.exe no specs unicorn-57832.exe no specs unicorn-42346.exe no specs unicorn-42346.exe unicorn-15533.exe unicorn-35134.exe unicorn-34090.exe no specs unicorn-29268.exe no specs unicorn-28490.exe no specs unicorn-31594.exe unicorn-9933.exe no specs unicorn-50898.exe unicorn-4132.exe unicorn-49362.exe unicorn-46562.exe no specs unicorn-35626.exe no specs unicorn-52648.exe unicorn-35626.exe no specs unicorn-35626.exe unicorn-63297.exe no specs unicorn-48388.exe no specs unicorn-64615.exe no specs unicorn-54885.exe unicorn-23168.exe unicorn-813.exe unicorn-46068.exe no specs unicorn-44191.exe unicorn-27931.exe no specs unicorn-51474.exe unicorn-2201.exe no specs unicorn-63525.exe unicorn-50277.exe no specs unicorn-51320.exe no specs unicorn-54003.exe no specs unicorn-54003.exe no specs unicorn-42131.exe no specs unicorn-40271.exe no specs unicorn-7978.exe no specs unicorn-12811.exe no specs unicorn-10560.exe no specs unicorn-22314.exe no specs unicorn-60737.exe unicorn-60005.exe no specs unicorn-54405.exe no specs unicorn-60005.exe no specs unicorn-60005.exe no specs unicorn-14068.exe no specs unicorn-26468.exe no specs unicorn-15533.exe unicorn-47717.exe unicorn-65355.exe unicorn-19153.exe unicorn-25019.exe no specs unicorn-16353.exe no specs unicorn-5418.exe unicorn-5418.exe no specs unicorn-61102.exe no specs unicorn-54003.exe no specs unicorn-7530.exe no specs unicorn-7530.exe no specs unicorn-54003.exe no specs unicorn-64938.exe no specs unicorn-47671.exe no specs unicorn-9879.exe no specs unicorn-30483.exe unicorn-49150.exe no specs unicorn-51249.exe no specs unicorn-60501.exe no specs unicorn-57701.exe no specs unicorn-49086.exe no specs unicorn-42956.exe no specs unicorn-40156.exe no specs unicorn-29220.exe unicorn-29220.exe no specs unicorn-64135.exe no specs unicorn-35713.exe no specs unicorn-6564.exe no specs unicorn-48199.exe unicorn-28333.exe no specs unicorn-28333.exe no specs unicorn-2983.exe no specs unicorn-2983.exe no specs unicorn-2983.exe no specs unicorn-2983.exe no specs unicorn-2983.exe no specs unicorn-2983.exe no specs unicorn-2983.exe unicorn-2983.exe no specs unicorn-14448.exe no specs slui.exe no specs unicorn-22584.exe no specs unicorn-13918.exe no specs unicorn-16718.exe no specs unicorn-64938.exe no specs unicorn-61102.exe no specs unicorn-42005.exe no specs unicorn-59218.exe no specs unicorn-35006.exe unicorn-22812.exe no specs unicorn-33748.exe no specs unicorn-1252.exe no specs unicorn-24949.exe unicorn-17733.exe no specs unicorn-33866.exe no specs unicorn-1092.exe no specs unicorn-34497.exe no specs unicorn-43053.exe unicorn-46520.exe unicorn-27525.exe unicorn-8190.exe unicorn-27525.exe unicorn-54003.exe no specs unicorn-23166.exe no specs unicorn-206.exe unicorn-58744.exe unicorn-14658.exe unicorn-60860.exe no specs unicorn-57672.exe no specs unicorn-35349.exe no specs unicorn-35349.exe no specs unicorn-32548.exe no specs unicorn-57672.exe no specs unicorn-39205.exe no specs unicorn-56844.exe no specs unicorn-40996.exe no specs unicorn-32263.exe no specs unicorn-9300.exe no specs unicorn-6634.exe no specs unicorn-57089.exe no specs unicorn-21511.exe no specs unicorn-26174.exe no specs unicorn-33866.exe no specs unicorn-42015.exe no specs unicorn-44815.exe no specs unicorn-50680.exe no specs unicorn-50680.exe no specs unicorn-17754.exe no specs unicorn-57966.exe no specs unicorn-4811.exe no specs unicorn-25479.exe no specs unicorn-25479.exe no specs unicorn-20554.exe unicorn-20554.exe no specs unicorn-20554.exe no specs unicorn-36580.exe no specs unicorn-23940.exe unicorn-33255.exe unicorn-20604.exe unicorn-25725.exe no specs unicorn-46940.exe no specs unicorn-36004.exe unicorn-36004.exe unicorn-57701.exe unicorn-23530.exe no specs unicorn-39533.exe no specs unicorn-28324.exe unicorn-60014.exe no specs unicorn-28487.exe unicorn-47823.exe no specs unicorn-34087.exe no specs unicorn-53688.exe no specs unicorn-53688.exe no specs unicorn-12294.exe no specs unicorn-21511.exe no specs unicorn-60990.exe no specs unicorn-62837.exe no specs unicorn-62837.exe no specs unicorn-62837.exe no specs unicorn-8066.exe unicorn-54126.exe no specs unicorn-62398.exe no specs unicorn-19975.exe no specs unicorn-36097.exe no specs unicorn-11548.exe no specs unicorn-62983.exe no specs unicorn-60871.exe no specs unicorn-47166.exe no specs unicorn-13699.exe no specs unicorn-31908.exe no specs unicorn-51509.exe unicorn-518.exe no specs unicorn-30478.exe no specs unicorn-16772.exe no specs unicorn-20195.exe no specs unicorn-42558.exe no specs unicorn-41598.exe no specs unicorn-23809.exe no specs unicorn-6979.exe no specs unicorn-6979.exe no specs unicorn-59335.exe no specs unicorn-28417.exe no specs unicorn-5326.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
208C:\Users\admin\AppData\Local\Temp\Unicorn-47303.exeC:\Users\admin\AppData\Local\Temp\Unicorn-47303.exe
Unicorn-43000.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-47303.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
516C:\Users\admin\AppData\Local\Temp\Unicorn-34104.exeC:\Users\admin\AppData\Local\Temp\Unicorn-34104.exe
Unicorn-11327.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-34104.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
536C:\Users\admin\AppData\Local\Temp\Unicorn-17558.exeC:\Users\admin\AppData\Local\Temp\Unicorn-17558.exe
Unicorn-42764.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-17558.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
644C:\Users\admin\AppData\Local\Temp\Unicorn-8820.exeC:\Users\admin\AppData\Local\Temp\Unicorn-8820.exe
Unicorn-39064.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-8820.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
780C:\Users\admin\AppData\Local\Temp\Unicorn-43373.exeC:\Users\admin\AppData\Local\Temp\Unicorn-43373.exe
Unicorn-1139.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-43373.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
864C:\Users\admin\AppData\Local\Temp\Unicorn-35349.exeC:\Users\admin\AppData\Local\Temp\Unicorn-35349.exeUnicorn-21556.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-35349.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
872C:\Users\admin\AppData\Local\Temp\Unicorn-63016.exeC:\Users\admin\AppData\Local\Temp\Unicorn-63016.exe
Unicorn-12602.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-63016.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
896C:\Users\admin\AppData\Local\Temp\Unicorn-51365.exeC:\Users\admin\AppData\Local\Temp\Unicorn-51365.exe
Unicorn-36830.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-51365.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
904C:\Users\admin\AppData\Local\Temp\Unicorn-8244.exeC:\Users\admin\AppData\Local\Temp\Unicorn-8244.exe
Unicorn-55872.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-8244.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1012C:\Users\admin\AppData\Local\Temp\Unicorn-32818.exeC:\Users\admin\AppData\Local\Temp\Unicorn-32818.exe
Unicorn-60569.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-32818.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
Total events
12 036
Read events
12 021
Write events
15
Delete events
0

Modification events

(PID) Process:(1512) BackgroundTransferHost.exeKey:HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.windows.contentdeliverymanager_cw5n1h2txyewy\Internet Settings\Cache\Content
Operation:writeName:CachePrefix
Value:
(PID) Process:(1512) BackgroundTransferHost.exeKey:HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.windows.contentdeliverymanager_cw5n1h2txyewy\Internet Settings\Cache\Cookies
Operation:writeName:CachePrefix
Value:
Cookie:
(PID) Process:(1512) BackgroundTransferHost.exeKey:HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.windows.contentdeliverymanager_cw5n1h2txyewy\Internet Settings\Cache\History
Operation:writeName:CachePrefix
Value:
Visited:
(PID) Process:(7724) BackgroundTransferHost.exeKey:HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.windows.contentdeliverymanager_cw5n1h2txyewy\Internet Settings\Cache\Content
Operation:writeName:CachePrefix
Value:
(PID) Process:(7724) BackgroundTransferHost.exeKey:HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.windows.contentdeliverymanager_cw5n1h2txyewy\Internet Settings\Cache\Cookies
Operation:writeName:CachePrefix
Value:
Cookie:
(PID) Process:(7724) BackgroundTransferHost.exeKey:HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.windows.contentdeliverymanager_cw5n1h2txyewy\Internet Settings\Cache\History
Operation:writeName:CachePrefix
Value:
Visited:
(PID) Process:(6268) BackgroundTransferHost.exeKey:HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.windows.contentdeliverymanager_cw5n1h2txyewy\Internet Settings\Cache\Content
Operation:writeName:CachePrefix
Value:
(PID) Process:(6268) BackgroundTransferHost.exeKey:HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.windows.contentdeliverymanager_cw5n1h2txyewy\Internet Settings\Cache\Cookies
Operation:writeName:CachePrefix
Value:
Cookie:
(PID) Process:(6268) BackgroundTransferHost.exeKey:HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.windows.contentdeliverymanager_cw5n1h2txyewy\Internet Settings\Cache\History
Operation:writeName:CachePrefix
Value:
Visited:
(PID) Process:(7468) BackgroundTransferHost.exeKey:HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.windows.contentdeliverymanager_cw5n1h2txyewy\Internet Settings\Cache\Content
Operation:writeName:CachePrefix
Value:
Executable files
633
Suspicious files
8
Text files
1
Unknown types
0

Dropped files

PID
Process
Filename
Type
73281 (522).exeC:\Users\admin\AppData\Local\Temp\Unicorn-45941.exeexecutable
MD5:BD2375378456E0D4470128C6EBD0AFE9
SHA256:29EA9AF38609E4DDF50618054564E699480FBBF5C90E741637F02DFA4E833F85
7416Unicorn-45941.exeC:\Users\admin\AppData\Local\Temp\Unicorn-36830.exeexecutable
MD5:39C5D0383037D9DE952B310A6551FA73
SHA256:6381E5A48C9EB9750A465781356C6C54C9914A5A36F7A3A0EA10CEA1F9406199
73281 (522).exeC:\Users\admin\AppData\Local\Temp\Unicorn-18648.exeexecutable
MD5:D44428813F5DEC14BA1B6A0FBE886B66
SHA256:DC18709597D77E16BB70363E78F2C85CC24C17D0DDB30218DCC77D2E0A6087F5
7228Unicorn-36830.exeC:\Users\admin\AppData\Local\Temp\Unicorn-51365.exeexecutable
MD5:DB299E904AA486319F312FFC91EC4074
SHA256:F0F243D83F82766326012E94474E85C34C63B0C1DA0506FB814FA920693CEE32
73281 (522).exeC:\Users\admin\AppData\Local\Temp\Unicorn-23679.exeexecutable
MD5:D6CD874296AB25E77289EBF72C206A9A
SHA256:DFCA627AFA5A019DD5E8600A23486620F9DC9A910996578F149DD08748108A85
7772Unicorn-18648.exeC:\Users\admin\AppData\Local\Temp\Unicorn-29810.exeexecutable
MD5:04DE9646031338CED49C001B96EBCD6F
SHA256:32B5D8BFBC74BFC617466C034403F851BAFA4CB3385D0EAFD04318A57C8428DA
7756Unicorn-42764.exeC:\Users\admin\AppData\Local\Temp\Unicorn-54774.exeexecutable
MD5:2680601BEE94974B6F73F888AAC06D9A
SHA256:49BAB64A74850603508053AD6C38EFC3C4E68079681E06187C6F87D761A201E5
1276Unicorn-40443.exeC:\Users\admin\AppData\Local\Temp\Unicorn-24178.exeexecutable
MD5:9109A09B13428F319EF2F7499DFA0DBC
SHA256:2E80ED49B11C5EC4D58E188AEB34CDBF02721115CCB2810F0AE273F0DC36E344
73281 (522).exeC:\Users\admin\AppData\Local\Temp\Unicorn-40602.exeexecutable
MD5:4030F58B55B49D3DD9E92AC2E4523CA9
SHA256:9AC25043F093CEC1FB7F1CD21CDA0FDC82B57B3451083B478443BD4358BE9B41
7324Unicorn-24178.exeC:\Users\admin\AppData\Local\Temp\Unicorn-24571.exeexecutable
MD5:D7AC3F545DE4933785C0D6788E05F43E
SHA256:1026D09806238DED3B42FA6B234272CCC47A6C023CA00ECE66D73528C9E25985
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
6
TCP/UDP connections
24
DNS requests
15
Threats
0

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
5496
MoUsoCoreWorker.exe
GET
200
23.48.23.156:80
http://crl.microsoft.com/pki/crl/products/MicRooCerAut2011_2011_03_22.crl
unknown
whitelisted
6544
svchost.exe
GET
200
184.30.131.245:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
7360
backgroundTaskHost.exe
GET
200
184.30.131.245:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAUZZSZEml49Gjh0j13P68w%3D
unknown
whitelisted
7724
BackgroundTransferHost.exe
GET
200
184.30.131.245:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTrjrydRyt%2BApF3GSPypfHBxR5XtQQUs9tIpPmhxdiuNkHMEWNpYim8S8YCEAI5PUjXAkJafLQcAAsO18o%3D
unknown
whitelisted
3884
SIHClient.exe
GET
200
23.35.229.160:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Product%20Root%20Certificate%20Authority%202018.crl
unknown
whitelisted
3884
SIHClient.exe
GET
200
23.35.229.160:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Update%20Secure%20Server%20CA%202.1.crl
unknown
whitelisted
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
4
System
192.168.100.255:138
whitelisted
20.73.194.208:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
5496
MoUsoCoreWorker.exe
23.48.23.156:80
crl.microsoft.com
Akamai International B.V.
DE
whitelisted
3216
svchost.exe
40.115.3.253:443
client.wns.windows.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
6544
svchost.exe
40.126.31.0:443
login.live.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
6544
svchost.exe
184.30.131.245:80
ocsp.digicert.com
AKAMAI-AS
US
whitelisted
4628
RUXIMICS.exe
20.73.194.208:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
2104
svchost.exe
20.73.194.208:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
7360
backgroundTaskHost.exe
20.223.36.55:443
arc.msn.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
7360
backgroundTaskHost.exe
184.30.131.245:80
ocsp.digicert.com
AKAMAI-AS
US
whitelisted

DNS requests

Domain
IP
Reputation
google.com
  • 142.250.181.238
whitelisted
settings-win.data.microsoft.com
  • 20.73.194.208
whitelisted
crl.microsoft.com
  • 23.48.23.156
  • 23.48.23.166
  • 23.48.23.143
whitelisted
client.wns.windows.com
  • 40.115.3.253
whitelisted
login.live.com
  • 40.126.31.0
  • 40.126.31.69
  • 20.190.159.73
  • 20.190.159.4
  • 40.126.31.73
  • 40.126.31.3
  • 20.190.159.75
  • 40.126.31.131
whitelisted
ocsp.digicert.com
  • 184.30.131.245
whitelisted
arc.msn.com
  • 20.223.36.55
whitelisted
www.bing.com
  • 92.123.104.32
  • 92.123.104.38
  • 92.123.104.34
  • 92.123.104.33
  • 92.123.104.31
whitelisted
slscr.update.microsoft.com
  • 20.109.210.53
whitelisted
www.microsoft.com
  • 23.35.229.160
whitelisted

Threats

No threats detected
No debug info