File name:

1 (129)

Full analysis: https://app.any.run/tasks/4b742f43-e3d7-4f5d-a779-b6dcd811bcad
Verdict: Malicious activity
Analysis date: March 24, 2025, 13:27:43
OS: Windows 10 Professional (build: 19044, 64 bit)
Indicators:
MIME: application/vnd.microsoft.portable-executable
File info: PE32 executable (GUI) Intel 80386, for MS Windows, 3 sections
MD5:

2F94994EF40D663078FE8B070CE3A650

SHA1:

BE383C86C369CF49B6B45250E72F232D1260CD84

SHA256:

9CD2E03F81271976D4B0A735878F42421AC70CFB4D52999B8C0B19989E119F35

SSDEEP:

6144:ACHQieIVDDFPA5vQU1eWKCfxOtBulp8GBsLWOdOYwk/hSwuwpyAvEhXobMOQkfn/:AeXFzPA54UsdBY+as6OdOYZxxDxmDsR

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    No malicious indicators.
  • SUSPICIOUS

    • Starts itself from another location

      • Unicorn-60370.exe (PID: 1228)
      • 1 (129).exe (PID: 4776)
      • Unicorn-25918.exe (PID: 2148)
      • Unicorn-21362.exe (PID: 1324)
      • Unicorn-61522.exe (PID: 2692)
      • Unicorn-23474.exe (PID: 4220)
      • Unicorn-50313.exe (PID: 3140)
      • Unicorn-51796.exe (PID: 5720)
      • Unicorn-4641.exe (PID: 780)
      • Unicorn-11584.exe (PID: 6028)
      • Unicorn-27101.exe (PID: 6032)
      • Unicorn-35534.exe (PID: 4988)
      • Unicorn-35534.exe (PID: 4736)
      • Unicorn-25319.exe (PID: 2392)
      • Unicorn-56893.exe (PID: 2096)
      • Unicorn-1600.exe (PID: 4068)
      • Unicorn-25550.exe (PID: 2268)
      • Unicorn-37610.exe (PID: 6576)
      • Unicorn-15143.exe (PID: 4464)
      • Unicorn-42248.exe (PID: 5260)
      • Unicorn-46930.exe (PID: 208)
      • Unicorn-46930.exe (PID: 736)
      • Unicorn-46930.exe (PID: 1240)
      • Unicorn-46930.exe (PID: 2616)
      • Unicorn-46930.exe (PID: 6080)
      • Unicorn-6644.exe (PID: 2600)
      • Unicorn-22160.exe (PID: 6264)
      • Unicorn-6644.exe (PID: 1532)
      • Unicorn-19494.exe (PID: 7224)
      • Unicorn-13495.exe (PID: 1272)
      • Unicorn-16295.exe (PID: 5968)
      • Unicorn-48829.exe (PID: 7244)
      • Unicorn-53510.exe (PID: 7260)
      • Unicorn-35128.exe (PID: 7280)
      • Unicorn-24922.exe (PID: 7300)
      • Unicorn-6539.exe (PID: 7316)
      • Unicorn-33.exe (PID: 7332)
      • Unicorn-57402.exe (PID: 7352)
      • Unicorn-48969.exe (PID: 7372)
      • Unicorn-29368.exe (PID: 7380)
      • Unicorn-58170.exe (PID: 7436)
      • Unicorn-50002.exe (PID: 7476)
      • Unicorn-50002.exe (PID: 7468)
      • Unicorn-58170.exe (PID: 7444)
      • Unicorn-17884.exe (PID: 7504)
      • Unicorn-9716.exe (PID: 7532)
      • Unicorn-17884.exe (PID: 7500)
      • Unicorn-5632.exe (PID: 7548)
      • Unicorn-25498.exe (PID: 7556)
      • Unicorn-17330.exe (PID: 7580)
      • Unicorn-5077.exe (PID: 7624)
      • Unicorn-9161.exe (PID: 7616)
      • Unicorn-51848.exe (PID: 7664)
      • Unicorn-38112.exe (PID: 7672)
      • Unicorn-9161.exe (PID: 7600)
      • Unicorn-49545.exe (PID: 7728)
      • Unicorn-9161.exe (PID: 7608)
      • Unicorn-43680.exe (PID: 7712)
      • Unicorn-40880.exe (PID: 7720)
      • Unicorn-24344.exe (PID: 7704)
      • Unicorn-60609.exe (PID: 7804)
      • Unicorn-39058.exe (PID: 7832)
      • Unicorn-39442.exe (PID: 7788)
      • Unicorn-15706.exe (PID: 8020)
      • Unicorn-12507.exe (PID: 7848)
      • Unicorn-27693.exe (PID: 7980)
      • Unicorn-28049.exe (PID: 8072)
      • Unicorn-19790.exe (PID: 8000)
      • Unicorn-48378.exe (PID: 7952)
      • Unicorn-42073.exe (PID: 7928)
      • Unicorn-25249.exe (PID: 8080)
      • Unicorn-27958.exe (PID: 7992)
      • Unicorn-5928.exe (PID: 7920)
      • Unicorn-22530.exe (PID: 7908)
      • Unicorn-14314.exe (PID: 8112)
      • Unicorn-28512.exe (PID: 7944)
      • Unicorn-38866.exe (PID: 7892)
      • Unicorn-61377.exe (PID: 8028)
      • Unicorn-19790.exe (PID: 8008)
      • Unicorn-6748.exe (PID: 7900)
      • Unicorn-24450.exe (PID: 8164)
      • Unicorn-36318.exe (PID: 6712)
      • Unicorn-41532.exe (PID: 8184)
      • Unicorn-49509.exe (PID: 7212)
      • Unicorn-32426.exe (PID: 4200)
      • Unicorn-36318.exe (PID: 672)
      • Unicorn-49317.exe (PID: 4740)
      • Unicorn-49317.exe (PID: 1088)
      • Unicorn-49914.exe (PID: 8224)
      • Unicorn-41746.exe (PID: 8240)
      • Unicorn-39508.exe (PID: 8284)
      • Unicorn-713.exe (PID: 8372)
      • Unicorn-905.exe (PID: 8276)
      • Unicorn-60312.exe (PID: 8268)
      • Unicorn-33386.exe (PID: 8316)
      • Unicorn-32871.exe (PID: 8500)
      • Unicorn-60120.exe (PID: 8364)
      • Unicorn-45638.exe (PID: 8308)
      • Unicorn-29110.exe (PID: 8436)
      • Unicorn-52737.exe (PID: 8516)
      • Unicorn-29664.exe (PID: 8392)
      • Unicorn-10396.exe (PID: 8688)
      • Unicorn-9052.exe (PID: 8564)
      • Unicorn-47484.exe (PID: 8384)
      • Unicorn-20942.exe (PID: 8476)
      • Unicorn-20942.exe (PID: 8468)
      • Unicorn-41170.exe (PID: 8548)
      • Unicorn-50085.exe (PID: 8616)
      • Unicorn-29997.exe (PID: 8680)
      • Unicorn-54766.exe (PID: 8640)
      • Unicorn-54766.exe (PID: 8648)
      • Unicorn-48636.exe (PID: 8632)
      • Unicorn-21828.exe (PID: 8704)
      • Unicorn-50066.exe (PID: 8784)
      • Unicorn-38600.exe (PID: 8792)
      • Unicorn-34922.exe (PID: 8968)
      • Unicorn-33000.exe (PID: 8800)
      • Unicorn-18778.exe (PID: 8932)
      • Unicorn-41044.exe (PID: 8960)
      • Unicorn-4803.exe (PID: 8756)
      • Unicorn-51066.exe (PID: 8992)
      • Unicorn-31008.exe (PID: 9028)
      • Unicorn-48134.exe (PID: 9084)
      • Unicorn-6836.exe (PID: 9100)
      • Unicorn-45550.exe (PID: 9184)
      • Unicorn-45550.exe (PID: 9176)
      • Unicorn-53910.exe (PID: 9036)
      • Unicorn-8601.exe (PID: 9280)
      • Unicorn-29384.exe (PID: 9324)
      • Unicorn-62078.exe (PID: 8840)
      • Unicorn-65208.exe (PID: 9272)
      • Unicorn-12493.exe (PID: 9392)
      • Unicorn-45358.exe (PID: 9224)
      • Unicorn-53526.exe (PID: 9428)
      • Unicorn-16386.exe (PID: 9444)
      • Unicorn-20662.exe (PID: 9372)
      • Unicorn-33468.exe (PID: 9492)
      • Unicorn-8409.exe (PID: 9400)
      • Unicorn-33468.exe (PID: 9496)
      • Unicorn-53889.exe (PID: 9456)
      • Unicorn-13645.exe (PID: 9544)
      • Unicorn-41636.exe (PID: 9476)
      • Unicorn-53069.exe (PID: 9508)
    • Executable content was dropped or overwritten

      • Unicorn-25918.exe (PID: 2148)
      • 1 (129).exe (PID: 4776)
      • Unicorn-21362.exe (PID: 1324)
      • Unicorn-61522.exe (PID: 2692)
      • Unicorn-56893.exe (PID: 2096)
      • Unicorn-50313.exe (PID: 3140)
      • Unicorn-23474.exe (PID: 4220)
      • Unicorn-4641.exe (PID: 780)
      • Unicorn-11584.exe (PID: 6028)
      • Unicorn-25550.exe (PID: 2268)
      • Unicorn-1600.exe (PID: 4068)
      • Unicorn-42248.exe (PID: 5260)
      • Unicorn-37610.exe (PID: 6576)
      • Unicorn-15143.exe (PID: 4464)
      • Unicorn-46930.exe (PID: 736)
      • Unicorn-46930.exe (PID: 1240)
      • Unicorn-25319.exe (PID: 2392)
      • Unicorn-27101.exe (PID: 6032)
      • Unicorn-35534.exe (PID: 4736)
      • Unicorn-46930.exe (PID: 6080)
      • Unicorn-6644.exe (PID: 2600)
      • Unicorn-6644.exe (PID: 1532)
      • Unicorn-16295.exe (PID: 5968)
      • Unicorn-51796.exe (PID: 5720)
      • Unicorn-19494.exe (PID: 7224)
      • Unicorn-48829.exe (PID: 7244)
      • Unicorn-53510.exe (PID: 7260)
      • Unicorn-35128.exe (PID: 7280)
      • Unicorn-24922.exe (PID: 7300)
      • Unicorn-6539.exe (PID: 7316)
      • Unicorn-33.exe (PID: 7332)
      • Unicorn-29368.exe (PID: 7380)
      • Unicorn-58170.exe (PID: 7436)
      • Unicorn-46930.exe (PID: 208)
      • Unicorn-48969.exe (PID: 7372)
      • Unicorn-58170.exe (PID: 7444)
      • Unicorn-46930.exe (PID: 2616)
      • Unicorn-17884.exe (PID: 7500)
      • Unicorn-50002.exe (PID: 7476)
      • Unicorn-9716.exe (PID: 7532)
      • Unicorn-35534.exe (PID: 4988)
      • Unicorn-17884.exe (PID: 7504)
      • Unicorn-17330.exe (PID: 7580)
      • Unicorn-9161.exe (PID: 7600)
      • Unicorn-25498.exe (PID: 7556)
      • Unicorn-5632.exe (PID: 7548)
      • Unicorn-9161.exe (PID: 7616)
      • Unicorn-38112.exe (PID: 7672)
      • Unicorn-9161.exe (PID: 7608)
      • Unicorn-22160.exe (PID: 6264)
      • Unicorn-24344.exe (PID: 7704)
      • Unicorn-49545.exe (PID: 7728)
      • Unicorn-60370.exe (PID: 1228)
      • Unicorn-13495.exe (PID: 1272)
      • Unicorn-60609.exe (PID: 7804)
      • Unicorn-39442.exe (PID: 7788)
      • Unicorn-39058.exe (PID: 7832)
      • Unicorn-15706.exe (PID: 8020)
      • Unicorn-48378.exe (PID: 7952)
      • Unicorn-12507.exe (PID: 7848)
      • Unicorn-42073.exe (PID: 7928)
      • Unicorn-22530.exe (PID: 7908)
      • Unicorn-19790.exe (PID: 8000)
      • Unicorn-28049.exe (PID: 8072)
      • Unicorn-5928.exe (PID: 7920)
      • Unicorn-27958.exe (PID: 7992)
      • Unicorn-25249.exe (PID: 8080)
      • Unicorn-14314.exe (PID: 8112)
      • Unicorn-28512.exe (PID: 7944)
      • Unicorn-38866.exe (PID: 7892)
      • Unicorn-61377.exe (PID: 8028)
      • Unicorn-19790.exe (PID: 8008)
      • Unicorn-6748.exe (PID: 7900)
      • Unicorn-24450.exe (PID: 8164)
      • Unicorn-36318.exe (PID: 6712)
      • Unicorn-32426.exe (PID: 4200)
      • Unicorn-49509.exe (PID: 7212)
      • Unicorn-41532.exe (PID: 8184)
      • Unicorn-49317.exe (PID: 4740)
      • Unicorn-49914.exe (PID: 8224)
      • Unicorn-49317.exe (PID: 1088)
      • Unicorn-36318.exe (PID: 672)
      • Unicorn-50002.exe (PID: 7468)
      • Unicorn-41746.exe (PID: 8240)
      • Unicorn-713.exe (PID: 8372)
      • Unicorn-45638.exe (PID: 8308)
      • Unicorn-60312.exe (PID: 8268)
      • Unicorn-39508.exe (PID: 8284)
      • Unicorn-905.exe (PID: 8276)
      • Unicorn-32871.exe (PID: 8500)
      • Unicorn-29664.exe (PID: 8392)
      • Unicorn-33386.exe (PID: 8316)
      • Unicorn-29110.exe (PID: 8436)
      • Unicorn-52737.exe (PID: 8516)
      • Unicorn-47484.exe (PID: 8384)
      • Unicorn-10396.exe (PID: 8688)
      • Unicorn-9052.exe (PID: 8564)
      • Unicorn-20942.exe (PID: 8476)
      • Unicorn-52737.exe (PID: 8508)
      • Unicorn-41170.exe (PID: 8548)
      • Unicorn-54766.exe (PID: 8648)
      • Unicorn-20942.exe (PID: 8468)
      • Unicorn-29997.exe (PID: 8680)
      • Unicorn-54766.exe (PID: 8640)
      • Unicorn-5077.exe (PID: 7624)
      • Unicorn-50085.exe (PID: 8616)
      • Unicorn-51848.exe (PID: 7664)
      • Unicorn-48636.exe (PID: 8632)
      • Unicorn-21828.exe (PID: 8704)
      • Unicorn-50066.exe (PID: 8784)
      • Unicorn-4803.exe (PID: 8756)
      • Unicorn-34922.exe (PID: 8968)
      • Unicorn-38600.exe (PID: 8792)
      • Unicorn-33000.exe (PID: 8800)
      • Unicorn-18778.exe (PID: 8932)
      • Unicorn-51066.exe (PID: 8992)
      • Unicorn-27693.exe (PID: 7980)
      • Unicorn-31008.exe (PID: 9028)
      • Unicorn-27116.exe (PID: 9000)
      • Unicorn-6836.exe (PID: 9100)
      • Unicorn-48134.exe (PID: 9084)
      • Unicorn-45550.exe (PID: 9184)
      • Unicorn-8793.exe (PID: 3956)
      • Unicorn-53910.exe (PID: 9036)
      • Unicorn-62078.exe (PID: 8840)
      • Unicorn-65208.exe (PID: 9272)
      • Unicorn-12493.exe (PID: 9392)
      • Unicorn-16386.exe (PID: 9444)
      • Unicorn-8601.exe (PID: 9280)
      • Unicorn-29384.exe (PID: 9324)
      • Unicorn-53526.exe (PID: 9428)
      • Unicorn-8409.exe (PID: 9400)
      • Unicorn-33468.exe (PID: 9496)
      • Unicorn-20662.exe (PID: 9372)
      • Unicorn-53889.exe (PID: 9456)
      • Unicorn-60120.exe (PID: 8364)
      • Unicorn-53069.exe (PID: 9508)
      • Unicorn-41636.exe (PID: 9476)
      • Unicorn-13645.exe (PID: 9544)
      • Unicorn-29790.exe (PID: 9564)
      • Unicorn-20468.exe (PID: 9600)
      • Unicorn-41850.exe (PID: 9608)
      • Unicorn-43680.exe (PID: 7712)
      • Unicorn-40880.exe (PID: 7720)
      • Unicorn-13261.exe (PID: 9648)
      • Unicorn-34620.exe (PID: 9592)
      • Unicorn-45556.exe (PID: 9584)
      • Unicorn-17708.exe (PID: 9688)
      • Unicorn-32787.exe (PID: 9736)
      • Unicorn-2855.exe (PID: 9704)
      • Unicorn-2716.exe (PID: 9752)
      • Unicorn-57402.exe (PID: 7352)
      • Unicorn-45550.exe (PID: 9176)
      • Unicorn-44538.exe (PID: 9864)
      • Unicorn-43696.exe (PID: 9668)
      • Unicorn-56140.exe (PID: 9720)
      • Unicorn-36540.exe (PID: 9968)
      • Unicorn-4465.exe (PID: 10008)
      • Unicorn-56406.exe (PID: 9976)
      • Unicorn-40070.exe (PID: 9928)
      • Unicorn-51620.exe (PID: 10016)
      • Unicorn-20418.exe (PID: 10112)
      • Unicorn-35476.exe (PID: 8220)
      • Unicorn-22534.exe (PID: 9896)
      • Unicorn-23926.exe (PID: 9904)
      • Unicorn-26016.exe (PID: 9048)
      • Unicorn-8720.exe (PID: 10096)
      • Unicorn-26347.exe (PID: 10164)
      • Unicorn-12057.exe (PID: 10196)
      • Unicorn-62602.exe (PID: 8872)
      • Unicorn-38268.exe (PID: 5576)
      • Unicorn-41044.exe (PID: 8960)
      • Unicorn-62227.exe (PID: 10184)
      • Unicorn-30506.exe (PID: 10252)
      • Unicorn-37330.exe (PID: 1188)
      • Unicorn-48705.exe (PID: 728)
      • Unicorn-46842.exe (PID: 5936)
      • Unicorn-14724.exe (PID: 10244)
      • Unicorn-50049.exe (PID: 10280)
      • Unicorn-45358.exe (PID: 9224)
      • Unicorn-41606.exe (PID: 8356)
      • Unicorn-53282.exe (PID: 10032)
      • Unicorn-1725.exe (PID: 10408)
      • Unicorn-25773.exe (PID: 10488)
      • Unicorn-5809.exe (PID: 10380)
      • Unicorn-13593.exe (PID: 10604)
      • Unicorn-52309.exe (PID: 10644)
      • Unicorn-45389.exe (PID: 10624)
      • Unicorn-9628.exe (PID: 10372)
      • Unicorn-46266.exe (PID: 10576)
      • Unicorn-46458.exe (PID: 10420)
      • Unicorn-26400.exe (PID: 10568)
      • Unicorn-35418.exe (PID: 10704)
      • Unicorn-59922.exe (PID: 10660)
      • Unicorn-6172.exe (PID: 10480)
      • Unicorn-33468.exe (PID: 9492)
      • Unicorn-46458.exe (PID: 10428)
      • Unicorn-54434.exe (PID: 10552)
      • Unicorn-6253.exe (PID: 10752)
      • Unicorn-5988.exe (PID: 10744)
      • Unicorn-14805.exe (PID: 10732)
      • Unicorn-65521.exe (PID: 10904)
      • Unicorn-41156.exe (PID: 10800)
      • Unicorn-18698.exe (PID: 10836)
      • Unicorn-41156.exe (PID: 10792)
      • Unicorn-61437.exe (PID: 10920)
      • Unicorn-51925.exe (PID: 10772)
      • Unicorn-23144.exe (PID: 10856)
      • Unicorn-51261.exe (PID: 10936)
      • Unicorn-40632.exe (PID: 10944)
      • Unicorn-9443.exe (PID: 11068)
      • Unicorn-61437.exe (PID: 10952)
      • Unicorn-61245.exe (PID: 11076)
      • Unicorn-55268.exe (PID: 11236)
      • Unicorn-15500.exe (PID: 10912)
      • Unicorn-60690.exe (PID: 10876)
      • Unicorn-3876.exe (PID: 11048)
      • Unicorn-61458.exe (PID: 10468)
      • Unicorn-24104.exe (PID: 11176)
      • Unicorn-37840.exe (PID: 11152)
    • Executes application which crashes

      • Unicorn-28918.exe (PID: 8580)
      • Unicorn-28918.exe (PID: 8572)
  • INFO

    • The sample compiled with chinese language support

      • 1 (129).exe (PID: 4776)
      • Unicorn-60370.exe (PID: 1228)
      • Unicorn-25918.exe (PID: 2148)
      • Unicorn-61522.exe (PID: 2692)
      • Unicorn-21362.exe (PID: 1324)
      • Unicorn-23474.exe (PID: 4220)
      • Unicorn-50313.exe (PID: 3140)
      • Unicorn-11584.exe (PID: 6028)
      • Unicorn-4641.exe (PID: 780)
      • Unicorn-56893.exe (PID: 2096)
      • Unicorn-25550.exe (PID: 2268)
      • Unicorn-1600.exe (PID: 4068)
      • Unicorn-42248.exe (PID: 5260)
      • Unicorn-37610.exe (PID: 6576)
      • Unicorn-15143.exe (PID: 4464)
      • Unicorn-46930.exe (PID: 736)
      • Unicorn-46930.exe (PID: 1240)
      • Unicorn-25319.exe (PID: 2392)
      • Unicorn-27101.exe (PID: 6032)
      • Unicorn-35534.exe (PID: 4736)
      • Unicorn-46930.exe (PID: 6080)
      • Unicorn-6644.exe (PID: 2600)
      • Unicorn-16295.exe (PID: 5968)
      • Unicorn-6644.exe (PID: 1532)
      • Unicorn-51796.exe (PID: 5720)
      • Unicorn-19494.exe (PID: 7224)
      • Unicorn-48829.exe (PID: 7244)
      • Unicorn-53510.exe (PID: 7260)
      • Unicorn-35128.exe (PID: 7280)
      • Unicorn-24922.exe (PID: 7300)
      • Unicorn-6539.exe (PID: 7316)
      • Unicorn-29368.exe (PID: 7380)
      • Unicorn-33.exe (PID: 7332)
      • Unicorn-48969.exe (PID: 7372)
      • Unicorn-58170.exe (PID: 7436)
      • Unicorn-58170.exe (PID: 7444)
      • Unicorn-46930.exe (PID: 208)
      • Unicorn-50002.exe (PID: 7476)
      • Unicorn-46930.exe (PID: 2616)
      • Unicorn-9716.exe (PID: 7532)
      • Unicorn-35534.exe (PID: 4988)
      • Unicorn-17884.exe (PID: 7500)
      • Unicorn-17884.exe (PID: 7504)
      • Unicorn-25498.exe (PID: 7556)
      • Unicorn-5632.exe (PID: 7548)
      • Unicorn-17330.exe (PID: 7580)
      • Unicorn-9161.exe (PID: 7600)
      • Unicorn-9161.exe (PID: 7616)
      • Unicorn-38112.exe (PID: 7672)
      • Unicorn-49545.exe (PID: 7728)
      • Unicorn-9161.exe (PID: 7608)
      • Unicorn-22160.exe (PID: 6264)
      • Unicorn-24344.exe (PID: 7704)
      • Unicorn-13495.exe (PID: 1272)
      • Unicorn-60609.exe (PID: 7804)
      • Unicorn-39058.exe (PID: 7832)
      • Unicorn-39442.exe (PID: 7788)
      • Unicorn-12507.exe (PID: 7848)
      • Unicorn-15706.exe (PID: 8020)
      • Unicorn-42073.exe (PID: 7928)
      • Unicorn-19790.exe (PID: 8000)
      • Unicorn-48378.exe (PID: 7952)
      • Unicorn-28049.exe (PID: 8072)
      • Unicorn-25249.exe (PID: 8080)
      • Unicorn-27958.exe (PID: 7992)
      • Unicorn-5928.exe (PID: 7920)
      • Unicorn-22530.exe (PID: 7908)
      • Unicorn-14314.exe (PID: 8112)
      • Unicorn-28512.exe (PID: 7944)
      • Unicorn-38866.exe (PID: 7892)
      • Unicorn-61377.exe (PID: 8028)
      • Unicorn-19790.exe (PID: 8008)
      • Unicorn-6748.exe (PID: 7900)
      • Unicorn-24450.exe (PID: 8164)
      • Unicorn-36318.exe (PID: 6712)
      • Unicorn-32426.exe (PID: 4200)
      • Unicorn-49509.exe (PID: 7212)
      • Unicorn-41532.exe (PID: 8184)
      • Unicorn-36318.exe (PID: 672)
      • Unicorn-49317.exe (PID: 4740)
      • Unicorn-49317.exe (PID: 1088)
      • Unicorn-49914.exe (PID: 8224)
      • Unicorn-41746.exe (PID: 8240)
      • Unicorn-50002.exe (PID: 7468)
      • Unicorn-39508.exe (PID: 8284)
      • Unicorn-905.exe (PID: 8276)
      • Unicorn-713.exe (PID: 8372)
      • Unicorn-60312.exe (PID: 8268)
      • Unicorn-33386.exe (PID: 8316)
      • Unicorn-32871.exe (PID: 8500)
      • Unicorn-29664.exe (PID: 8392)
      • Unicorn-45638.exe (PID: 8308)
      • Unicorn-29110.exe (PID: 8436)
      • Unicorn-52737.exe (PID: 8516)
      • Unicorn-20942.exe (PID: 8476)
      • Unicorn-10396.exe (PID: 8688)
      • Unicorn-9052.exe (PID: 8564)
      • Unicorn-47484.exe (PID: 8384)
      • Unicorn-52737.exe (PID: 8508)
      • Unicorn-41170.exe (PID: 8548)
      • Unicorn-54766.exe (PID: 8648)
      • Unicorn-20942.exe (PID: 8468)
      • Unicorn-50085.exe (PID: 8616)
      • Unicorn-51848.exe (PID: 7664)
      • Unicorn-29997.exe (PID: 8680)
      • Unicorn-54766.exe (PID: 8640)
      • Unicorn-5077.exe (PID: 7624)
      • Unicorn-48636.exe (PID: 8632)
      • Unicorn-21828.exe (PID: 8704)
      • Unicorn-50066.exe (PID: 8784)
      • Unicorn-38600.exe (PID: 8792)
      • Unicorn-33000.exe (PID: 8800)
      • Unicorn-34922.exe (PID: 8968)
      • Unicorn-18778.exe (PID: 8932)
      • Unicorn-4803.exe (PID: 8756)
      • Unicorn-27693.exe (PID: 7980)
      • Unicorn-31008.exe (PID: 9028)
      • Unicorn-27116.exe (PID: 9000)
      • Unicorn-51066.exe (PID: 8992)
      • Unicorn-6836.exe (PID: 9100)
      • Unicorn-48134.exe (PID: 9084)
      • Unicorn-45550.exe (PID: 9184)
      • Unicorn-8793.exe (PID: 3956)
      • Unicorn-53910.exe (PID: 9036)
      • Unicorn-29384.exe (PID: 9324)
      • Unicorn-8601.exe (PID: 9280)
      • Unicorn-62078.exe (PID: 8840)
      • Unicorn-65208.exe (PID: 9272)
      • Unicorn-12493.exe (PID: 9392)
      • Unicorn-53526.exe (PID: 9428)
      • Unicorn-16386.exe (PID: 9444)
      • Unicorn-20662.exe (PID: 9372)
      • Unicorn-8409.exe (PID: 9400)
      • Unicorn-33468.exe (PID: 9496)
      • Unicorn-41636.exe (PID: 9476)
      • Unicorn-13645.exe (PID: 9544)
      • Unicorn-60120.exe (PID: 8364)
      • Unicorn-53069.exe (PID: 9508)
      • Unicorn-53889.exe (PID: 9456)
      • Unicorn-29790.exe (PID: 9564)
      • Unicorn-45556.exe (PID: 9584)
      • Unicorn-43680.exe (PID: 7712)
      • Unicorn-41850.exe (PID: 9608)
      • Unicorn-40880.exe (PID: 7720)
      • Unicorn-13261.exe (PID: 9648)
      • Unicorn-20468.exe (PID: 9600)
      • Unicorn-2855.exe (PID: 9704)
      • Unicorn-17708.exe (PID: 9688)
      • Unicorn-32787.exe (PID: 9736)
      • Unicorn-45550.exe (PID: 9176)
      • Unicorn-2716.exe (PID: 9752)
      • Unicorn-57402.exe (PID: 7352)
      • Unicorn-34620.exe (PID: 9592)
      • Unicorn-43696.exe (PID: 9668)
      • Unicorn-56140.exe (PID: 9720)
      • Unicorn-51620.exe (PID: 10016)
      • Unicorn-4465.exe (PID: 10008)
      • Unicorn-40070.exe (PID: 9928)
      • Unicorn-56406.exe (PID: 9976)
      • Unicorn-20418.exe (PID: 10112)
      • Unicorn-44538.exe (PID: 9864)
      • Unicorn-22534.exe (PID: 9896)
      • Unicorn-36540.exe (PID: 9968)
      • Unicorn-23926.exe (PID: 9904)
      • Unicorn-26347.exe (PID: 10164)
      • Unicorn-8720.exe (PID: 10096)
      • Unicorn-62602.exe (PID: 8872)
      • Unicorn-12057.exe (PID: 10196)
      • Unicorn-38268.exe (PID: 5576)
      • Unicorn-35476.exe (PID: 8220)
      • Unicorn-62227.exe (PID: 10184)
      • Unicorn-26016.exe (PID: 9048)
      • Unicorn-53282.exe (PID: 10032)
      • Unicorn-37330.exe (PID: 1188)
      • Unicorn-48705.exe (PID: 728)
      • Unicorn-46842.exe (PID: 5936)
      • Unicorn-14724.exe (PID: 10244)
      • Unicorn-30506.exe (PID: 10252)
      • Unicorn-50049.exe (PID: 10280)
      • Unicorn-41044.exe (PID: 8960)
      • Unicorn-41606.exe (PID: 8356)
      • Unicorn-1725.exe (PID: 10408)
      • Unicorn-25773.exe (PID: 10488)
      • Unicorn-5809.exe (PID: 10380)
      • Unicorn-13593.exe (PID: 10604)
      • Unicorn-46266.exe (PID: 10576)
      • Unicorn-52309.exe (PID: 10644)
      • Unicorn-45389.exe (PID: 10624)
      • Unicorn-45358.exe (PID: 9224)
      • Unicorn-9628.exe (PID: 10372)
      • Unicorn-54434.exe (PID: 10552)
      • Unicorn-46458.exe (PID: 10420)
      • Unicorn-26400.exe (PID: 10568)
      • Unicorn-35418.exe (PID: 10704)
      • Unicorn-59922.exe (PID: 10660)
      • Unicorn-6172.exe (PID: 10480)
      • Unicorn-6253.exe (PID: 10752)
      • Unicorn-46458.exe (PID: 10428)
      • Unicorn-5988.exe (PID: 10744)
      • Unicorn-14805.exe (PID: 10732)
      • Unicorn-18698.exe (PID: 10836)
      • Unicorn-23144.exe (PID: 10856)
      • Unicorn-41156.exe (PID: 10792)
      • Unicorn-65521.exe (PID: 10904)
      • Unicorn-61437.exe (PID: 10920)
      • Unicorn-33468.exe (PID: 9492)
      • Unicorn-51925.exe (PID: 10772)
      • Unicorn-41156.exe (PID: 10800)
      • Unicorn-15500.exe (PID: 10912)
      • Unicorn-51261.exe (PID: 10936)
      • Unicorn-60690.exe (PID: 10876)
      • Unicorn-40632.exe (PID: 10944)
      • Unicorn-61437.exe (PID: 10952)
      • Unicorn-9443.exe (PID: 11068)
      • Unicorn-3876.exe (PID: 11048)
      • Unicorn-61245.exe (PID: 11076)
      • Unicorn-55268.exe (PID: 11236)
      • Unicorn-24104.exe (PID: 11176)
      • Unicorn-61458.exe (PID: 10468)
      • Unicorn-37840.exe (PID: 11152)
    • Checks supported languages

      • Unicorn-60370.exe (PID: 1228)
      • 1 (129).exe (PID: 4776)
      • Unicorn-61522.exe (PID: 2692)
      • Unicorn-25918.exe (PID: 2148)
      • Unicorn-21362.exe (PID: 1324)
      • Unicorn-4641.exe (PID: 780)
      • Unicorn-51796.exe (PID: 5720)
      • Unicorn-50313.exe (PID: 3140)
      • Unicorn-25550.exe (PID: 2268)
      • Unicorn-35534.exe (PID: 4736)
      • Unicorn-37610.exe (PID: 6576)
      • Unicorn-46930.exe (PID: 208)
      • Unicorn-46930.exe (PID: 736)
      • Unicorn-46930.exe (PID: 6080)
      • Unicorn-6644.exe (PID: 2600)
      • Unicorn-13495.exe (PID: 1272)
      • Unicorn-57402.exe (PID: 7352)
      • Unicorn-50002.exe (PID: 7476)
      • Unicorn-50002.exe (PID: 7468)
      • Unicorn-17884.exe (PID: 7500)
      • Unicorn-5632.exe (PID: 7548)
      • Unicorn-9161.exe (PID: 7616)
      • Unicorn-5077.exe (PID: 7624)
      • Unicorn-38112.exe (PID: 7672)
      • Unicorn-43680.exe (PID: 7712)
      • Unicorn-24344.exe (PID: 7704)
      • Unicorn-49545.exe (PID: 7728)
      • Unicorn-60609.exe (PID: 7804)
      • Unicorn-39442.exe (PID: 7788)
      • Unicorn-38866.exe (PID: 7892)
      • Unicorn-22530.exe (PID: 7908)
      • Unicorn-19790.exe (PID: 8008)
      • Unicorn-19790.exe (PID: 8000)
      • Unicorn-61377.exe (PID: 8028)
      • Unicorn-24450.exe (PID: 8164)
      • Unicorn-36318.exe (PID: 6712)
      • Unicorn-49317.exe (PID: 1088)
      • Unicorn-32426.exe (PID: 4200)
      • Unicorn-36318.exe (PID: 672)
      • Unicorn-905.exe (PID: 8276)
      • Unicorn-49914.exe (PID: 8224)
      • Unicorn-45638.exe (PID: 8308)
      • Unicorn-33386.exe (PID: 8316)
      • Unicorn-20942.exe (PID: 8468)
      • Unicorn-20942.exe (PID: 8476)
      • Unicorn-32871.exe (PID: 8500)
      • Unicorn-29664.exe (PID: 8392)
      • Unicorn-60120.exe (PID: 8364)
      • Unicorn-41170.exe (PID: 8548)
      • Unicorn-28918.exe (PID: 8572)
      • Unicorn-28918.exe (PID: 8580)
      • Unicorn-52737.exe (PID: 8508)
      • Unicorn-54766.exe (PID: 8648)
      • Unicorn-50066.exe (PID: 8784)
      • Unicorn-29997.exe (PID: 8680)
      • Unicorn-21828.exe (PID: 8704)
      • Unicorn-4803.exe (PID: 8756)
      • Unicorn-33000.exe (PID: 8800)
      • Unicorn-38600.exe (PID: 8792)
      • Unicorn-41044.exe (PID: 8960)
      • Unicorn-18778.exe (PID: 8932)
      • Unicorn-45550.exe (PID: 9184)
      • Unicorn-31008.exe (PID: 9028)
      • Unicorn-6836.exe (PID: 9100)
      • Unicorn-45358.exe (PID: 9224)
      • Unicorn-8793.exe (PID: 3956)
      • Unicorn-20662.exe (PID: 9372)
      • Unicorn-12493.exe (PID: 9392)
      • Unicorn-65208.exe (PID: 9272)
      • Unicorn-53526.exe (PID: 9428)
      • Unicorn-53889.exe (PID: 9456)
      • Unicorn-33468.exe (PID: 9492)
      • Unicorn-33468.exe (PID: 9496)
      • Unicorn-13645.exe (PID: 9544)
      • Unicorn-8409.exe (PID: 9400)
      • Unicorn-29790.exe (PID: 9564)
      • Unicorn-34620.exe (PID: 9592)
      • Unicorn-41850.exe (PID: 9608)
      • Unicorn-20468.exe (PID: 9600)
      • Unicorn-17708.exe (PID: 9688)
      • Unicorn-45556.exe (PID: 9584)
      • Unicorn-2716.exe (PID: 9752)
      • Unicorn-22534.exe (PID: 9896)
      • Unicorn-2855.exe (PID: 9704)
      • Unicorn-36540.exe (PID: 9968)
      • Unicorn-40070.exe (PID: 9928)
      • Unicorn-4465.exe (PID: 10008)
      • Unicorn-51620.exe (PID: 10016)
      • Unicorn-53282.exe (PID: 10032)
      • Unicorn-12057.exe (PID: 10196)
      • Unicorn-26347.exe (PID: 10164)
      • Unicorn-62227.exe (PID: 10184)
      • Unicorn-62602.exe (PID: 8872)
      • Unicorn-26016.exe (PID: 9048)
      • Unicorn-35476.exe (PID: 8220)
      • Unicorn-41606.exe (PID: 8356)
      • Unicorn-38268.exe (PID: 5576)
      • Unicorn-48705.exe (PID: 728)
      • Unicorn-9628.exe (PID: 10372)
      • Unicorn-5809.exe (PID: 10380)
      • Unicorn-14724.exe (PID: 10244)
      • Unicorn-46266.exe (PID: 10576)
      • Unicorn-26400.exe (PID: 10568)
      • Unicorn-1725.exe (PID: 10408)
      • Unicorn-46458.exe (PID: 10420)
      • Unicorn-13593.exe (PID: 10604)
      • Unicorn-45389.exe (PID: 10624)
      • Unicorn-59922.exe (PID: 10660)
      • Unicorn-35418.exe (PID: 10704)
      • Unicorn-6253.exe (PID: 10752)
      • Unicorn-5988.exe (PID: 10744)
      • Unicorn-23144.exe (PID: 10856)
      • Unicorn-61437.exe (PID: 10952)
      • Unicorn-65521.exe (PID: 10904)
      • Unicorn-61245.exe (PID: 11076)
      • Unicorn-26739.exe (PID: 10892)
      • Unicorn-40197.exe (PID: 11272)
      • Unicorn-36762.exe (PID: 10540)
      • Unicorn-61458.exe (PID: 10468)
      • Unicorn-2939.exe (PID: 10692)
      • Unicorn-27507.exe (PID: 11376)
      • Unicorn-12833.exe (PID: 11400)
      • Unicorn-47736.exe (PID: 11424)
      • Unicorn-41806.exe (PID: 11368)
      • Unicorn-2309.exe (PID: 11684)
      • Unicorn-51681.exe (PID: 11764)
      • Unicorn-59294.exe (PID: 11796)
      • Unicorn-51489.exe (PID: 11860)
      • Unicorn-51489.exe (PID: 11868)
      • Unicorn-5817.exe (PID: 11872)
      • Unicorn-52641.exe (PID: 12048)
      • Unicorn-8815.exe (PID: 12112)
      • Unicorn-14945.exe (PID: 12104)
      • Unicorn-33180.exe (PID: 12260)
      • Unicorn-44646.exe (PID: 12268)
      • Unicorn-15500.exe (PID: 12236)
      • Unicorn-48505.exe (PID: 5588)
      • Unicorn-35152.exe (PID: 11912)
      • Unicorn-52086.exe (PID: 12072)
      • Unicorn-30195.exe (PID: 12348)
      • Unicorn-54717.exe (PID: 12668)
      • Unicorn-14089.exe (PID: 12792)
      • Unicorn-64649.exe (PID: 12300)
      • Unicorn-44001.exe (PID: 13060)
      • Unicorn-50389.exe (PID: 12808)
      • Unicorn-16010.exe (PID: 13276)
      • Unicorn-3373.exe (PID: 13304)
      • Unicorn-16180.exe (PID: 13380)
      • Unicorn-19710.exe (PID: 13416)
      • Unicorn-36408.exe (PID: 13452)
      • Unicorn-64832.exe (PID: 13588)
      • Unicorn-23986.exe (PID: 5232)
    • Reads the computer name

      • Unicorn-60370.exe (PID: 1228)
      • Unicorn-25918.exe (PID: 2148)
      • 1 (129).exe (PID: 4776)
      • Unicorn-61522.exe (PID: 2692)
      • Unicorn-21362.exe (PID: 1324)
      • Unicorn-50313.exe (PID: 3140)
      • Unicorn-4641.exe (PID: 780)
      • Unicorn-51796.exe (PID: 5720)
      • Unicorn-56893.exe (PID: 2096)
      • Unicorn-25319.exe (PID: 2392)
      • Unicorn-11584.exe (PID: 6028)
      • Unicorn-27101.exe (PID: 6032)
      • Unicorn-1600.exe (PID: 4068)
      • Unicorn-15143.exe (PID: 4464)
      • Unicorn-42248.exe (PID: 5260)
      • Unicorn-22160.exe (PID: 6264)
      • Unicorn-46930.exe (PID: 1240)
      • Unicorn-6644.exe (PID: 1532)
      • Unicorn-13495.exe (PID: 1272)
      • Unicorn-19494.exe (PID: 7224)
      • Unicorn-48829.exe (PID: 7244)
      • Unicorn-53510.exe (PID: 7260)
      • Unicorn-33.exe (PID: 7332)
      • Unicorn-29368.exe (PID: 7380)
      • Unicorn-17884.exe (PID: 7500)
      • Unicorn-58170.exe (PID: 7436)
      • Unicorn-50002.exe (PID: 7468)
      • Unicorn-25498.exe (PID: 7556)
      • Unicorn-9161.exe (PID: 7616)
      • Unicorn-38112.exe (PID: 7672)
      • Unicorn-49545.exe (PID: 7728)
      • Unicorn-5077.exe (PID: 7624)
      • Unicorn-60609.exe (PID: 7804)
      • Unicorn-27693.exe (PID: 7980)
      • Unicorn-22530.exe (PID: 7908)
      • Unicorn-5928.exe (PID: 7920)
      • Unicorn-27958.exe (PID: 7992)
      • Unicorn-25249.exe (PID: 8080)
      • Unicorn-28049.exe (PID: 8072)
      • Unicorn-38866.exe (PID: 7892)
      • Unicorn-14314.exe (PID: 8112)
      • Unicorn-61377.exe (PID: 8028)
      • Unicorn-19790.exe (PID: 8008)
      • Unicorn-36318.exe (PID: 6712)
      • Unicorn-41532.exe (PID: 8184)
      • Unicorn-49509.exe (PID: 7212)
      • Unicorn-49317.exe (PID: 1088)
      • Unicorn-60312.exe (PID: 8268)
      • Unicorn-905.exe (PID: 8276)
      • Unicorn-39508.exe (PID: 8284)
      • Unicorn-45638.exe (PID: 8308)
      • Unicorn-49317.exe (PID: 4740)
      • Unicorn-32871.exe (PID: 8500)
      • Unicorn-29664.exe (PID: 8392)
      • Unicorn-60120.exe (PID: 8364)
      • Unicorn-20942.exe (PID: 8476)
      • Unicorn-20942.exe (PID: 8468)
      • Unicorn-41170.exe (PID: 8548)
      • Unicorn-54766.exe (PID: 8648)
      • Unicorn-29997.exe (PID: 8680)
      • Unicorn-4803.exe (PID: 8756)
      • Unicorn-45550.exe (PID: 9184)
      • Unicorn-33468.exe (PID: 9492)
      • Unicorn-29384.exe (PID: 9324)
      • Unicorn-53069.exe (PID: 9508)
      • Unicorn-13261.exe (PID: 9648)
    • Create files in a temporary directory

      • Unicorn-60370.exe (PID: 1228)
      • Unicorn-25918.exe (PID: 2148)
      • Unicorn-61522.exe (PID: 2692)
      • Unicorn-21362.exe (PID: 1324)
      • Unicorn-50313.exe (PID: 3140)
      • Unicorn-11584.exe (PID: 6028)
      • 1 (129).exe (PID: 4776)
      • Unicorn-25550.exe (PID: 2268)
      • Unicorn-42248.exe (PID: 5260)
      • Unicorn-37610.exe (PID: 6576)
      • Unicorn-56893.exe (PID: 2096)
      • Unicorn-46930.exe (PID: 736)
      • Unicorn-35534.exe (PID: 4736)
      • Unicorn-46930.exe (PID: 6080)
      • Unicorn-6644.exe (PID: 2600)
      • Unicorn-16295.exe (PID: 5968)
      • Unicorn-51796.exe (PID: 5720)
      • Unicorn-48829.exe (PID: 7244)
      • Unicorn-53510.exe (PID: 7260)
      • Unicorn-1600.exe (PID: 4068)
      • Unicorn-35128.exe (PID: 7280)
      • Unicorn-23474.exe (PID: 4220)
      • Unicorn-24922.exe (PID: 7300)
      • Unicorn-6539.exe (PID: 7316)
      • Unicorn-33.exe (PID: 7332)
      • Unicorn-46930.exe (PID: 208)
      • Unicorn-58170.exe (PID: 7444)
      • Unicorn-50002.exe (PID: 7468)
      • Unicorn-46930.exe (PID: 2616)
      • Unicorn-17884.exe (PID: 7500)
      • Unicorn-25319.exe (PID: 2392)
      • Unicorn-35534.exe (PID: 4988)
      • Unicorn-5632.exe (PID: 7548)
      • Unicorn-25498.exe (PID: 7556)
      • Unicorn-17884.exe (PID: 7504)
      • Unicorn-27101.exe (PID: 6032)
      • Unicorn-9161.exe (PID: 7600)
      • Unicorn-38112.exe (PID: 7672)
      • Unicorn-9161.exe (PID: 7616)
      • Unicorn-24344.exe (PID: 7704)
      • Unicorn-49545.exe (PID: 7728)
      • Unicorn-22160.exe (PID: 6264)
      • Unicorn-13495.exe (PID: 1272)
      • Unicorn-4641.exe (PID: 780)
      • Unicorn-6644.exe (PID: 1532)
      • Unicorn-39058.exe (PID: 7832)
      • Unicorn-19494.exe (PID: 7224)
      • Unicorn-12507.exe (PID: 7848)
      • Unicorn-42073.exe (PID: 7928)
      • Unicorn-22530.exe (PID: 7908)
      • Unicorn-28049.exe (PID: 8072)
      • Unicorn-48969.exe (PID: 7372)
      • Unicorn-25249.exe (PID: 8080)
      • Unicorn-27958.exe (PID: 7992)
      • Unicorn-38866.exe (PID: 7892)
      • Unicorn-14314.exe (PID: 8112)
      • Unicorn-28512.exe (PID: 7944)
      • Unicorn-15143.exe (PID: 4464)
      • Unicorn-19790.exe (PID: 8008)
      • Unicorn-29368.exe (PID: 7380)
      • Unicorn-32426.exe (PID: 4200)
      • Unicorn-49509.exe (PID: 7212)
      • Unicorn-49317.exe (PID: 1088)
      • Unicorn-41532.exe (PID: 8184)
      • Unicorn-36318.exe (PID: 672)
      • Unicorn-49317.exe (PID: 4740)
      • Unicorn-49914.exe (PID: 8224)
      • Unicorn-41746.exe (PID: 8240)
      • Unicorn-60312.exe (PID: 8268)
      • Unicorn-46930.exe (PID: 1240)
      • Unicorn-905.exe (PID: 8276)
      • Unicorn-713.exe (PID: 8372)
      • Unicorn-33386.exe (PID: 8316)
      • Unicorn-29664.exe (PID: 8392)
      • Unicorn-17330.exe (PID: 7580)
      • Unicorn-52737.exe (PID: 8516)
      • Unicorn-10396.exe (PID: 8688)
      • Unicorn-20942.exe (PID: 8476)
      • Unicorn-20942.exe (PID: 8468)
      • Unicorn-52737.exe (PID: 8508)
      • Unicorn-54766.exe (PID: 8648)
      • Unicorn-54766.exe (PID: 8640)
      • Unicorn-60609.exe (PID: 7804)
      • Unicorn-4803.exe (PID: 8756)
      • Unicorn-15706.exe (PID: 8020)
      • Unicorn-31008.exe (PID: 9028)
      • Unicorn-27116.exe (PID: 9000)
      • Unicorn-61377.exe (PID: 8028)
      • Unicorn-5928.exe (PID: 7920)
      • Unicorn-48134.exe (PID: 9084)
      • Unicorn-45550.exe (PID: 9184)
      • Unicorn-36318.exe (PID: 6712)
      • Unicorn-50002.exe (PID: 7476)
      • Unicorn-33468.exe (PID: 9496)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | Win32 Executable (generic) (52.9)
.exe | Generic Win/DOS Executable (23.5)
.exe | DOS Executable Generic (23.5)

EXIF

EXE

MachineType: Intel 386 or later, and compatibles
TimeStamp: 2019:01:19 13:34:56+00:00
ImageFileCharacteristics: No relocs, Executable, No line numbers, No symbols, 32-bit
PEType: PE32
LinkerVersion: 6
CodeSize: 176128
InitializedDataSize: 299008
UninitializedDataSize: -
EntryPoint: 0x13d4
OSVersion: 4
ImageVersion: 1
SubsystemVersion: 4
Subsystem: Windows GUI
FileVersionNumber: 1.0.0.0
ProductVersionNumber: 1.0.0.0
FileFlagsMask: 0x003f
FileFlags: (none)
FileOS: Win32
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: Chinese (Simplified)
CharacterSet: Unicode
CompanyName: UEFI
ProductName: Kawaii-Unicorn
FileVersion: 1
ProductVersion: 1
InternalName: Kawaii-Unicorn
OriginalFileName: Kawaii-Unicorn.exe
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
489
Monitored processes
350
Malicious processes
52
Suspicious processes
57

Behavior graph

Click at the process to see the details
start 1 (129).exe sppextcomobj.exe no specs slui.exe no specs unicorn-60370.exe unicorn-25918.exe unicorn-61522.exe unicorn-21362.exe unicorn-4641.exe unicorn-50313.exe unicorn-51796.exe unicorn-23474.exe unicorn-56893.exe unicorn-35534.exe unicorn-35534.exe unicorn-11584.exe unicorn-25319.exe unicorn-27101.exe unicorn-25550.exe unicorn-1600.exe unicorn-42248.exe unicorn-37610.exe unicorn-15143.exe unicorn-46930.exe unicorn-46930.exe unicorn-46930.exe unicorn-46930.exe unicorn-46930.exe unicorn-6644.exe unicorn-6644.exe unicorn-13495.exe unicorn-16295.exe unicorn-22160.exe unicorn-19494.exe unicorn-48829.exe unicorn-53510.exe unicorn-35128.exe unicorn-24922.exe unicorn-6539.exe unicorn-33.exe unicorn-57402.exe unicorn-48969.exe unicorn-29368.exe unicorn-58170.exe unicorn-58170.exe unicorn-50002.exe unicorn-50002.exe unicorn-17884.exe unicorn-17884.exe unicorn-9716.exe unicorn-5632.exe unicorn-25498.exe unicorn-17330.exe unicorn-9161.exe unicorn-9161.exe unicorn-9161.exe unicorn-5077.exe unicorn-51848.exe unicorn-38112.exe unicorn-24344.exe unicorn-43680.exe unicorn-40880.exe unicorn-49545.exe unicorn-39442.exe unicorn-60609.exe unicorn-39058.exe unicorn-12507.exe unicorn-38866.exe unicorn-6748.exe unicorn-22530.exe unicorn-5928.exe unicorn-42073.exe unicorn-28512.exe unicorn-48378.exe unicorn-27693.exe unicorn-27958.exe unicorn-19790.exe unicorn-19790.exe unicorn-15706.exe unicorn-61377.exe unicorn-28049.exe unicorn-25249.exe unicorn-14314.exe unicorn-24450.exe unicorn-41532.exe unicorn-32426.exe unicorn-49509.exe unicorn-36318.exe unicorn-36318.exe unicorn-49317.exe unicorn-49317.exe unicorn-49914.exe unicorn-41746.exe unicorn-60312.exe unicorn-905.exe unicorn-39508.exe unicorn-45638.exe unicorn-33386.exe unicorn-60120.exe unicorn-713.exe unicorn-47484.exe unicorn-29664.exe unicorn-29110.exe unicorn-20942.exe unicorn-20942.exe unicorn-32871.exe unicorn-52737.exe unicorn-52737.exe unicorn-41170.exe unicorn-9052.exe unicorn-28918.exe unicorn-28918.exe unicorn-50085.exe unicorn-48636.exe unicorn-54766.exe unicorn-54766.exe unicorn-29997.exe unicorn-10396.exe unicorn-21828.exe unicorn-4803.exe unicorn-50066.exe unicorn-38600.exe unicorn-33000.exe unicorn-18778.exe unicorn-41044.exe unicorn-34922.exe unicorn-51066.exe unicorn-27116.exe unicorn-31008.exe unicorn-48134.exe unicorn-6836.exe unicorn-45550.exe unicorn-45550.exe unicorn-8793.exe unicorn-62078.exe unicorn-53910.exe unicorn-45358.exe unicorn-65208.exe unicorn-8601.exe unicorn-29384.exe unicorn-20662.exe unicorn-12493.exe unicorn-8409.exe unicorn-53526.exe unicorn-16386.exe unicorn-53889.exe unicorn-41636.exe unicorn-33468.exe unicorn-33468.exe unicorn-53069.exe unicorn-13645.exe unicorn-29790.exe unicorn-45556.exe unicorn-34620.exe unicorn-20468.exe unicorn-41850.exe unicorn-13261.exe unicorn-43696.exe unicorn-17708.exe unicorn-2855.exe unicorn-56140.exe unicorn-32787.exe unicorn-2716.exe unicorn-44538.exe unicorn-22534.exe unicorn-23926.exe unicorn-40070.exe unicorn-36540.exe unicorn-56406.exe unicorn-4465.exe unicorn-51620.exe unicorn-53282.exe unicorn-8720.exe unicorn-20418.exe unicorn-26347.exe unicorn-62227.exe unicorn-12057.exe unicorn-62602.exe unicorn-26016.exe unicorn-35476.exe unicorn-41606.exe unicorn-38268.exe unicorn-37330.exe unicorn-48705.exe unicorn-46842.exe unicorn-14724.exe unicorn-30506.exe unicorn-50049.exe unicorn-9628.exe unicorn-5809.exe unicorn-1725.exe unicorn-46458.exe unicorn-46458.exe unicorn-6172.exe unicorn-25773.exe werfault.exe no specs werfault.exe no specs unicorn-54434.exe unicorn-26400.exe unicorn-46266.exe unicorn-13593.exe unicorn-45389.exe unicorn-52309.exe unicorn-59922.exe unicorn-35418.exe unicorn-14805.exe unicorn-5988.exe unicorn-6253.exe unicorn-51925.exe unicorn-41156.exe unicorn-41156.exe unicorn-18698.exe unicorn-23144.exe unicorn-60690.exe unicorn-65521.exe unicorn-15500.exe unicorn-61437.exe unicorn-51261.exe unicorn-40632.exe unicorn-61437.exe unicorn-3876.exe unicorn-9443.exe unicorn-61245.exe unicorn-61245.exe no specs unicorn-58260.exe no specs unicorn-37840.exe unicorn-43705.exe no specs unicorn-24104.exe unicorn-10535.exe no specs unicorn-55268.exe unicorn-38900.exe no specs unicorn-40076.exe no specs unicorn-61458.exe unicorn-24469.exe no specs unicorn-2939.exe no specs unicorn-26739.exe no specs unicorn-3897.exe no specs unicorn-36762.exe no specs unicorn-368.exe no specs unicorn-40197.exe no specs unicorn-16512.exe no specs unicorn-24126.exe no specs unicorn-34192.exe no specs unicorn-41806.exe no specs unicorn-27507.exe no specs unicorn-12833.exe no specs unicorn-47736.exe no specs unicorn-5220.exe no specs unicorn-16918.exe no specs unicorn-58148.exe no specs unicorn-46274.exe no specs unicorn-27891.exe no specs unicorn-34022.exe no specs unicorn-34022.exe no specs unicorn-2309.exe no specs unicorn-51681.exe no specs unicorn-47597.exe no specs unicorn-59294.exe no specs unicorn-2672.exe no specs unicorn-51489.exe no specs unicorn-51489.exe no specs unicorn-5817.exe no specs unicorn-35152.exe no specs unicorn-62417.exe no specs unicorn-2480.exe no specs unicorn-50232.exe no specs unicorn-16076.exe no specs unicorn-65277.exe no specs unicorn-65277.exe no specs unicorn-52641.exe no specs unicorn-52086.exe no specs unicorn-60617.exe no specs unicorn-14945.exe no specs unicorn-8815.exe no specs unicorn-647.exe no specs unicorn-63384.exe no specs unicorn-58016.exe no specs unicorn-58016.exe no specs unicorn-3440.exe no specs unicorn-15500.exe no specs unicorn-33180.exe no specs unicorn-44646.exe no specs unicorn-46916.exe no specs unicorn-27580.exe no specs unicorn-508.exe no specs unicorn-48505.exe no specs unicorn-30387.exe no specs unicorn-11364.exe no specs unicorn-64649.exe no specs unicorn-44229.exe no specs unicorn-30195.exe no specs unicorn-50078.exe no specs unicorn-50078.exe no specs unicorn-17960.exe no specs unicorn-54717.exe no specs unicorn-2915.exe no specs unicorn-64229.exe no specs unicorn-52884.exe no specs unicorn-6476.exe no specs unicorn-14089.exe no specs unicorn-50389.exe no specs unicorn-54738.exe no specs unicorn-54738.exe no specs unicorn-30788.exe no specs unicorn-30788.exe no specs unicorn-2797.exe no specs unicorn-9813.exe no specs unicorn-35662.exe no specs unicorn-5027.exe no specs unicorn-56829.exe no specs unicorn-22953.exe no specs unicorn-63601.exe no specs unicorn-44001.exe no specs unicorn-35278.exe no specs unicorn-31556.exe no specs unicorn-55506.exe no specs unicorn-28955.exe no specs unicorn-6507.exe no specs unicorn-52444.exe no specs unicorn-16010.exe no specs unicorn-6772.exe no specs unicorn-3373.exe no specs unicorn-42360.exe no specs unicorn-22917.exe no specs unicorn-22917.exe no specs unicorn-23986.exe no specs unicorn-36.exe no specs unicorn-19902.exe no specs unicorn-20264.exe no specs unicorn-16180.exe no specs unicorn-65381.exe no specs unicorn-13579.exe no specs unicorn-19710.exe no specs unicorn-36408.exe no specs unicorn-41282.exe no specs unicorn-13248.exe no specs unicorn-13248.exe no specs unicorn-13248.exe no specs unicorn-24183.exe no specs unicorn-53897.exe no specs unicorn-2095.exe no specs unicorn-64832.exe no specs unicorn-59272.exe no specs unicorn-45537.exe no specs unicorn-45537.exe no specs unicorn-21032.exe no specs unicorn-33284.exe no specs unicorn-34767.exe no specs unicorn-40898.exe no specs unicorn-53513.exe no specs unicorn-49429.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
208C:\Users\admin\AppData\Local\Temp\Unicorn-46930.exeC:\Users\admin\AppData\Local\Temp\Unicorn-46930.exe
Unicorn-35534.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-46930.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
672C:\Users\admin\AppData\Local\Temp\Unicorn-36318.exeC:\Users\admin\AppData\Local\Temp\Unicorn-36318.exe
Unicorn-50002.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-36318.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
728C:\Users\admin\AppData\Local\Temp\Unicorn-48705.exeC:\Users\admin\AppData\Local\Temp\Unicorn-48705.exe
Unicorn-39508.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-48705.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
736C:\Users\admin\AppData\Local\Temp\Unicorn-46930.exeC:\Users\admin\AppData\Local\Temp\Unicorn-46930.exe
Unicorn-25319.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-46930.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
780C:\Users\admin\AppData\Local\Temp\Unicorn-4641.exeC:\Users\admin\AppData\Local\Temp\Unicorn-4641.exe
Unicorn-61522.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-4641.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1088C:\Users\admin\AppData\Local\Temp\Unicorn-49317.exeC:\Users\admin\AppData\Local\Temp\Unicorn-49317.exe
Unicorn-46930.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-49317.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1188C:\Users\admin\AppData\Local\Temp\Unicorn-37330.exeC:\Users\admin\AppData\Local\Temp\Unicorn-37330.exe
Unicorn-60312.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-37330.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1228C:\Users\admin\AppData\Local\Temp\Unicorn-60370.exeC:\Users\admin\AppData\Local\Temp\Unicorn-60370.exe
1 (129).exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-60370.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1240C:\Users\admin\AppData\Local\Temp\Unicorn-46930.exeC:\Users\admin\AppData\Local\Temp\Unicorn-46930.exe
Unicorn-27101.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-46930.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1272C:\Users\admin\AppData\Local\Temp\Unicorn-13495.exeC:\Users\admin\AppData\Local\Temp\Unicorn-13495.exe
1 (129).exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-13495.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
Total events
10 599
Read events
10 599
Write events
0
Delete events
0

Modification events

No data
Executable files
1 064
Suspicious files
4
Text files
4
Unknown types
0

Dropped files

PID
Process
Filename
Type
2148Unicorn-25918.exeC:\Users\admin\AppData\Local\Temp\Unicorn-21362.exeexecutable
MD5:1F16CA7DC3D9CC383248038E5224015E
SHA256:F9D3191FA9D9D14569FFABA0C8599B9D681CC10E136BD2386B8BA4AD7104DF88
1228Unicorn-60370.exeC:\Users\admin\AppData\Local\Temp\Unicorn-25918.exeexecutable
MD5:AE592AE37C04AFC0568E53281447E1F6
SHA256:FCBF66B3D45E8F61783935862FA806DCEF8DD5B3FFF01D3B414739E3445CE18A
47761 (129).exeC:\Users\admin\AppData\Local\Temp\Unicorn-61522.exeexecutable
MD5:4F3BAEDAD07BE73E819F7FE449AE02FC
SHA256:DEC5E0E3D8F3B7F748D8EF2497C3B84297FA535BB5078F5CB5EAA8195B176F48
1228Unicorn-60370.exeC:\Users\admin\AppData\Local\Temp\Unicorn-25319.exeexecutable
MD5:369C6940E0963F5A2A782127CF6F185E
SHA256:1A38A7126E405B385161953FCB0BE3FFEE870ADC2F74733509CBEE7D8EA5C9EC
2148Unicorn-25918.exeC:\Users\admin\AppData\Local\Temp\Unicorn-56893.exeexecutable
MD5:D049A567371CA7E0FE0EB0A04A86CC63
SHA256:2096375DCE519D0827E4368ED3262FA56244FBACDB6D3EB17EDDC0DB4D04D1DE
47761 (129).exeC:\Users\admin\AppData\Local\Temp\Unicorn-51796.exeexecutable
MD5:72E7908B0D7F20C632AFE91372E185FB
SHA256:C0A589BCE10DD57188076C8E2BA157C1BEB55BE21CCFE79A93AC0D55F5830945
2692Unicorn-61522.exeC:\Users\admin\AppData\Local\Temp\Unicorn-4641.exeexecutable
MD5:99182BD35796E5B7376065F77CC10932
SHA256:DEFC4160F00AA84B8ECD7A1039D478274790F99BBA0D3C222ADFE68C25481DBD
2692Unicorn-61522.exeC:\Users\admin\AppData\Local\Temp\Unicorn-11584.exeexecutable
MD5:01E67CF6A79235F5A57C2D8A63EE68D7
SHA256:A889B3F5549D07C74365AD012525B451B988F745E53B1FF261C032356FA9328D
1324Unicorn-21362.exeC:\Users\admin\AppData\Local\Temp\Unicorn-23474.exeexecutable
MD5:36004D5EB03C33FC7BA5004C73F9637D
SHA256:6049160B650F364BAAEE45AE2B92154BC5F56082ACFAC582F4806BA4A428ABC9
3140Unicorn-50313.exeC:\Users\admin\AppData\Local\Temp\Unicorn-35534.exeexecutable
MD5:FAB52255A1EEA8D16B6A0707F079A138
SHA256:7EB0F258CADDCD86565E853717DA9FA21457011C7ADE71920AA0107033B7E576
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
5
TCP/UDP connections
22
DNS requests
14
Threats
0

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
6544
svchost.exe
GET
200
2.23.77.188:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
732
backgroundTaskHost.exe
GET
200
2.23.77.188:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAUZZSZEml49Gjh0j13P68w%3D
unknown
whitelisted
6544
svchost.exe
GET
200
2.23.77.188:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
8832
SIHClient.exe
GET
200
184.30.21.171:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Product%20Root%20Certificate%20Authority%202018.crl
unknown
whitelisted
8832
SIHClient.exe
GET
200
184.30.21.171:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Update%20Secure%20Server%20CA%202.1.crl
unknown
whitelisted
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
4
System
192.168.100.255:137
whitelisted
51.104.136.2:443
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
4.231.128.59:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
4
System
192.168.100.255:138
whitelisted
6488
RUXIMICS.exe
4.231.128.59:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
2104
svchost.exe
4.231.128.59:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
3216
svchost.exe
40.113.103.199:443
client.wns.windows.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
6544
svchost.exe
40.126.31.2:443
login.live.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
6544
svchost.exe
2.23.77.188:80
ocsp.digicert.com
AKAMAI-AS
DE
whitelisted
732
backgroundTaskHost.exe
20.199.58.43:443
arc.msn.com
MICROSOFT-CORP-MSN-AS-BLOCK
FR
whitelisted

DNS requests

Domain
IP
Reputation
settings-win.data.microsoft.com
  • 4.231.128.59
whitelisted
client.wns.windows.com
  • 40.113.103.199
whitelisted
login.live.com
  • 40.126.31.2
  • 40.126.31.1
  • 20.190.159.23
  • 40.126.31.131
  • 20.190.159.0
  • 20.190.159.4
  • 20.190.159.64
  • 20.190.159.129
whitelisted
ocsp.digicert.com
  • 2.23.77.188
whitelisted
arc.msn.com
  • 20.199.58.43
whitelisted
slscr.update.microsoft.com
  • 20.12.23.50
whitelisted
www.microsoft.com
  • 184.30.21.171
whitelisted
fe3cr.delivery.mp.microsoft.com
  • 52.165.164.15
whitelisted
activation-v2.sls.microsoft.com
  • 40.91.76.224
whitelisted
nexusrules.officeapps.live.com
  • 52.111.227.11
whitelisted

Threats

No threats detected
No debug info