File name:

1 (1323)

Full analysis: https://app.any.run/tasks/4d40ce78-af4e-4c2d-9192-5fa104532049
Verdict: Malicious activity
Analysis date: March 24, 2025, 12:40:02
OS: Windows 10 Professional (build: 19045, 64 bit)
Indicators:
MIME: application/vnd.microsoft.portable-executable
File info: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, 3 sections
MD5:

BE142479B1B6DF39B6983135C9716F10

SHA1:

EE2C56F4AE426F22EBF776E387363800C9A6FE97

SHA256:

7D14C1BCBB39D14F4BD2527D961369315ADBF3E7053C88D8CB5A1478A409D088

SSDEEP:

6144:L7KKsPIJvDoLA5l9F4evFofk/tBQlvJGBH/WyXq2Ik/8SwjwpyAvEh/xlCN15W4a:L+BQqLA5DFzVBmhaHOyXq2jx4DxmDsR

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    No malicious indicators.
  • SUSPICIOUS

    • Starts itself from another location

      • 1 (1323).exe (PID: 2320)
      • Unicorn-24839.exe (PID: 1672)
      • Unicorn-26449.exe (PID: 1072)
      • Unicorn-36537.exe (PID: 5548)
      • Unicorn-16055.exe (PID: 6436)
      • Unicorn-16055.exe (PID: 1532)
      • Unicorn-14008.exe (PID: 6656)
      • Unicorn-7258.exe (PID: 5608)
      • Unicorn-41305.exe (PID: 5776)
      • Unicorn-38077.exe (PID: 5416)
      • Unicorn-48291.exe (PID: 5204)
      • Unicorn-60543.exe (PID: 4408)
      • Unicorn-52110.exe (PID: 1180)
      • Unicorn-26609.exe (PID: 4120)
      • Unicorn-33839.exe (PID: 5380)
      • Unicorn-39961.exe (PID: 1388)
      • Unicorn-2318.exe (PID: 1328)
      • Unicorn-57014.exe (PID: 5504)
      • Unicorn-44762.exe (PID: 6156)
      • Unicorn-32147.exe (PID: 1052)
      • Unicorn-1861.exe (PID: 5116)
      • Unicorn-27377.exe (PID: 5756)
      • Unicorn-39267.exe (PID: 2240)
      • Unicorn-16608.exe (PID: 6752)
      • Unicorn-35737.exe (PID: 5984)
      • Unicorn-14378.exe (PID: 1184)
      • Unicorn-34991.exe (PID: 5436)
      • Unicorn-15125.exe (PID: 5260)
      • Unicorn-21976.exe (PID: 2984)
      • Unicorn-7554.exe (PID: 7212)
      • Unicorn-62811.exe (PID: 2960)
      • Unicorn-13868.exe (PID: 7252)
      • Unicorn-36889.exe (PID: 7228)
      • Unicorn-16875.exe (PID: 7280)
      • Unicorn-25235.exe (PID: 7304)
      • Unicorn-25597.exe (PID: 7344)
      • Unicorn-53631.exe (PID: 7320)
      • Unicorn-61607.exe (PID: 7392)
      • Unicorn-37030.exe (PID: 7336)
      • Unicorn-42125.exe (PID: 7288)
      • Unicorn-30449.exe (PID: 7524)
      • Unicorn-7368.exe (PID: 7424)
      • Unicorn-41741.exe (PID: 7384)
      • Unicorn-58218.exe (PID: 7512)
      • Unicorn-13345.exe (PID: 7364)
      • Unicorn-62375.exe (PID: 7572)
      • Unicorn-17451.exe (PID: 7504)
      • Unicorn-48587.exe (PID: 7244)
      • Unicorn-22739.exe (PID: 6592)
      • Unicorn-1306.exe (PID: 7468)
      • Unicorn-26173.exe (PID: 7588)
      • Unicorn-58291.exe (PID: 7556)
      • Unicorn-15094.exe (PID: 7708)
      • Unicorn-62249.exe (PID: 7716)
      • Unicorn-12405.exe (PID: 7580)
      • Unicorn-35131.exe (PID: 7892)
      • Unicorn-50507.exe (PID: 7488)
      • Unicorn-34555.exe (PID: 7676)
      • Unicorn-11128.exe (PID: 7540)
      • Unicorn-17259.exe (PID: 7548)
      • Unicorn-59635.exe (PID: 7844)
      • Unicorn-8309.exe (PID: 7904)
      • Unicorn-20369.exe (PID: 7940)
      • Unicorn-47694.exe (PID: 7732)
      • Unicorn-28093.exe (PID: 7724)
      • Unicorn-33019.exe (PID: 7412)
      • Unicorn-3152.exe (PID: 7496)
      • Unicorn-53505.exe (PID: 7852)
      • Unicorn-54717.exe (PID: 7972)
      • Unicorn-19733.exe (PID: 7800)
      • Unicorn-27599.exe (PID: 8004)
      • Unicorn-25811.exe (PID: 7532)
      • Unicorn-19431.exe (PID: 8032)
      • Unicorn-24859.exe (PID: 8052)
      • Unicorn-47383.exe (PID: 7876)
      • Unicorn-53831.exe (PID: 7452)
      • Unicorn-26949.exe (PID: 8204)
      • Unicorn-1432.exe (PID: 7980)
      • Unicorn-56245.exe (PID: 7564)
      • Unicorn-31601.exe (PID: 7884)
      • Unicorn-23899.exe (PID: 7964)
      • Unicorn-58034.exe (PID: 8704)
      • Unicorn-58034.exe (PID: 8712)
      • Unicorn-37997.exe (PID: 8044)
      • Unicorn-13056.exe (PID: 8616)
      • Unicorn-15731.exe (PID: 7948)
      • Unicorn-8885.exe (PID: 8076)
      • Unicorn-58034.exe (PID: 8692)
      • Unicorn-162.exe (PID: 8104)
      • Unicorn-52679.exe (PID: 7988)
      • Unicorn-55677.exe (PID: 8060)
      • Unicorn-33581.exe (PID: 8112)
      • Unicorn-14718.exe (PID: 8420)
      • Unicorn-34917.exe (PID: 7688)
      • Unicorn-60019.exe (PID: 7792)
      • Unicorn-9269.exe (PID: 7036)
      • Unicorn-53255.exe (PID: 8176)
      • Unicorn-47754.exe (PID: 8472)
      • Unicorn-31439.exe (PID: 8608)
      • Unicorn-12725.exe (PID: 6372)
      • Unicorn-50878.exe (PID: 3332)
      • Unicorn-38407.exe (PID: 8588)
      • Unicorn-59067.exe (PID: 8228)
      • Unicorn-46623.exe (PID: 8296)
      • Unicorn-3093.exe (PID: 8120)
      • Unicorn-4194.exe (PID: 8672)
      • Unicorn-45419.exe (PID: 9052)
      • Unicorn-26779.exe (PID: 8440)
      • Unicorn-28315.exe (PID: 8828)
      • Unicorn-63785.exe (PID: 5556)
      • Unicorn-17459.exe (PID: 2908)
      • Unicorn-45833.exe (PID: 9384)
      • Unicorn-162.exe (PID: 8088)
      • Unicorn-48714.exe (PID: 8596)
      • Unicorn-2842.exe (PID: 7740)
      • Unicorn-33224.exe (PID: 8336)
      • Unicorn-61179.exe (PID: 8864)
      • Unicorn-35435.exe (PID: 9324)
      • Unicorn-56741.exe (PID: 9164)
      • Unicorn-48543.exe (PID: 8528)
      • Unicorn-27332.exe (PID: 9820)
      • Unicorn-46462.exe (PID: 9864)
      • Unicorn-34807.exe (PID: 9904)
      • Unicorn-60285.exe (PID: 8952)
      • Unicorn-5325.exe (PID: 9016)
      • Unicorn-33551.exe (PID: 8928)
      • Unicorn-61139.exe (PID: 8804)
      • Unicorn-19269.exe (PID: 8144)
      • Unicorn-1153.exe (PID: 9172)
      • Unicorn-49415.exe (PID: 9652)
      • Unicorn-5761.exe (PID: 3300)
      • Unicorn-41890.exe (PID: 8328)
      • Unicorn-22620.exe (PID: 8068)
      • Unicorn-64666.exe (PID: 8388)
      • Unicorn-46550.exe (PID: 8964)
      • Unicorn-46550.exe (PID: 8972)
      • Unicorn-33286.exe (PID: 8920)
      • Unicorn-110.exe (PID: 8664)
      • Unicorn-35051.exe (PID: 8384)
      • Unicorn-61231.exe (PID: 6228)
      • Unicorn-56135.exe (PID: 8632)
      • Unicorn-9482.exe (PID: 8364)
      • Unicorn-61158.exe (PID: 8544)
      • Unicorn-60546.exe (PID: 11248)
      • Unicorn-55907.exe (PID: 10420)
      • Unicorn-1750.exe (PID: 10016)
      • Unicorn-36025.exe (PID: 8344)
      • Unicorn-33359.exe (PID: 8996)
      • Unicorn-56711.exe (PID: 8536)
      • Unicorn-18277.exe (PID: 10200)
      • Unicorn-36203.exe (PID: 9496)
      • Unicorn-4106.exe (PID: 9692)
      • Unicorn-58034.exe (PID: 8688)
      • Unicorn-11418.exe (PID: 10480)
      • Unicorn-52814.exe (PID: 10540)
      • Unicorn-3442.exe (PID: 10432)
      • Unicorn-35435.exe (PID: 9336)
      • Unicorn-19867.exe (PID: 9504)
      • Unicorn-27175.exe (PID: 10072)
      • Unicorn-48263.exe (PID: 9260)
      • Unicorn-36779.exe (PID: 9684)
      • Unicorn-3473.exe (PID: 1600)
      • Unicorn-64179.exe (PID: 10152)
      • Unicorn-21019.exe (PID: 9580)
      • Unicorn-12392.exe (PID: 2644)
      • Unicorn-15695.exe (PID: 10412)
      • Unicorn-50951.exe (PID: 10028)
      • Unicorn-59451.exe (PID: 8484)
      • Unicorn-24247.exe (PID: 10856)
      • Unicorn-18116.exe (PID: 10872)
      • Unicorn-22664.exe (PID: 11636)
      • Unicorn-1921.exe (PID: 720)
      • Unicorn-5288.exe (PID: 10472)
      • Unicorn-35413.exe (PID: 5512)
      • Unicorn-13146.exe (PID: 10968)
      • Unicorn-47739.exe (PID: 10236)
      • Unicorn-35191.exe (PID: 10628)
      • Unicorn-29192.exe (PID: 9724)
      • Unicorn-65139.exe (PID: 13112)
      • Unicorn-31595.exe (PID: 11644)
      • Unicorn-48891.exe (PID: 11800)
      • Unicorn-15887.exe (PID: 10336)
      • Unicorn-9217.exe (PID: 9092)
      • Unicorn-32046.exe (PID: 9460)
      • Unicorn-43743.exe (PID: 10208)
      • Unicorn-50722.exe (PID: 13680)
      • Unicorn-6566.exe (PID: 13700)
      • Unicorn-35347.exe (PID: 13712)
      • Unicorn-61593.exe (PID: 8132)
      • Unicorn-58403.exe (PID: 9212)
      • Unicorn-19356.exe (PID: 9792)
      • Unicorn-32953.exe (PID: 8908)
      • Unicorn-21817.exe (PID: 11888)
      • Unicorn-47770.exe (PID: 13220)
      • Unicorn-54185.exe (PID: 11132)
      • Unicorn-51823.exe (PID: 11256)
      • Unicorn-22008.exe (PID: 10348)
      • Unicorn-20931.exe (PID: 11048)
      • Unicorn-56025.exe (PID: 11016)
      • Unicorn-58958.exe (PID: 11084)
      • Unicorn-63670.exe (PID: 11092)
      • Unicorn-37001.exe (PID: 5592)
      • Unicorn-60005.exe (PID: 9596)
      • Unicorn-4381.exe (PID: 10896)
      • Unicorn-35295.exe (PID: 2340)
      • Unicorn-3426.exe (PID: 8516)
      • Unicorn-64075.exe (PID: 10288)
      • Unicorn-22503.exe (PID: 8464)
      • Unicorn-38293.exe (PID: 11584)
      • Unicorn-3914.exe (PID: 9444)
      • Unicorn-6514.exe (PID: 10284)
      • Unicorn-12554.exe (PID: 9136)
      • Unicorn-27563.exe (PID: 10524)
      • Unicorn-59289.exe (PID: 11760)
      • Unicorn-54437.exe (PID: 11676)
      • Unicorn-37858.exe (PID: 9716)
      • Unicorn-12482.exe (PID: 14960)
      • Unicorn-31662.exe (PID: 9532)
      • Unicorn-40562.exe (PID: 12700)
      • Unicorn-39409.exe (PID: 14900)
      • Unicorn-7636.exe (PID: 14976)
      • Unicorn-57843.exe (PID: 14068)
      • Unicorn-63603.exe (PID: 12196)
      • Unicorn-58705.exe (PID: 13192)
      • Unicorn-59690.exe (PID: 12256)
      • Unicorn-62309.exe (PID: 10100)
      • Unicorn-58927.exe (PID: 10056)
      • Unicorn-4957.exe (PID: 10568)
      • Unicorn-60707.exe (PID: 9552)
      • Unicorn-10961.exe (PID: 3024)
      • Unicorn-14926.exe (PID: 13396)
      • Unicorn-31292.exe (PID: 14080)
      • Unicorn-60469.exe (PID: 5212)
      • Unicorn-1190.exe (PID: 12132)
      • Unicorn-37665.exe (PID: 9368)
      • Unicorn-12570.exe (PID: 10580)
      • Unicorn-16824.exe (PID: 12308)
      • Unicorn-7858.exe (PID: 11784)
      • Unicorn-52103.exe (PID: 10112)
      • Unicorn-8050.exe (PID: 11740)
      • Unicorn-10058.exe (PID: 6652)
      • Unicorn-61593.exe (PID: 8140)
      • Unicorn-22409.exe (PID: 14276)
      • Unicorn-9062.exe (PID: 10960)
      • Unicorn-42369.exe (PID: 13276)
      • Unicorn-17527.exe (PID: 12120)
      • Unicorn-44541.exe (PID: 11192)
      • Unicorn-61195.exe (PID: 10908)
      • Unicorn-43411.exe (PID: 2980)
      • Unicorn-47770.exe (PID: 13212)
      • Unicorn-0.exe (PID: 11276)
      • Unicorn-9285.exe (PID: 12080)
      • Unicorn-785.exe (PID: 16448)
      • Unicorn-4993.exe (PID: 16824)
      • Unicorn-15975.exe (PID: 9472)
      • Unicorn-8296.exe (PID: 11228)
      • Unicorn-38035.exe (PID: 10936)
      • Unicorn-46795.exe (PID: 16800)
      • Unicorn-35435.exe (PID: 9320)
      • Unicorn-25591.exe (PID: 10916)
      • Unicorn-56410.exe (PID: 9396)
      • Unicorn-25446.exe (PID: 17636)
      • Unicorn-18325.exe (PID: 14268)
      • Unicorn-38517.exe (PID: 17644)
      • Unicorn-47770.exe (PID: 13228)
      • Unicorn-37001.exe (PID: 3364)
      • Unicorn-31433.exe (PID: 13284)
      • Unicorn-52253.exe (PID: 17628)
      • Unicorn-24557.exe (PID: 11560)
    • Executable content was dropped or overwritten

      • Unicorn-16055.exe (PID: 6436)
      • Unicorn-26449.exe (PID: 1072)
      • Unicorn-16055.exe (PID: 1532)
      • Unicorn-36537.exe (PID: 5548)
      • Unicorn-41305.exe (PID: 5776)
      • Unicorn-32147.exe (PID: 1052)
      • Unicorn-14008.exe (PID: 6656)
      • Unicorn-7258.exe (PID: 5608)
      • Unicorn-44762.exe (PID: 6156)
      • Unicorn-24839.exe (PID: 1672)
      • 1 (1323).exe (PID: 2320)
      • Unicorn-38077.exe (PID: 5416)
      • Unicorn-48291.exe (PID: 5204)
      • Unicorn-57014.exe (PID: 5504)
      • Unicorn-52110.exe (PID: 1180)
      • Unicorn-62811.exe (PID: 2960)
      • Unicorn-26609.exe (PID: 4120)
      • Unicorn-33839.exe (PID: 5380)
      • Unicorn-39961.exe (PID: 1388)
      • Unicorn-2318.exe (PID: 1328)
      • Unicorn-39267.exe (PID: 2240)
      • Unicorn-27377.exe (PID: 5756)
      • Unicorn-16608.exe (PID: 6752)
      • Unicorn-1861.exe (PID: 5116)
      • Unicorn-22739.exe (PID: 6592)
      • Unicorn-35737.exe (PID: 5984)
      • Unicorn-15125.exe (PID: 5260)
      • Unicorn-60543.exe (PID: 4408)
      • Unicorn-21976.exe (PID: 2984)
      • Unicorn-34991.exe (PID: 5436)
      • Unicorn-7554.exe (PID: 7212)
      • Unicorn-36889.exe (PID: 7228)
      • Unicorn-48587.exe (PID: 7244)
      • Unicorn-16875.exe (PID: 7280)
      • Unicorn-42125.exe (PID: 7288)
      • Unicorn-53631.exe (PID: 7320)
      • Unicorn-25597.exe (PID: 7344)
      • Unicorn-25235.exe (PID: 7304)
      • Unicorn-61607.exe (PID: 7392)
      • Unicorn-37030.exe (PID: 7336)
      • Unicorn-13345.exe (PID: 7364)
      • Unicorn-58218.exe (PID: 7512)
      • Unicorn-30449.exe (PID: 7524)
      • Unicorn-41741.exe (PID: 7384)
      • Unicorn-11128.exe (PID: 7540)
      • Unicorn-33019.exe (PID: 7412)
      • Unicorn-14378.exe (PID: 1184)
      • Unicorn-62375.exe (PID: 7572)
      • Unicorn-2842.exe (PID: 7740)
      • Unicorn-13868.exe (PID: 7252)
      • Unicorn-1306.exe (PID: 7468)
      • Unicorn-62249.exe (PID: 7716)
      • Unicorn-15094.exe (PID: 7708)
      • Unicorn-26173.exe (PID: 7588)
      • Unicorn-58291.exe (PID: 7556)
      • Unicorn-50507.exe (PID: 7488)
      • Unicorn-35131.exe (PID: 7892)
      • Unicorn-17259.exe (PID: 7548)
      • Unicorn-59635.exe (PID: 7844)
      • Unicorn-34555.exe (PID: 7676)
      • Unicorn-8309.exe (PID: 7904)
      • Unicorn-3152.exe (PID: 7496)
      • Unicorn-20369.exe (PID: 7940)
      • Unicorn-53505.exe (PID: 7852)
      • Unicorn-28093.exe (PID: 7724)
      • Unicorn-19733.exe (PID: 7800)
      • Unicorn-54717.exe (PID: 7972)
      • Unicorn-27599.exe (PID: 8004)
      • Unicorn-19431.exe (PID: 8032)
      • Unicorn-25811.exe (PID: 7532)
      • Unicorn-56245.exe (PID: 7564)
      • Unicorn-24859.exe (PID: 8052)
      • Unicorn-8885.exe (PID: 8076)
      • Unicorn-26949.exe (PID: 8204)
      • Unicorn-47383.exe (PID: 7876)
      • Unicorn-23899.exe (PID: 7964)
      • Unicorn-31601.exe (PID: 7884)
      • Unicorn-58034.exe (PID: 8704)
      • Unicorn-47694.exe (PID: 7732)
      • Unicorn-37997.exe (PID: 8044)
      • Unicorn-13056.exe (PID: 8616)
      • Unicorn-15731.exe (PID: 7948)
      • Unicorn-55677.exe (PID: 8060)
      • Unicorn-33581.exe (PID: 8112)
      • Unicorn-52679.exe (PID: 7988)
      • Unicorn-14718.exe (PID: 8420)
      • Unicorn-60019.exe (PID: 7792)
      • Unicorn-162.exe (PID: 8104)
      • Unicorn-34917.exe (PID: 7688)
      • Unicorn-9269.exe (PID: 7036)
      • Unicorn-53255.exe (PID: 8176)
      • Unicorn-12725.exe (PID: 6372)
      • Unicorn-47754.exe (PID: 8472)
      • Unicorn-31439.exe (PID: 8608)
      • Unicorn-1432.exe (PID: 7980)
      • Unicorn-10058.exe (PID: 6652)
      • Unicorn-46550.exe (PID: 8964)
      • Unicorn-38407.exe (PID: 8588)
      • Unicorn-59067.exe (PID: 8228)
      • Unicorn-46623.exe (PID: 8296)
      • Unicorn-63785.exe (PID: 5556)
      • Unicorn-3093.exe (PID: 8120)
      • Unicorn-45419.exe (PID: 9052)
      • Unicorn-1153.exe (PID: 9172)
      • Unicorn-26779.exe (PID: 8440)
      • Unicorn-28315.exe (PID: 8828)
      • Unicorn-17459.exe (PID: 2908)
      • Unicorn-33551.exe (PID: 8928)
      • Unicorn-48714.exe (PID: 8596)
      • Unicorn-45833.exe (PID: 9384)
      • Unicorn-27332.exe (PID: 9820)
      • Unicorn-33224.exe (PID: 8336)
      • Unicorn-61179.exe (PID: 8864)
      • Unicorn-12405.exe (PID: 7580)
      • Unicorn-56741.exe (PID: 9164)
      • Unicorn-35435.exe (PID: 9324)
      • Unicorn-48543.exe (PID: 8528)
      • Unicorn-17451.exe (PID: 7504)
      • Unicorn-7368.exe (PID: 7424)
      • Unicorn-46462.exe (PID: 9864)
      • Unicorn-34807.exe (PID: 9904)
      • Unicorn-5325.exe (PID: 9016)
      • Unicorn-61139.exe (PID: 8804)
      • Unicorn-19269.exe (PID: 8144)
      • Unicorn-49415.exe (PID: 9652)
      • Unicorn-64666.exe (PID: 8388)
      • Unicorn-5761.exe (PID: 3300)
      • Unicorn-43411.exe (PID: 2980)
      • Unicorn-61158.exe (PID: 8544)
      • Unicorn-22620.exe (PID: 8068)
      • Unicorn-58034.exe (PID: 8712)
      • Unicorn-33286.exe (PID: 8920)
      • Unicorn-46550.exe (PID: 8972)
      • Unicorn-56135.exe (PID: 8632)
      • Unicorn-1750.exe (PID: 10016)
      • Unicorn-35051.exe (PID: 8384)
      • Unicorn-61231.exe (PID: 6228)
      • Unicorn-9482.exe (PID: 8364)
      • Unicorn-53831.exe (PID: 7452)
      • Unicorn-36025.exe (PID: 8344)
      • Unicorn-33359.exe (PID: 8996)
      • Unicorn-56711.exe (PID: 8536)
      • Unicorn-3618.exe (PID: 8884)
      • Unicorn-51823.exe (PID: 11256)
      • Unicorn-55907.exe (PID: 10420)
      • Unicorn-36203.exe (PID: 9496)
      • Unicorn-18277.exe (PID: 10200)
      • Unicorn-58034.exe (PID: 8688)
      • Unicorn-3442.exe (PID: 10432)
      • Unicorn-4106.exe (PID: 9692)
      • Unicorn-11418.exe (PID: 10480)
      • Unicorn-52814.exe (PID: 10540)
      • Unicorn-19867.exe (PID: 9504)
      • Unicorn-27175.exe (PID: 10072)
      • Unicorn-48263.exe (PID: 9260)
      • Unicorn-36779.exe (PID: 9684)
      • Unicorn-35435.exe (PID: 9336)
      • Unicorn-64179.exe (PID: 10152)
      • Unicorn-21019.exe (PID: 9580)
      • Unicorn-15695.exe (PID: 10412)
      • Unicorn-50951.exe (PID: 10028)
      • Unicorn-59451.exe (PID: 8484)
      • Unicorn-3473.exe (PID: 1600)
      • Unicorn-12392.exe (PID: 2644)
      • Unicorn-162.exe (PID: 8088)
      • Unicorn-29192.exe (PID: 9724)
      • Unicorn-43743.exe (PID: 10208)
      • Unicorn-24247.exe (PID: 10856)
      • Unicorn-22664.exe (PID: 11636)
      • Unicorn-18116.exe (PID: 10872)
      • Unicorn-4194.exe (PID: 8672)
      • Unicorn-5288.exe (PID: 10472)
      • Unicorn-35413.exe (PID: 5512)
      • Unicorn-35191.exe (PID: 10628)
      • Unicorn-16824.exe (PID: 12308)
      • Unicorn-65139.exe (PID: 13112)
      • Unicorn-31595.exe (PID: 11644)
      • Unicorn-48891.exe (PID: 11800)
      • Unicorn-15887.exe (PID: 10336)
      • Unicorn-58403.exe (PID: 9212)
      • Unicorn-6566.exe (PID: 13700)
      • Unicorn-50722.exe (PID: 13680)
      • Unicorn-35347.exe (PID: 13712)
      • Unicorn-22008.exe (PID: 10348)
      • Unicorn-19356.exe (PID: 9792)
      • Unicorn-21817.exe (PID: 11888)
      • Unicorn-47770.exe (PID: 13220)
      • Unicorn-54185.exe (PID: 11132)
      • Unicorn-58034.exe (PID: 8692)
      • Unicorn-60546.exe (PID: 11248)
      • Unicorn-20931.exe (PID: 11048)
      • Unicorn-58958.exe (PID: 11084)
      • Unicorn-56025.exe (PID: 11016)
      • Unicorn-37001.exe (PID: 5592)
      • Unicorn-63670.exe (PID: 11092)
      • Unicorn-60005.exe (PID: 9596)
      • Unicorn-4381.exe (PID: 10896)
      • Unicorn-35295.exe (PID: 2340)
      • Unicorn-3426.exe (PID: 8516)
      • Unicorn-64075.exe (PID: 10288)
      • Unicorn-22503.exe (PID: 8464)
      • Unicorn-38293.exe (PID: 11584)
      • Unicorn-3914.exe (PID: 9444)
      • Unicorn-6514.exe (PID: 10284)
      • Unicorn-12554.exe (PID: 9136)
      • Unicorn-37858.exe (PID: 9716)
      • Unicorn-41890.exe (PID: 8328)
      • Unicorn-27563.exe (PID: 10524)
      • Unicorn-59289.exe (PID: 11760)
      • Unicorn-64194.exe (PID: 8224)
      • Unicorn-54437.exe (PID: 11676)
      • Unicorn-63603.exe (PID: 12188)
      • Unicorn-1921.exe (PID: 720)
      • Unicorn-12482.exe (PID: 14960)
      • Unicorn-7636.exe (PID: 14976)
      • Unicorn-31662.exe (PID: 9532)
      • Unicorn-63603.exe (PID: 12196)
      • Unicorn-39409.exe (PID: 14900)
      • Unicorn-40562.exe (PID: 12700)
      • Unicorn-58705.exe (PID: 13192)
      • Unicorn-59690.exe (PID: 12256)
      • Unicorn-57843.exe (PID: 14068)
      • Unicorn-62309.exe (PID: 10100)
      • Unicorn-58927.exe (PID: 10056)
      • Unicorn-4957.exe (PID: 10568)
      • Unicorn-14926.exe (PID: 13396)
      • Unicorn-60707.exe (PID: 9552)
      • Unicorn-31292.exe (PID: 14080)
      • Unicorn-1190.exe (PID: 12132)
      • Unicorn-37665.exe (PID: 9368)
      • Unicorn-12570.exe (PID: 10580)
      • Unicorn-7858.exe (PID: 11784)
      • Unicorn-52103.exe (PID: 10112)
      • Unicorn-60469.exe (PID: 5212)
      • Unicorn-8050.exe (PID: 11740)
      • Unicorn-9217.exe (PID: 9092)
      • Unicorn-9062.exe (PID: 10960)
      • Unicorn-22409.exe (PID: 14276)
      • Unicorn-42369.exe (PID: 13276)
      • Unicorn-9285.exe (PID: 12080)
      • Unicorn-10681.exe (PID: 12284)
      • Unicorn-44541.exe (PID: 11192)
      • Unicorn-61195.exe (PID: 10908)
      • Unicorn-47770.exe (PID: 13212)
      • Unicorn-0.exe (PID: 11276)
      • Unicorn-25591.exe (PID: 10916)
      • Unicorn-38035.exe (PID: 10936)
      • Unicorn-47739.exe (PID: 10236)
      • Unicorn-8296.exe (PID: 11228)
      • Unicorn-35435.exe (PID: 9320)
      • Unicorn-15975.exe (PID: 9472)
      • Unicorn-18325.exe (PID: 14268)
      • Unicorn-47770.exe (PID: 13228)
      • Unicorn-37001.exe (PID: 3364)
      • Unicorn-31433.exe (PID: 13284)
      • Unicorn-20827.exe (PID: 9624)
      • Unicorn-54838.exe (PID: 14116)
      • Unicorn-38870.exe (PID: 8100)
      • Unicorn-56410.exe (PID: 9396)
      • Unicorn-48817.exe (PID: 11108)
      • Unicorn-4993.exe (PID: 16824)
      • Unicorn-785.exe (PID: 16448)
      • Unicorn-30723.exe (PID: 9912)
      • Unicorn-44563.exe (PID: 9520)
      • Unicorn-47770.exe (PID: 13200)
      • Unicorn-62326.exe (PID: 10552)
      • Unicorn-38517.exe (PID: 17644)
      • Unicorn-32046.exe (PID: 9460)
      • Unicorn-110.exe (PID: 8664)
      • Unicorn-13457.exe (PID: 11164)
      • Unicorn-4454.exe (PID: 12816)
      • Unicorn-9285.exe (PID: 12056)
      • Unicorn-34593.exe (PID: 9772)
      • Unicorn-50878.exe (PID: 3332)
      • Unicorn-6426.exe (PID: 12168)
      • Unicorn-24557.exe (PID: 11560)
      • Unicorn-50406.exe (PID: 11184)
      • Unicorn-34253.exe (PID: 13864)
      • Unicorn-46795.exe (PID: 16800)
      • Unicorn-10961.exe (PID: 3024)
      • Unicorn-25446.exe (PID: 17636)
      • Unicorn-60285.exe (PID: 8952)
      • Unicorn-39697.exe (PID: 18672)
  • INFO

    • The sample compiled with chinese language support

      • 1 (1323).exe (PID: 2320)
    • Checks supported languages

      • 1 (1323).exe (PID: 2320)
      • Unicorn-26449.exe (PID: 1072)
      • Unicorn-36537.exe (PID: 5548)
      • Unicorn-16055.exe (PID: 6436)
      • Unicorn-16055.exe (PID: 1532)
      • Unicorn-24839.exe (PID: 1672)
      • Unicorn-38077.exe (PID: 5416)
      • Unicorn-60543.exe (PID: 4408)
      • Unicorn-52110.exe (PID: 1180)
      • Unicorn-26609.exe (PID: 4120)
      • Unicorn-44762.exe (PID: 6156)
      • Unicorn-33839.exe (PID: 5380)
      • Unicorn-48291.exe (PID: 5204)
      • Unicorn-39267.exe (PID: 2240)
      • Unicorn-32147.exe (PID: 1052)
      • Unicorn-34991.exe (PID: 5436)
      • Unicorn-1861.exe (PID: 5116)
      • Unicorn-27377.exe (PID: 5756)
      • Unicorn-16608.exe (PID: 6752)
      • Unicorn-21976.exe (PID: 2984)
      • Unicorn-25235.exe (PID: 7304)
      • Unicorn-37030.exe (PID: 7336)
      • Unicorn-25597.exe (PID: 7344)
      • Unicorn-35737.exe (PID: 5984)
      • Unicorn-7368.exe (PID: 7424)
      • Unicorn-41741.exe (PID: 7384)
      • Unicorn-61607.exe (PID: 7392)
      • Unicorn-33019.exe (PID: 7412)
      • Unicorn-3152.exe (PID: 7496)
      • Unicorn-50507.exe (PID: 7488)
      • Unicorn-58218.exe (PID: 7512)
      • Unicorn-11128.exe (PID: 7540)
      • Unicorn-17259.exe (PID: 7548)
      • Unicorn-12405.exe (PID: 7580)
      • Unicorn-58291.exe (PID: 7556)
      • Unicorn-28093.exe (PID: 7724)
      • Unicorn-34555.exe (PID: 7676)
      • Unicorn-34917.exe (PID: 7688)
      • Unicorn-15094.exe (PID: 7708)
      • Unicorn-31601.exe (PID: 7884)
      • Unicorn-35131.exe (PID: 7892)
      • Unicorn-52679.exe (PID: 7988)
      • Unicorn-22620.exe (PID: 8068)
      • Unicorn-15731.exe (PID: 7948)
      • Unicorn-61231.exe (PID: 6228)
      • Unicorn-9269.exe (PID: 7036)
      • Unicorn-53831.exe (PID: 7452)
      • Unicorn-59067.exe (PID: 8228)
      • Unicorn-33224.exe (PID: 8336)
      • Unicorn-36025.exe (PID: 8344)
      • Unicorn-9482.exe (PID: 8364)
      • Unicorn-58034.exe (PID: 8712)
      • Unicorn-48543.exe (PID: 8528)
      • Unicorn-56711.exe (PID: 8536)
      • Unicorn-26779.exe (PID: 8440)
      • Unicorn-61158.exe (PID: 8544)
      • Unicorn-110.exe (PID: 8664)
      • Unicorn-48714.exe (PID: 8596)
      • Unicorn-46550.exe (PID: 8964)
      • Unicorn-61179.exe (PID: 8864)
      • Unicorn-58034.exe (PID: 8688)
      • Unicorn-26173.exe (PID: 7588)
      • Unicorn-35051.exe (PID: 8384)
      • Unicorn-56741.exe (PID: 9164)
      • Unicorn-33286.exe (PID: 8920)
      • Unicorn-61593.exe (PID: 8140)
      • Unicorn-43411.exe (PID: 2980)
      • Unicorn-5325.exe (PID: 9016)
      • Unicorn-48263.exe (PID: 9260)
      • Unicorn-48242.exe (PID: 9412)
      • Unicorn-3914.exe (PID: 9444)
      • Unicorn-32046.exe (PID: 9460)
      • Unicorn-34807.exe (PID: 9904)
      • Unicorn-19867.exe (PID: 9504)
      • Unicorn-37665.exe (PID: 9368)
      • Unicorn-44563.exe (PID: 9520)
      • Unicorn-35413.exe (PID: 5512)
      • Unicorn-20827.exe (PID: 9624)
      • Unicorn-32695.exe (PID: 9676)
      • Unicorn-4106.exe (PID: 9692)
      • Unicorn-18257.exe (PID: 9708)
      • Unicorn-64718.exe (PID: 9512)
      • Unicorn-21019.exe (PID: 9580)
      • Unicorn-44437.exe (PID: 9744)
      • Unicorn-29192.exe (PID: 9724)
      • Unicorn-19356.exe (PID: 9792)
      • Unicorn-58927.exe (PID: 10056)
      • Unicorn-1750.exe (PID: 10016)
      • Unicorn-8640.exe (PID: 2192)
      • Unicorn-52103.exe (PID: 10112)
      • Unicorn-12570.exe (PID: 10580)
      • Unicorn-27563.exe (PID: 10524)
      • Unicorn-15887.exe (PID: 10336)
      • Unicorn-5288.exe (PID: 10472)
      • Unicorn-60442.exe (PID: 10636)
      • Unicorn-18116.exe (PID: 10872)
      • Unicorn-60546.exe (PID: 11248)
      • Unicorn-51823.exe (PID: 11256)
      • Unicorn-34593.exe (PID: 9784)
      • Unicorn-62326.exe (PID: 10552)
      • Unicorn-13146.exe (PID: 10968)
      • Unicorn-20665.exe (PID: 11040)
      • Unicorn-3316.exe (PID: 11204)
      • Unicorn-4381.exe (PID: 10896)
      • Unicorn-8296.exe (PID: 11228)
      • Unicorn-36689.exe (PID: 11032)
      • Unicorn-25591.exe (PID: 10916)
      • Unicorn-47739.exe (PID: 10236)
      • Unicorn-35295.exe (PID: 2340)
      • Unicorn-20931.exe (PID: 11048)
      • Unicorn-39379.exe (PID: 6048)
      • Unicorn-44667.exe (PID: 10404)
      • Unicorn-24557.exe (PID: 11560)
      • Unicorn-13457.exe (PID: 11164)
      • Unicorn-28449.exe (PID: 11624)
      • Unicorn-43249.exe (PID: 11120)
      • Unicorn-8050.exe (PID: 11740)
      • Unicorn-63779.exe (PID: 10316)
      • Unicorn-0.exe (PID: 11276)
      • Unicorn-64179.exe (PID: 10152)
      • Unicorn-7858.exe (PID: 11784)
      • Unicorn-48817.exe (PID: 11108)
      • Unicorn-4792.exe (PID: 11176)
      • Unicorn-17208.exe (PID: 6800)
      • Unicorn-63722.exe (PID: 12316)
      • Unicorn-53286.exe (PID: 11988)
      • Unicorn-21625.exe (PID: 11928)
      • Unicorn-13073.exe (PID: 11964)
      • Unicorn-21817.exe (PID: 11888)
      • Unicorn-10489.exe (PID: 12032)
      • Unicorn-32392.exe (PID: 12048)
      • Unicorn-9285.exe (PID: 12088)
      • Unicorn-63603.exe (PID: 12196)
      • Unicorn-20983.exe (PID: 13128)
      • Unicorn-9285.exe (PID: 12056)
      • Unicorn-41211.exe (PID: 12844)
      • Unicorn-33235.exe (PID: 12832)
      • Unicorn-57089.exe (PID: 12272)
      • Unicorn-46042.exe (PID: 12808)
      • Unicorn-36447.exe (PID: 11828)
      • Unicorn-59690.exe (PID: 12256)
      • Unicorn-6566.exe (PID: 13700)
      • Unicorn-35347.exe (PID: 13712)
      • Unicorn-60161.exe (PID: 13172)
      • Unicorn-47770.exe (PID: 13200)
      • Unicorn-47770.exe (PID: 13244)
      • Unicorn-37001.exe (PID: 3364)
      • Unicorn-6758.exe (PID: 13420)
      • Unicorn-14926.exe (PID: 13396)
      • Unicorn-51299.exe (PID: 13268)
      • Unicorn-56374.exe (PID: 13140)
      • Unicorn-6929.exe (PID: 13500)
      • Unicorn-4520.exe (PID: 13572)
      • Unicorn-10385.exe (PID: 13580)
      • Unicorn-61522.exe (PID: 13536)
      • Unicorn-39409.exe (PID: 14900)
      • Unicorn-4520.exe (PID: 13672)
      • Unicorn-7636.exe (PID: 14976)
      • Unicorn-14542.exe (PID: 13728)
      • Unicorn-18788.exe (PID: 13740)
      • Unicorn-65331.exe (PID: 13148)
      • Unicorn-5393.exe (PID: 13832)
      • Unicorn-31100.exe (PID: 13800)
      • Unicorn-5393.exe (PID: 13824)
      • Unicorn-26808.exe (PID: 12008)
      • Unicorn-9912.exe (PID: 13904)
      • Unicorn-33125.exe (PID: 13944)
      • Unicorn-8730.exe (PID: 12800)
      • Unicorn-6929.exe (PID: 13764)
      • Unicorn-21537.exe (PID: 12100)
      • Unicorn-31292.exe (PID: 14080)
      • Unicorn-42851.exe (PID: 14140)
      • Unicorn-47770.exe (PID: 13236)
      • Unicorn-50635.exe (PID: 14236)
      • Unicorn-1833.exe (PID: 13256)
      • Unicorn-58705.exe (PID: 13192)
      • Unicorn-18325.exe (PID: 14268)
      • Unicorn-54527.exe (PID: 14256)
      • Unicorn-1308.exe (PID: 14524)
      • Unicorn-25503.exe (PID: 14816)
      • Unicorn-732.exe (PID: 14616)
      • Unicorn-1720.exe (PID: 14608)
      • Unicorn-44963.exe (PID: 14708)
      • Unicorn-49218.exe (PID: 14756)
      • Unicorn-36913.exe (PID: 14516)
      • Unicorn-54262.exe (PID: 14884)
      • Unicorn-785.exe (PID: 16448)
      • Unicorn-5813.exe (PID: 15736)
      • Unicorn-1221.exe (PID: 16832)
      • Unicorn-9720.exe (PID: 13544)
      • Unicorn-53677.exe (PID: 15288)
      • Unicorn-52253.exe (PID: 17628)
      • Unicorn-60317.exe (PID: 16220)
      • Unicorn-45451.exe (PID: 16036)
      • Unicorn-37475.exe (PID: 16000)
      • Unicorn-16567.exe (PID: 15016)
      • Unicorn-1346.exe (PID: 15208)
      • Unicorn-10458.exe (PID: 14624)
      • Unicorn-20104.exe (PID: 15200)
      • Unicorn-8944.exe (PID: 15240)
      • Unicorn-57895.exe (PID: 15984)
      • Unicorn-14520.exe (PID: 15036)
      • Unicorn-9441.exe (PID: 15112)
      • Unicorn-17112.exe (PID: 15328)
      • Unicorn-14153.exe (PID: 6384)
      • Unicorn-31855.exe (PID: 15572)
      • Unicorn-57946.exe (PID: 15256)
      • Unicorn-49218.exe (PID: 14752)
      • Unicorn-1434.exe (PID: 14224)
    • Reads the computer name

      • 1 (1323).exe (PID: 2320)
      • Unicorn-24839.exe (PID: 1672)
      • Unicorn-26449.exe (PID: 1072)
      • Unicorn-36537.exe (PID: 5548)
      • Unicorn-16055.exe (PID: 1532)
      • Unicorn-38077.exe (PID: 5416)
      • Unicorn-48291.exe (PID: 5204)
      • Unicorn-62811.exe (PID: 2960)
      • Unicorn-33839.exe (PID: 5380)
      • Unicorn-41305.exe (PID: 5776)
      • Unicorn-16055.exe (PID: 6436)
      • Unicorn-39267.exe (PID: 2240)
      • Unicorn-27377.exe (PID: 5756)
      • Unicorn-15125.exe (PID: 5260)
      • Unicorn-21976.exe (PID: 2984)
      • Unicorn-7554.exe (PID: 7212)
      • Unicorn-36889.exe (PID: 7228)
      • Unicorn-1861.exe (PID: 5116)
      • Unicorn-48587.exe (PID: 7244)
      • Unicorn-53631.exe (PID: 7320)
      • Unicorn-25597.exe (PID: 7344)
      • Unicorn-58218.exe (PID: 7512)
      • Unicorn-11128.exe (PID: 7540)
      • Unicorn-62375.exe (PID: 7572)
      • Unicorn-2842.exe (PID: 7740)
      • Unicorn-62249.exe (PID: 7716)
      • Unicorn-15094.exe (PID: 7708)
      • Unicorn-25235.exe (PID: 7304)
      • Unicorn-47383.exe (PID: 7876)
      • Unicorn-12405.exe (PID: 7580)
      • Unicorn-50507.exe (PID: 7488)
      • Unicorn-53505.exe (PID: 7852)
      • Unicorn-17259.exe (PID: 7548)
      • Unicorn-19733.exe (PID: 7800)
      • Unicorn-25811.exe (PID: 7532)
      • Unicorn-24859.exe (PID: 8052)
      • Unicorn-13056.exe (PID: 8616)
      • Unicorn-55677.exe (PID: 8060)
      • Unicorn-60019.exe (PID: 7792)
      • Unicorn-53255.exe (PID: 8176)
      • Unicorn-12725.exe (PID: 6372)
      • Unicorn-47754.exe (PID: 8472)
      • Unicorn-38407.exe (PID: 8588)
      • Unicorn-1306.exe (PID: 7468)
      • Unicorn-46623.exe (PID: 8296)
      • Unicorn-3093.exe (PID: 8120)
      • Unicorn-45833.exe (PID: 9384)
      • Unicorn-1153.exe (PID: 9172)
      • Unicorn-28315.exe (PID: 8828)
      • Unicorn-48543.exe (PID: 8528)
      • Unicorn-5325.exe (PID: 9016)
      • Unicorn-61139.exe (PID: 8804)
      • Unicorn-43411.exe (PID: 2980)
      • Unicorn-110.exe (PID: 8664)
      • Unicorn-162.exe (PID: 8088)
      • Unicorn-52814.exe (PID: 10540)
      • Unicorn-15695.exe (PID: 10412)
      • Unicorn-13146.exe (PID: 10968)
      • Unicorn-61593.exe (PID: 8132)
      • Unicorn-32046.exe (PID: 9460)
      • Unicorn-32953.exe (PID: 8908)
      • Unicorn-35191.exe (PID: 10628)
      • Unicorn-35347.exe (PID: 13712)
      • Unicorn-50722.exe (PID: 13680)
      • Unicorn-20931.exe (PID: 11048)
      • Unicorn-4381.exe (PID: 10896)
      • Unicorn-9062.exe (PID: 10960)
      • Unicorn-62326.exe (PID: 10552)
      • Unicorn-59289.exe (PID: 11760)
      • Unicorn-27563.exe (PID: 10524)
      • Unicorn-25591.exe (PID: 10916)
      • Unicorn-58705.exe (PID: 13192)
      • Unicorn-4957.exe (PID: 10568)
      • Unicorn-18325.exe (PID: 14268)
      • Unicorn-785.exe (PID: 16448)
      • Unicorn-20827.exe (PID: 9624)
      • Unicorn-25446.exe (PID: 17636)
      • Unicorn-47770.exe (PID: 13200)
      • Unicorn-30723.exe (PID: 9912)
      • Unicorn-50406.exe (PID: 11184)
    • Create files in a temporary directory

      • Unicorn-16055.exe (PID: 1532)
      • Unicorn-36537.exe (PID: 5548)
      • 1 (1323).exe (PID: 2320)
      • Unicorn-26449.exe (PID: 1072)
      • Unicorn-14008.exe (PID: 6656)
      • Unicorn-41305.exe (PID: 5776)
      • Unicorn-24839.exe (PID: 1672)
      • Unicorn-44762.exe (PID: 6156)
      • Unicorn-16055.exe (PID: 6436)
      • Unicorn-48291.exe (PID: 5204)
      • Unicorn-52110.exe (PID: 1180)
      • Unicorn-26609.exe (PID: 4120)
      • Unicorn-2318.exe (PID: 1328)
      • Unicorn-33839.exe (PID: 5380)
      • Unicorn-39961.exe (PID: 1388)
      • Unicorn-7258.exe (PID: 5608)
      • Unicorn-39267.exe (PID: 2240)
      • Unicorn-27377.exe (PID: 5756)
      • Unicorn-16608.exe (PID: 6752)
      • Unicorn-35737.exe (PID: 5984)
      • Unicorn-15125.exe (PID: 5260)
      • Unicorn-21976.exe (PID: 2984)
      • Unicorn-60543.exe (PID: 4408)
      • Unicorn-34991.exe (PID: 5436)
      • Unicorn-36889.exe (PID: 7228)
      • Unicorn-7554.exe (PID: 7212)
      • Unicorn-62811.exe (PID: 2960)
      • Unicorn-48587.exe (PID: 7244)
      • Unicorn-38077.exe (PID: 5416)
      • Unicorn-16875.exe (PID: 7280)
      • Unicorn-42125.exe (PID: 7288)
      • Unicorn-53631.exe (PID: 7320)
      • Unicorn-25597.exe (PID: 7344)
      • Unicorn-13345.exe (PID: 7364)
      • Unicorn-37030.exe (PID: 7336)
      • Unicorn-57014.exe (PID: 5504)
      • Unicorn-30449.exe (PID: 7524)
      • Unicorn-25235.exe (PID: 7304)
      • Unicorn-11128.exe (PID: 7540)
      • Unicorn-14378.exe (PID: 1184)
      • Unicorn-62375.exe (PID: 7572)
      • Unicorn-13868.exe (PID: 7252)
      • Unicorn-2842.exe (PID: 7740)
      • Unicorn-62249.exe (PID: 7716)
      • Unicorn-15094.exe (PID: 7708)
      • Unicorn-58291.exe (PID: 7556)
      • Unicorn-35131.exe (PID: 7892)
      • Unicorn-50507.exe (PID: 7488)
      • Unicorn-17259.exe (PID: 7548)
      • Unicorn-59635.exe (PID: 7844)
      • Unicorn-8309.exe (PID: 7904)
      • Unicorn-3152.exe (PID: 7496)
      • Unicorn-28093.exe (PID: 7724)
      • Unicorn-53505.exe (PID: 7852)
      • Unicorn-19733.exe (PID: 7800)
      • Unicorn-27599.exe (PID: 8004)
      • Unicorn-25811.exe (PID: 7532)
      • Unicorn-61607.exe (PID: 7392)
      • Unicorn-33019.exe (PID: 7412)
      • Unicorn-54717.exe (PID: 7972)
      • Unicorn-19431.exe (PID: 8032)
      • Unicorn-47383.exe (PID: 7876)
      • Unicorn-26949.exe (PID: 8204)
      • Unicorn-1432.exe (PID: 7980)
      • Unicorn-56245.exe (PID: 7564)
      • Unicorn-1306.exe (PID: 7468)
      • Unicorn-55677.exe (PID: 8060)
      • Unicorn-13056.exe (PID: 8616)
      • Unicorn-33581.exe (PID: 8112)
      • Unicorn-52679.exe (PID: 7988)
      • Unicorn-162.exe (PID: 8104)
      • Unicorn-60019.exe (PID: 7792)
      • Unicorn-34917.exe (PID: 7688)
      • Unicorn-53255.exe (PID: 8176)
      • Unicorn-1861.exe (PID: 5116)
      • Unicorn-47754.exe (PID: 8472)
      • Unicorn-46550.exe (PID: 8964)
      • Unicorn-38407.exe (PID: 8588)
      • Unicorn-59067.exe (PID: 8228)
      • Unicorn-3093.exe (PID: 8120)
      • Unicorn-46623.exe (PID: 8296)
      • Unicorn-1153.exe (PID: 9172)
      • Unicorn-8885.exe (PID: 8076)
      • Unicorn-58218.exe (PID: 7512)
      • Unicorn-48714.exe (PID: 8596)
      • Unicorn-33551.exe (PID: 8928)
      • Unicorn-14718.exe (PID: 8420)
      • Unicorn-34807.exe (PID: 9904)
      • Unicorn-22739.exe (PID: 6592)
      • Unicorn-32147.exe (PID: 1052)
      • Unicorn-19269.exe (PID: 8144)
      • Unicorn-17451.exe (PID: 7504)
      • Unicorn-26173.exe (PID: 7588)
      • Unicorn-64666.exe (PID: 8388)
      • Unicorn-58034.exe (PID: 8712)
      • Unicorn-12405.exe (PID: 7580)
      • Unicorn-33286.exe (PID: 8920)
      • Unicorn-46550.exe (PID: 8972)
      • Unicorn-35051.exe (PID: 8384)
      • Unicorn-56135.exe (PID: 8632)
      • Unicorn-58034.exe (PID: 8704)
      • Unicorn-34555.exe (PID: 7676)
      • Unicorn-53831.exe (PID: 7452)
      • Unicorn-23899.exe (PID: 7964)
      • Unicorn-41741.exe (PID: 7384)
      • Unicorn-36025.exe (PID: 8344)
      • Unicorn-56711.exe (PID: 8536)
      • Unicorn-11418.exe (PID: 10480)
      • Unicorn-4106.exe (PID: 9692)
      • Unicorn-27175.exe (PID: 10072)
      • Unicorn-59451.exe (PID: 8484)
      • Unicorn-48263.exe (PID: 9260)
      • Unicorn-12725.exe (PID: 6372)
      • Unicorn-15731.exe (PID: 7948)
      • Unicorn-3473.exe (PID: 1600)
      • Unicorn-31439.exe (PID: 8608)
      • Unicorn-18116.exe (PID: 10872)
      • Unicorn-24859.exe (PID: 8052)
      • Unicorn-27332.exe (PID: 9820)
      • Unicorn-16824.exe (PID: 12308)
      • Unicorn-15887.exe (PID: 10336)
      • Unicorn-58403.exe (PID: 9212)
      • Unicorn-33224.exe (PID: 8336)
      • Unicorn-35347.exe (PID: 13712)
      • Unicorn-36203.exe (PID: 9496)
      • Unicorn-58034.exe (PID: 8692)
      • Unicorn-21817.exe (PID: 11888)
      • Unicorn-54185.exe (PID: 11132)
      • Unicorn-60546.exe (PID: 11248)
      • Unicorn-37001.exe (PID: 5592)
      • Unicorn-4381.exe (PID: 10896)
      • Unicorn-60005.exe (PID: 9596)
      • Unicorn-37858.exe (PID: 9716)
      • Unicorn-59289.exe (PID: 11760)
      • Unicorn-12482.exe (PID: 14960)
      • Unicorn-40562.exe (PID: 12700)
      • Unicorn-63603.exe (PID: 12196)
      • Unicorn-58705.exe (PID: 13192)
      • Unicorn-57843.exe (PID: 14068)
      • Unicorn-1750.exe (PID: 10016)
      • Unicorn-52103.exe (PID: 10112)
      • Unicorn-61158.exe (PID: 8544)
      • Unicorn-50722.exe (PID: 13680)
      • Unicorn-8050.exe (PID: 11740)
      • Unicorn-20369.exe (PID: 7940)
      • Unicorn-9217.exe (PID: 9092)
      • Unicorn-9062.exe (PID: 10960)
      • Unicorn-31595.exe (PID: 11644)
      • Unicorn-44541.exe (PID: 11192)
      • Unicorn-3442.exe (PID: 10432)
      • Unicorn-8296.exe (PID: 11228)
      • Unicorn-25591.exe (PID: 10916)
      • Unicorn-12392.exe (PID: 2644)
      • Unicorn-22664.exe (PID: 11636)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | Win32 Executable Microsoft Visual Basic 6 (90.6)
.exe | Win32 Executable (generic) (4.9)
.exe | Generic Win/DOS Executable (2.2)
.exe | DOS Executable Generic (2.2)

EXIF

EXE

MachineType: Intel 386 or later, and compatibles
TimeStamp: 2019:01:19 13:34:56+00:00
ImageFileCharacteristics: No relocs, Executable, No line numbers, No symbols, 32-bit, No debug, Removable run from swap, Net run from swap, Uniprocessor only, Bytes reversed hi
PEType: PE32
LinkerVersion: 6
CodeSize: 176128
InitializedDataSize: 299008
UninitializedDataSize: -
EntryPoint: 0x13d4
OSVersion: 4
ImageVersion: 1
SubsystemVersion: 4
Subsystem: Windows GUI
FileVersionNumber: 1.0.0.0
ProductVersionNumber: 1.0.0.0
FileFlagsMask: 0x003f
FileFlags: (none)
FileOS: Win32
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: Chinese (Simplified)
CharacterSet: Unicode
CompanyName: UEFI
ProductName: Kawaii-Unicorn
FileVersion: 1
ProductVersion: 1
InternalName: Kawaii-Unicorn
OriginalFileName: Kawaii-Unicorn.exe
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
839
Monitored processes
708
Malicious processes
100
Suspicious processes
82

Behavior graph

Click at the process to see the details
start 1 (1323).exe sppextcomobj.exe no specs slui.exe unicorn-26449.exe unicorn-36537.exe unicorn-24839.exe unicorn-16055.exe unicorn-16055.exe unicorn-14008.exe unicorn-41305.exe unicorn-32147.exe unicorn-57014.exe unicorn-60543.exe unicorn-44762.exe unicorn-38077.exe unicorn-7258.exe unicorn-52110.exe unicorn-48291.exe unicorn-62811.exe unicorn-26609.exe unicorn-33839.exe unicorn-39961.exe unicorn-2318.exe unicorn-35737.exe unicorn-39267.exe unicorn-1861.exe unicorn-14378.exe unicorn-15125.exe unicorn-34991.exe unicorn-27377.exe unicorn-22739.exe unicorn-16608.exe unicorn-21976.exe unicorn-7554.exe unicorn-36889.exe unicorn-48587.exe unicorn-13868.exe unicorn-16875.exe unicorn-42125.exe unicorn-25235.exe unicorn-53631.exe unicorn-37030.exe unicorn-25597.exe unicorn-13345.exe unicorn-41741.exe unicorn-61607.exe unicorn-33019.exe unicorn-7368.exe unicorn-1306.exe unicorn-50507.exe unicorn-3152.exe unicorn-17451.exe unicorn-58218.exe unicorn-30449.exe unicorn-25811.exe unicorn-11128.exe unicorn-17259.exe unicorn-58291.exe unicorn-56245.exe unicorn-62375.exe unicorn-12405.exe unicorn-26173.exe unicorn-34555.exe unicorn-34917.exe unicorn-15094.exe unicorn-62249.exe unicorn-28093.exe unicorn-47694.exe unicorn-2842.exe unicorn-60019.exe unicorn-19733.exe unicorn-59635.exe unicorn-53505.exe unicorn-47383.exe unicorn-31601.exe unicorn-35131.exe unicorn-8309.exe unicorn-20369.exe unicorn-15731.exe unicorn-23899.exe unicorn-54717.exe unicorn-1432.exe unicorn-52679.exe unicorn-27599.exe unicorn-19431.exe unicorn-37997.exe unicorn-24859.exe unicorn-55677.exe unicorn-22620.exe unicorn-8885.exe unicorn-162.exe unicorn-162.exe unicorn-33581.exe unicorn-3093.exe unicorn-53255.exe unicorn-61231.exe unicorn-60469.exe unicorn-17459.exe unicorn-5761.exe unicorn-50878.exe unicorn-63785.exe unicorn-12725.exe unicorn-9269.exe unicorn-53831.exe unicorn-10058.exe unicorn-26949.exe unicorn-59067.exe unicorn-46623.exe unicorn-41890.exe unicorn-33224.exe unicorn-36025.exe unicorn-9482.exe unicorn-64666.exe unicorn-14718.exe unicorn-26779.exe unicorn-22503.exe unicorn-47754.exe unicorn-59451.exe unicorn-3426.exe unicorn-48543.exe unicorn-56711.exe unicorn-61158.exe unicorn-38407.exe unicorn-48714.exe unicorn-31439.exe unicorn-13056.exe unicorn-56135.exe unicorn-110.exe unicorn-4194.exe unicorn-58034.exe unicorn-58034.exe unicorn-58034.exe unicorn-58034.exe unicorn-61139.exe unicorn-28315.exe unicorn-61179.exe unicorn-3618.exe unicorn-32953.exe no specs unicorn-33286.exe unicorn-33551.exe unicorn-60285.exe unicorn-46550.exe unicorn-46550.exe unicorn-33359.exe unicorn-5325.exe unicorn-45419.exe unicorn-9217.exe unicorn-12554.exe unicorn-56741.exe unicorn-1153.exe unicorn-58403.exe unicorn-35051.exe unicorn-43411.exe unicorn-64194.exe unicorn-12392.exe unicorn-1921.exe unicorn-61593.exe no specs unicorn-61593.exe no specs unicorn-19269.exe unicorn-38870.exe unicorn-35413.exe unicorn-48263.exe unicorn-2954.exe no specs unicorn-35435.exe unicorn-35435.exe unicorn-35435.exe unicorn-37665.exe unicorn-45833.exe unicorn-56410.exe unicorn-48242.exe no specs unicorn-3914.exe unicorn-32046.exe unicorn-15975.exe unicorn-36203.exe unicorn-19867.exe unicorn-64718.exe no specs unicorn-44563.exe unicorn-31662.exe unicorn-60707.exe unicorn-21019.exe unicorn-60005.exe unicorn-8574.exe no specs unicorn-20827.exe unicorn-49415.exe unicorn-32695.exe no specs unicorn-36779.exe unicorn-4106.exe unicorn-18257.exe no specs unicorn-37858.exe unicorn-29192.exe unicorn-44437.exe no specs unicorn-34593.exe unicorn-34593.exe no specs unicorn-19356.exe unicorn-27332.exe unicorn-46462.exe unicorn-34807.exe unicorn-30723.exe unicorn-1750.exe unicorn-50951.exe unicorn-58927.exe unicorn-27175.exe unicorn-62309.exe unicorn-52103.exe unicorn-18277.exe unicorn-43743.exe unicorn-8640.exe no specs unicorn-30915.exe no specs unicorn-63779.exe no specs unicorn-15887.exe unicorn-22008.exe unicorn-44667.exe no specs unicorn-15695.exe unicorn-3442.exe unicorn-5288.exe unicorn-11418.exe unicorn-11153.exe no specs unicorn-16249.exe no specs unicorn-27563.exe unicorn-52814.exe no specs unicorn-52814.exe unicorn-62326.exe unicorn-4957.exe unicorn-12570.exe unicorn-35191.exe unicorn-60442.exe no specs unicorn-24247.exe unicorn-64318.exe no specs unicorn-18116.exe unicorn-4381.exe unicorn-61195.exe unicorn-25591.exe unicorn-46758.exe no specs unicorn-38035.exe unicorn-21315.exe no specs unicorn-9062.exe unicorn-13146.exe no specs unicorn-8605.exe no specs unicorn-53722.exe no specs unicorn-42289.exe no specs unicorn-56025.exe unicorn-61890.exe no specs unicorn-36689.exe no specs unicorn-20665.exe no specs unicorn-20931.exe unicorn-6493.exe no specs unicorn-58958.exe unicorn-63670.exe unicorn-48817.exe unicorn-43249.exe no specs unicorn-54185.exe unicorn-13457.exe unicorn-4792.exe no specs unicorn-50406.exe unicorn-44541.exe unicorn-3316.exe no specs unicorn-8296.exe unicorn-31211.exe no specs unicorn-60546.exe unicorn-51823.exe unicorn-55907.exe unicorn-64075.exe unicorn-47739.exe unicorn-6514.exe unicorn-55715.exe no specs unicorn-35295.exe unicorn-39379.exe no specs unicorn-10961.exe unicorn-0.exe no specs unicorn-0.exe unicorn-24557.exe unicorn-24557.exe no specs unicorn-24557.exe no specs unicorn-38293.exe unicorn-24557.exe no specs unicorn-28449.exe no specs unicorn-22664.exe unicorn-31595.exe unicorn-28449.exe no specs unicorn-54437.exe unicorn-8050.exe unicorn-59289.exe unicorn-32363.exe no specs unicorn-7858.exe unicorn-48891.exe unicorn-36447.exe no specs unicorn-45959.exe no specs unicorn-21817.exe unicorn-62466.exe no specs unicorn-21625.exe no specs unicorn-24008.exe no specs unicorn-13073.exe no specs unicorn-13073.exe no specs unicorn-13073.exe no specs unicorn-26808.exe no specs unicorn-53286.exe no specs unicorn-26808.exe no specs unicorn-26808.exe no specs unicorn-10489.exe no specs unicorn-18657.exe no specs unicorn-32392.exe no specs unicorn-9285.exe unicorn-29592.exe no specs unicorn-620.exe no specs unicorn-9285.exe unicorn-9285.exe no specs unicorn-21537.exe no specs unicorn-17527.exe no specs unicorn-1190.exe unicorn-22763.exe no specs unicorn-6426.exe unicorn-63603.exe unicorn-63603.exe unicorn-55435.exe no specs unicorn-55170.exe no specs unicorn-63966.exe no specs unicorn-7888.exe no specs unicorn-59690.exe unicorn-13753.exe no specs unicorn-57089.exe no specs unicorn-10681.exe unicorn-17208.exe no specs unicorn-3473.exe unicorn-64179.exe unicorn-16824.exe unicorn-63722.exe no specs unicorn-40562.exe unicorn-34696.exe no specs unicorn-31700.exe no specs unicorn-32851.exe no specs unicorn-28535.exe no specs unicorn-8730.exe no specs unicorn-46042.exe no specs unicorn-4454.exe unicorn-33235.exe no specs unicorn-41211.exe no specs unicorn-37319.exe no specs unicorn-40562.exe no specs unicorn-52887.exe no specs unicorn-23723.exe no specs unicorn-57355.exe no specs unicorn-65139.exe unicorn-20983.exe no specs unicorn-56374.exe no specs unicorn-65331.exe no specs unicorn-25259.exe no specs unicorn-19128.exe no specs unicorn-60161.exe no specs unicorn-58705.exe unicorn-47770.exe unicorn-47770.exe unicorn-47770.exe unicorn-47770.exe unicorn-47770.exe no specs unicorn-47770.exe no specs unicorn-1833.exe no specs unicorn-51299.exe no specs unicorn-42369.exe unicorn-31433.exe unicorn-31433.exe no specs unicorn-37001.exe unicorn-37001.exe unicorn-23265.exe no specs unicorn-6950.exe no specs unicorn-14926.exe unicorn-6758.exe no specs unicorn-10842.exe no specs unicorn-56130.exe no specs unicorn-6929.exe no specs unicorn-61889.exe no specs unicorn-43515.exe no specs unicorn-53354.exe no specs unicorn-61522.exe no specs unicorn-9720.exe no specs unicorn-48154.exe no specs unicorn-4520.exe no specs unicorn-10385.exe no specs unicorn-10385.exe no specs unicorn-6728.exe no specs unicorn-10385.exe no specs unicorn-4520.exe no specs unicorn-10385.exe no specs unicorn-4520.exe no specs unicorn-10385.exe no specs unicorn-10385.exe no specs unicorn-4520.exe no specs unicorn-50722.exe unicorn-6566.exe unicorn-35347.exe unicorn-14542.exe no specs unicorn-18788.exe no specs unicorn-6929.exe no specs unicorn-31263.exe no specs unicorn-11765.exe no specs unicorn-31100.exe no specs unicorn-25259.exe no specs unicorn-5393.exe no specs unicorn-5393.exe no specs unicorn-34253.exe unicorn-9912.exe no specs unicorn-44591.exe no specs unicorn-52726.exe no specs unicorn-33125.exe no specs unicorn-34608.exe no specs unicorn-20873.exe no specs unicorn-12705.exe no specs unicorn-56373.exe no specs unicorn-57843.exe unicorn-31292.exe unicorn-33339.exe no specs unicorn-54838.exe unicorn-61225.exe no specs unicorn-42851.exe no specs unicorn-26515.exe no specs unicorn-26515.exe no specs unicorn-26515.exe no specs unicorn-17771.exe no specs unicorn-1434.exe no specs unicorn-50635.exe no specs unicorn-54527.exe no specs unicorn-18325.exe unicorn-22409.exe unicorn-30577.exe no specs unicorn-30577.exe no specs unicorn-31433.exe no specs unicorn-51595.exe no specs unicorn-18347.exe no specs unicorn-59379.exe no specs unicorn-36913.exe no specs unicorn-1308.exe no specs unicorn-43515.exe no specs unicorn-44070.exe no specs unicorn-1720.exe no specs unicorn-732.exe no specs unicorn-10458.exe no specs unicorn-11589.exe no specs unicorn-51217.exe no specs unicorn-35347.exe no specs unicorn-44963.exe no specs unicorn-15991.exe no specs unicorn-20075.exe no specs unicorn-49218.exe no specs unicorn-49218.exe no specs unicorn-46617.exe no specs unicorn-4293.exe no specs unicorn-25503.exe no specs unicorn-37755.exe no specs unicorn-4698.exe no specs unicorn-41647.exe no specs unicorn-54262.exe no specs unicorn-39409.exe unicorn-12482.exe unicorn-7636.exe unicorn-8166.exe no specs unicorn-16301.exe no specs slui.exe no specs unicorn-16567.exe no specs unicorn-20651.exe no specs unicorn-14520.exe no specs unicorn-11720.exe no specs unicorn-9441.exe no specs unicorn-9706.exe no specs unicorn-46655.exe no specs unicorn-13982.exe no specs unicorn-20104.exe no specs unicorn-1346.exe no specs unicorn-8944.exe no specs unicorn-57946.exe no specs unicorn-17609.exe no specs unicorn-42741.exe no specs unicorn-53677.exe no specs unicorn-56477.exe no specs unicorn-6177.exe no specs unicorn-62342.exe no specs unicorn-1154.exe no specs unicorn-17112.exe no specs unicorn-577.exe no specs unicorn-29935.exe no specs unicorn-8553.exe no specs unicorn-14153.exe no specs unicorn-33754.exe no specs unicorn-13333.exe no specs unicorn-19912.exe no specs unicorn-20873.exe no specs unicorn-50931.exe no specs unicorn-18259.exe no specs unicorn-31855.exe no specs unicorn-44107.exe no specs unicorn-64335.exe no specs unicorn-6774.exe no specs unicorn-2690.exe no specs unicorn-15134.exe no specs unicorn-5813.exe no specs unicorn-21669.exe no specs unicorn-56670.exe no specs unicorn-27004.exe no specs unicorn-16649.exe no specs unicorn-56478.exe no specs unicorn-44854.exe no specs unicorn-52202.exe no specs unicorn-45411.exe no specs unicorn-33945.exe no specs unicorn-57895.exe no specs unicorn-38029.exe no specs unicorn-37475.exe no specs unicorn-8502.exe no specs unicorn-45451.exe no specs unicorn-28923.exe no specs unicorn-54387.exe no specs unicorn-23752.exe no specs unicorn-60317.exe no specs unicorn-25607.exe no specs unicorn-8886.exe no specs unicorn-28537.exe no specs unicorn-58087.exe no specs unicorn-785.exe unicorn-46795.exe unicorn-4993.exe unicorn-1221.exe no specs unicorn-42519.exe no specs unicorn-2830.exe no specs unicorn-25049.exe no specs unicorn-39779.exe no specs unicorn-19721.exe no specs unicorn-14698.exe no specs unicorn-51647.exe no specs unicorn-51647.exe no specs unicorn-39130.exe no specs unicorn-35311.exe no specs unicorn-22867.exe no specs unicorn-36427.exe no specs unicorn-3178.exe no specs unicorn-60547.exe no specs unicorn-65378.exe no specs unicorn-65378.exe no specs unicorn-50141.exe no specs unicorn-54225.exe no specs unicorn-60090.exe no specs unicorn-34889.exe no specs unicorn-60090.exe no specs unicorn-60090.exe no specs unicorn-34889.exe no specs unicorn-54225.exe no specs unicorn-60090.exe no specs unicorn-10177.exe no specs unicorn-34889.exe no specs unicorn-59593.exe no specs unicorn-16042.exe no specs unicorn-40489.exe no specs unicorn-40489.exe no specs unicorn-40489.exe no specs unicorn-40489.exe no specs unicorn-35586.exe no specs unicorn-54225.exe no specs unicorn-51425.exe no specs unicorn-51425.exe no specs unicorn-54225.exe no specs unicorn-44019.exe no specs unicorn-54225.exe no specs unicorn-45534.exe no specs unicorn-45534.exe no specs unicorn-59269.exe no specs unicorn-56774.exe no specs unicorn-52186.exe no specs unicorn-417.exe no specs unicorn-11849.exe no specs unicorn-417.exe no specs unicorn-57621.exe no specs unicorn-49453.exe no specs unicorn-46686.exe no specs unicorn-46686.exe no specs unicorn-46686.exe no specs unicorn-52253.exe no specs unicorn-52253.exe no specs unicorn-38517.exe no specs unicorn-38517.exe no specs unicorn-38517.exe no specs unicorn-38517.exe no specs unicorn-52253.exe no specs unicorn-52253.exe no specs unicorn-25446.exe unicorn-38517.exe unicorn-50770.exe no specs unicorn-64505.exe no specs unicorn-58118.exe no specs unicorn-19580.exe no specs unicorn-50770.exe no specs unicorn-19580.exe no specs unicorn-50770.exe no specs unicorn-58118.exe no specs unicorn-50770.exe no specs unicorn-19580.exe no specs unicorn-58118.exe no specs unicorn-58118.exe no specs unicorn-50770.exe no specs unicorn-58118.exe no specs unicorn-26073.exe no specs unicorn-57786.exe no specs unicorn-34241.exe no specs unicorn-37579.exe no specs unicorn-30298.exe no specs unicorn-10697.exe no specs unicorn-10697.exe no specs unicorn-5409.exe no specs unicorn-29409.exe no specs unicorn-53921.exe no specs unicorn-22011.exe no specs unicorn-41974.exe no specs unicorn-4521.exe no specs unicorn-39499.exe no specs unicorn-10910.exe no specs unicorn-3297.exe no specs unicorn-23163.exe no specs unicorn-2358.exe no specs unicorn-56322.exe no specs unicorn-29092.exe no specs unicorn-29092.exe no specs unicorn-56322.exe no specs unicorn-16840.exe no specs unicorn-56322.exe no specs unicorn-51102.exe no specs unicorn-45237.exe no specs unicorn-43199.exe no specs unicorn-56322.exe no specs unicorn-35031.exe no specs unicorn-56322.exe no specs unicorn-56322.exe no specs unicorn-27143.exe no specs unicorn-2721.exe no specs unicorn-31137.exe no specs unicorn-50473.exe no specs unicorn-32099.exe no specs unicorn-15497.exe no specs unicorn-42113.exe no specs unicorn-35991.exe no specs unicorn-60111.exe no specs unicorn-27439.exe no specs unicorn-56469.exe no specs unicorn-15186.exe no specs unicorn-36951.exe no specs unicorn-34904.exe no specs unicorn-32867.exe no specs unicorn-12114.exe no specs unicorn-39697.exe unicorn-42357.exe no specs unicorn-64505.exe no specs unicorn-25829.exe no specs unicorn-33997.exe no specs unicorn-27312.exe no specs unicorn-7977.exe no specs unicorn-27312.exe no specs unicorn-13577.exe no specs unicorn-10976.exe no specs unicorn-62778.exe no specs unicorn-8176.exe no specs unicorn-29127.exe no specs unicorn-13577.exe no specs unicorn-17661.exe no specs unicorn-28596.exe no specs unicorn-7596.exe no specs unicorn-12061.exe no specs unicorn-37262.exe no specs unicorn-37262.exe no specs unicorn-37262.exe no specs unicorn-37262.exe no specs unicorn-37262.exe no specs unicorn-37262.exe no specs unicorn-16841.exe no specs unicorn-55517.exe no specs unicorn-54034.exe no specs unicorn-58871.exe no specs unicorn-18031.exe no specs unicorn-17765.exe no specs unicorn-27312.exe no specs unicorn-31396.exe no specs unicorn-31396.exe no specs unicorn-31396.exe no specs unicorn-31396.exe no specs unicorn-31396.exe no specs unicorn-31396.exe no specs unicorn-31396.exe no specs unicorn-31396.exe no specs unicorn-31396.exe no specs unicorn-31396.exe no specs unicorn-31396.exe no specs unicorn-31396.exe no specs unicorn-37262.exe no specs unicorn-65499.exe no specs unicorn-54211.exe no specs unicorn-54211.exe no specs unicorn-54211.exe no specs unicorn-64777.exe no specs unicorn-54211.exe no specs unicorn-20405.exe no specs unicorn-45341.exe no specs unicorn-42541.exe no specs unicorn-16205.exe no specs unicorn-22883.exe no specs unicorn-28812.exe no specs unicorn-46433.exe no specs unicorn-51087.exe no specs unicorn-2633.exe no specs unicorn-46049.exe no specs unicorn-18777.exe no specs unicorn-59063.exe no specs unicorn-6525.exe no specs unicorn-63126.exe no specs unicorn-15482.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
720C:\Users\admin\AppData\Local\Temp\Unicorn-1921.exeC:\Users\admin\AppData\Local\Temp\Unicorn-1921.exe
Unicorn-14008.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-1921.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
960C:\Users\admin\AppData\Local\Temp\Unicorn-13333.exeC:\Users\admin\AppData\Local\Temp\Unicorn-13333.exeUnicorn-21976.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-13333.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1052C:\Users\admin\AppData\Local\Temp\Unicorn-32147.exeC:\Users\admin\AppData\Local\Temp\Unicorn-32147.exe
Unicorn-16055.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-32147.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1072C:\Users\admin\AppData\Local\Temp\Unicorn-26449.exeC:\Users\admin\AppData\Local\Temp\Unicorn-26449.exe
1 (1323).exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-26449.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1180C:\Users\admin\AppData\Local\Temp\Unicorn-52110.exeC:\Users\admin\AppData\Local\Temp\Unicorn-52110.exe
1 (1323).exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-52110.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1184C:\Users\admin\AppData\Local\Temp\Unicorn-14378.exeC:\Users\admin\AppData\Local\Temp\Unicorn-14378.exe
Unicorn-48291.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-14378.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1328C:\Users\admin\AppData\Local\Temp\Unicorn-2318.exeC:\Users\admin\AppData\Local\Temp\Unicorn-2318.exe
Unicorn-7258.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-2318.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1388C:\Users\admin\AppData\Local\Temp\Unicorn-39961.exeC:\Users\admin\AppData\Local\Temp\Unicorn-39961.exe
Unicorn-24839.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-39961.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1532C:\Users\admin\AppData\Local\Temp\Unicorn-16055.exeC:\Users\admin\AppData\Local\Temp\Unicorn-16055.exe
Unicorn-36537.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-16055.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1600C:\Users\admin\AppData\Local\Temp\Unicorn-3473.exeC:\Users\admin\AppData\Local\Temp\Unicorn-3473.exe
Unicorn-61139.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-3473.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
Total events
12 334
Read events
12 334
Write events
0
Delete events
0

Modification events

No data
Executable files
858
Suspicious files
0
Text files
0
Unknown types
0

Dropped files

PID
Process
Filename
Type
1072Unicorn-26449.exeC:\Users\admin\AppData\Local\Temp\Unicorn-36537.exeexecutable
MD5:300F8CB1DF9B512B8BC62FB89DB14573
SHA256:A96B9BCDA651827CDD1E89C94E0261086DC82159BD1A4B78A7CEF7439D024E4D
23201 (1323).exeC:\Users\admin\AppData\Local\Temp\Unicorn-26449.exeexecutable
MD5:573B239E5F255D0A318DBA1F48B15A50
SHA256:C1023C32CBFA3D53A4A7CC622A4B7B0AD712E8B8E3448062758CC44DB0CC28C3
1532Unicorn-16055.exeC:\Users\admin\AppData\Local\Temp\Unicorn-32147.exeexecutable
MD5:06E5681B613A7CEC3FCEDBEA8357343E
SHA256:0649B4B09A83C9557E05F1C86B4D1574E26F0BE91E8F5CADA7B1C385483FE8C2
5608Unicorn-7258.exeC:\Users\admin\AppData\Local\Temp\Unicorn-2318.exeexecutable
MD5:47D9A5CD3C01F619B2A8873E93AA3EFD
SHA256:DD9E7DAC63CFB8FBCB993C35D7B0C8777B10834509846C91663EE4F254A00756
1672Unicorn-24839.exeC:\Users\admin\AppData\Local\Temp\Unicorn-39961.exeexecutable
MD5:F5C4C3D65A497A22B82C8E9200C85B0C
SHA256:BAD4E0A8BA224BA5C55DAB40C8CADFE51F92D6D8BC14129AB581F3DA342A6FAF
23201 (1323).exeC:\Users\admin\AppData\Local\Temp\Unicorn-52110.exeexecutable
MD5:C8863D8DE0677A07E278DFA043808E24
SHA256:CDDE53991A05B01475D217E8D3EC5B260D0A265E5D7900AE229BED52F1E86E39
5548Unicorn-36537.exeC:\Users\admin\AppData\Local\Temp\Unicorn-57014.exeexecutable
MD5:BABD0645D1561F15F8FB6F65B255D566
SHA256:AC50F3FF3D68E4B5214F0AA3191313129468BD39AAB2F4C8E63AEF69FB04F4EC
1052Unicorn-32147.exeC:\Users\admin\AppData\Local\Temp\Unicorn-62811.exeexecutable
MD5:D150657EC49EDE11E653BDEEE7147F4C
SHA256:809E8C88F99CD6238A8E4094B5F09767674C0609CCA69D364C1E75B394BCCD98
1072Unicorn-26449.exeC:\Users\admin\AppData\Local\Temp\Unicorn-38077.exeexecutable
MD5:87FE07A337A2A08633BAD1DB3836529D
SHA256:F9939BD65A6A05F06C5585E379288D190C9C972A7224398CF4BE908A70EB9683
6156Unicorn-44762.exeC:\Users\admin\AppData\Local\Temp\Unicorn-33839.exeexecutable
MD5:3875B0A2047CAE347BC475B32D744E8F
SHA256:2EF0E13ABEA2338785DCE9ECCC0F86001045D6B3E74A96B99065D34A6157E48B
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
5
TCP/UDP connections
22
DNS requests
17
Threats
0

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
6544
svchost.exe
GET
200
184.30.131.245:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
4724
backgroundTaskHost.exe
GET
200
184.30.131.245:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAUZZSZEml49Gjh0j13P68w%3D
unknown
whitelisted
5496
MoUsoCoreWorker.exe
GET
200
2.16.164.106:80
http://crl.microsoft.com/pki/crl/products/MicRooCerAut2011_2011_03_22.crl
unknown
whitelisted
720
SIHClient.exe
GET
200
23.219.150.101:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Product%20Root%20Certificate%20Authority%202018.crl
unknown
whitelisted
720
SIHClient.exe
GET
200
23.219.150.101:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Update%20Secure%20Server%20CA%202.1.crl
unknown
whitelisted
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
4
System
192.168.100.255:137
whitelisted
4
System
192.168.100.255:138
whitelisted
5496
MoUsoCoreWorker.exe
2.16.164.106:80
crl.microsoft.com
Akamai International B.V.
NL
whitelisted
20.73.194.208:443
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
2104
svchost.exe
20.73.194.208:443
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
2112
svchost.exe
20.73.194.208:443
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
3216
svchost.exe
40.115.3.253:443
client.wns.windows.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
6544
svchost.exe
40.126.32.140:443
login.live.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
6544
svchost.exe
184.30.131.245:80
ocsp.digicert.com
AKAMAI-AS
US
whitelisted
4724
backgroundTaskHost.exe
20.223.35.26:443
arc.msn.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted

DNS requests

Domain
IP
Reputation
google.com
  • 172.217.18.14
whitelisted
crl.microsoft.com
  • 2.16.164.106
  • 2.16.164.107
  • 2.16.164.9
  • 2.16.164.40
  • 2.16.164.34
  • 2.16.164.32
  • 2.16.164.51
  • 2.16.164.99
  • 2.16.164.18
whitelisted
client.wns.windows.com
  • 40.115.3.253
  • 40.113.110.67
whitelisted
login.live.com
  • 40.126.32.140
  • 20.190.160.5
  • 40.126.32.138
  • 20.190.160.128
  • 20.190.160.67
  • 20.190.160.17
  • 20.190.160.20
  • 20.190.160.65
whitelisted
ocsp.digicert.com
  • 184.30.131.245
whitelisted
arc.msn.com
  • 20.223.35.26
whitelisted
settings-win.data.microsoft.com
  • 4.231.128.59
whitelisted
slscr.update.microsoft.com
  • 4.245.163.56
whitelisted
www.microsoft.com
  • 23.219.150.101
whitelisted
fe3cr.delivery.mp.microsoft.com
  • 20.3.187.198
whitelisted

Threats

No threats detected
No debug info