File name:

1 (1363)

Full analysis: https://app.any.run/tasks/e5f957bd-b0fc-4bfd-83ec-11f490b59172
Verdict: Malicious activity
Analysis date: March 24, 2025, 11:41:57
OS: Windows 10 Professional (build: 19045, 64 bit)
Indicators:
MIME: application/vnd.microsoft.portable-executable
File info: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, 3 sections
MD5:

C666C4A3B2991255B266586D04CD6CE0

SHA1:

D6E48FE4C9F93754AB371FB5260500C400F17D47

SHA256:

C4F29A51E53E4F0F87D63E23105BB9AFE94F373DA760B4922E58B662B8F79232

SSDEEP:

6144:PT7MLZIPNDonA5EwM7erUgfx5tBqcvJGB9/WyeFzTk/8SwjwpyAvEhSrp6u35sYa:P3iqKnA5bMabBdha9OyeFz0x4DxmDsR

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    No malicious indicators.
  • SUSPICIOUS

    • Starts itself from another location

      • Unicorn-26206.exe (PID: 864)
      • Unicorn-37904.exe (PID: 5988)
      • Unicorn-2963.exe (PID: 2692)
      • 1 (1363).exe (PID: 6112)
      • Unicorn-44977.exe (PID: 2340)
      • Unicorn-24234.exe (PID: 5344)
      • Unicorn-63818.exe (PID: 4628)
      • Unicorn-43991.exe (PID: 6564)
      • Unicorn-12304.exe (PID: 4996)
      • Unicorn-26223.exe (PID: 6744)
      • Unicorn-22440.exe (PID: 5504)
      • Unicorn-63472.exe (PID: 4024)
      • Unicorn-45740.exe (PID: 3768)
      • Unicorn-58355.exe (PID: 1348)
      • Unicorn-41006.exe (PID: 4380)
      • Unicorn-27270.exe (PID: 6876)
      • Unicorn-33296.exe (PID: 6512)
      • Unicorn-10187.exe (PID: 976)
      • Unicorn-46871.exe (PID: 5436)
      • Unicorn-23081.exe (PID: 5384)
      • Unicorn-46871.exe (PID: 5756)
      • Unicorn-4713.exe (PID: 2772)
      • Unicorn-5475.exe (PID: 2240)
      • Unicorn-42616.exe (PID: 2420)
      • Unicorn-46871.exe (PID: 2096)
      • Unicorn-13259.exe (PID: 5360)
      • Unicorn-25512.exe (PID: 2040)
      • Unicorn-45859.exe (PID: 856)
      • Unicorn-50208.exe (PID: 1672)
      • Unicorn-32393.exe (PID: 2284)
      • Unicorn-30342.exe (PID: 2384)
      • Unicorn-53088.exe (PID: 1532)
      • Unicorn-23902.exe (PID: 6768)
      • Unicorn-48547.exe (PID: 7172)
      • Unicorn-40644.exe (PID: 6540)
      • Unicorn-61619.exe (PID: 1116)
      • Unicorn-55126.exe (PID: 6488)
      • Unicorn-6657.exe (PID: 7260)
      • Unicorn-4389.exe (PID: 5228)
      • Unicorn-19648.exe (PID: 7220)
      • Unicorn-11863.exe (PID: 1052)
      • Unicorn-57119.exe (PID: 7548)
      • Unicorn-32646.exe (PID: 7248)
      • Unicorn-61427.exe (PID: 7188)
      • Unicorn-44344.exe (PID: 7240)
      • Unicorn-47359.exe (PID: 7620)
      • Unicorn-39330.exe (PID: 7344)
      • Unicorn-38828.exe (PID: 7600)
      • Unicorn-45460.exe (PID: 7352)
      • Unicorn-13098.exe (PID: 7484)
      • Unicorn-21148.exe (PID: 7288)
      • Unicorn-22470.exe (PID: 7420)
      • Unicorn-32824.exe (PID: 7380)
      • Unicorn-43680.exe (PID: 7780)
      • Unicorn-52667.exe (PID: 7316)
      • Unicorn-3010.exe (PID: 7832)
      • Unicorn-4433.exe (PID: 7472)
      • Unicorn-58480.exe (PID: 7436)
      • Unicorn-54951.exe (PID: 7448)
      • Unicorn-23763.exe (PID: 7868)
      • Unicorn-13342.exe (PID: 7324)
      • Unicorn-37484.exe (PID: 7268)
      • Unicorn-25594.exe (PID: 7336)
      • Unicorn-1614.exe (PID: 8004)
      • Unicorn-9176.exe (PID: 7756)
      • Unicorn-24028.exe (PID: 7876)
      • Unicorn-23068.exe (PID: 7804)
      • Unicorn-3149.exe (PID: 7456)
      • Unicorn-34287.exe (PID: 7636)
      • Unicorn-54567.exe (PID: 7508)
      • Unicorn-42201.exe (PID: 7952)
      • Unicorn-26384.exe (PID: 7628)
      • Unicorn-13695.exe (PID: 8208)
      • Unicorn-45652.exe (PID: 7276)
      • Unicorn-58672.exe (PID: 7400)
      • Unicorn-28688.exe (PID: 7980)
      • Unicorn-50120.exe (PID: 7500)
      • Unicorn-63249.exe (PID: 7540)
      • Unicorn-64292.exe (PID: 7696)
      • Unicorn-30084.exe (PID: 7412)
      • Unicorn-28304.exe (PID: 7852)
      • Unicorn-62866.exe (PID: 8340)
      • Unicorn-58407.exe (PID: 8172)
      • Unicorn-32086.exe (PID: 8500)
      • Unicorn-26937.exe (PID: 8836)
      • Unicorn-33068.exe (PID: 8824)
      • Unicorn-31340.exe (PID: 8264)
      • Unicorn-30328.exe (PID: 8876)
      • Unicorn-20624.exe (PID: 8524)
      • Unicorn-21288.exe (PID: 8084)
      • Unicorn-38932.exe (PID: 8396)
      • Unicorn-57062.exe (PID: 7920)
      • Unicorn-14567.exe (PID: 9056)
      • Unicorn-22906.exe (PID: 2516)
      • Unicorn-4405.exe (PID: 8280)
      • Unicorn-18984.exe (PID: 7748)
      • Unicorn-11894.exe (PID: 7960)
      • Unicorn-33081.exe (PID: 7840)
      • Unicorn-53104.exe (PID: 8552)
      • Unicorn-31877.exe (PID: 8040)
      • Unicorn-56188.exe (PID: 8436)
      • Unicorn-20690.exe (PID: 7860)
      • Unicorn-13202.exe (PID: 8812)
      • Unicorn-51583.exe (PID: 5084)
      • Unicorn-58458.exe (PID: 8676)
      • Unicorn-22906.exe (PID: 8012)
      • Unicorn-36450.exe (PID: 8884)
      • Unicorn-55268.exe (PID: 8384)
      • Unicorn-7006.exe (PID: 8348)
      • Unicorn-24604.exe (PID: 7972)
      • Unicorn-30608.exe (PID: 3140)
      • Unicorn-8651.exe (PID: 8180)
      • Unicorn-20240.exe (PID: 8632)
      • Unicorn-42004.exe (PID: 9028)
      • Unicorn-12102.exe (PID: 10224)
      • Unicorn-35595.exe (PID: 7084)
      • Unicorn-48916.exe (PID: 8312)
      • Unicorn-57624.exe (PID: 4736)
      • Unicorn-60466.exe (PID: 7996)
      • Unicorn-23992.exe (PID: 10108)
      • Unicorn-22906.exe (PID: 8016)
      • Unicorn-35806.exe (PID: 8560)
      • Unicorn-52398.exe (PID: 8232)
      • Unicorn-22264.exe (PID: 9668)
      • Unicorn-44744.exe (PID: 8640)
      • Unicorn-1910.exe (PID: 8964)
      • Unicorn-51952.exe (PID: 8492)
      • Unicorn-38356.exe (PID: 10624)
      • Unicorn-59470.exe (PID: 6208)
      • Unicorn-38710.exe (PID: 10704)
      • Unicorn-19346.exe (PID: 2852)
      • Unicorn-2979.exe (PID: 8320)
      • Unicorn-17692.exe (PID: 8972)
      • Unicorn-14863.exe (PID: 10024)
      • Unicorn-7986.exe (PID: 8760)
      • Unicorn-61812.exe (PID: 10900)
      • Unicorn-45304.exe (PID: 7792)
      • Unicorn-26553.exe (PID: 8600)
      • Unicorn-12611.exe (PID: 4108)
      • Unicorn-63493.exe (PID: 9036)
      • Unicorn-30218.exe (PID: 9532)
      • Unicorn-21200.exe (PID: 8740)
      • Unicorn-36170.exe (PID: 9464)
      • Unicorn-64426.exe (PID: 812)
      • Unicorn-56835.exe (PID: 9756)
      • Unicorn-54146.exe (PID: 11060)
      • Unicorn-51931.exe (PID: 8332)
      • Unicorn-33841.exe (PID: 7904)
      • Unicorn-8158.exe (PID: 3024)
      • Unicorn-27640.exe (PID: 8484)
      • Unicorn-54095.exe (PID: 2288)
      • Unicorn-51916.exe (PID: 11100)
      • Unicorn-49634.exe (PID: 12780)
      • Unicorn-39818.exe (PID: 12816)
      • Unicorn-6946.exe (PID: 12796)
      • Unicorn-52580.exe (PID: 10088)
      • Unicorn-12014.exe (PID: 11020)
      • Unicorn-28356.exe (PID: 9332)
      • Unicorn-41428.exe (PID: 8792)
      • Unicorn-53592.exe (PID: 9428)
      • Unicorn-45263.exe (PID: 11200)
      • Unicorn-24137.exe (PID: 8804)
      • Unicorn-51568.exe (PID: 8272)
      • Unicorn-43364.exe (PID: 10800)
      • Unicorn-3571.exe (PID: 10072)
      • Unicorn-42559.exe (PID: 10528)
      • Unicorn-36310.exe (PID: 9224)
      • Unicorn-39662.exe (PID: 11184)
      • Unicorn-29729.exe (PID: 6620)
      • Unicorn-419.exe (PID: 14128)
      • Unicorn-4311.exe (PID: 14164)
      • Unicorn-16901.exe (PID: 1164)
      • Unicorn-21150.exe (PID: 12240)
      • Unicorn-60971.exe (PID: 11780)
      • Unicorn-24488.exe (PID: 12232)
      • Unicorn-19701.exe (PID: 776)
      • Unicorn-19701.exe (PID: 12248)
      • Unicorn-5439.exe (PID: 8908)
      • Unicorn-50281.exe (PID: 12072)
      • Unicorn-31480.exe (PID: 9276)
      • Unicorn-40468.exe (PID: 8696)
      • Unicorn-3903.exe (PID: 8576)
      • Unicorn-42802.exe (PID: 10652)
      • Unicorn-16246.exe (PID: 12908)
      • Unicorn-32251.exe (PID: 13868)
      • Unicorn-46503.exe (PID: 10352)
      • Unicorn-21090.exe (PID: 9452)
      • Unicorn-27756.exe (PID: 10960)
      • Unicorn-5966.exe (PID: 5036)
      • Unicorn-14183.exe (PID: 9180)
      • Unicorn-8587.exe (PID: 14156)
      • Unicorn-40146.exe (PID: 8220)
    • Executable content was dropped or overwritten

      • 1 (1363).exe (PID: 6112)
      • Unicorn-2963.exe (PID: 2692)
      • Unicorn-26206.exe (PID: 864)
      • Unicorn-37904.exe (PID: 5988)
      • Unicorn-44977.exe (PID: 2340)
      • Unicorn-63818.exe (PID: 4628)
      • Unicorn-24234.exe (PID: 5344)
      • Unicorn-12304.exe (PID: 4996)
      • Unicorn-43991.exe (PID: 6564)
      • Unicorn-63472.exe (PID: 4024)
      • Unicorn-26223.exe (PID: 6744)
      • Unicorn-10187.exe (PID: 976)
      • Unicorn-22440.exe (PID: 5504)
      • Unicorn-41006.exe (PID: 4380)
      • Unicorn-58355.exe (PID: 1348)
      • Unicorn-27270.exe (PID: 6876)
      • Unicorn-45740.exe (PID: 3768)
      • Unicorn-23081.exe (PID: 5384)
      • Unicorn-33296.exe (PID: 6512)
      • Unicorn-5475.exe (PID: 2240)
      • Unicorn-46871.exe (PID: 5756)
      • Unicorn-4713.exe (PID: 2772)
      • Unicorn-46871.exe (PID: 5436)
      • Unicorn-42616.exe (PID: 2420)
      • Unicorn-46871.exe (PID: 2096)
      • Unicorn-13259.exe (PID: 5360)
      • Unicorn-25512.exe (PID: 2040)
      • Unicorn-4389.exe (PID: 5228)
      • Unicorn-45859.exe (PID: 856)
      • Unicorn-32393.exe (PID: 2284)
      • Unicorn-30342.exe (PID: 2384)
      • Unicorn-53088.exe (PID: 1532)
      • Unicorn-55126.exe (PID: 6488)
      • Unicorn-23902.exe (PID: 6768)
      • Unicorn-40644.exe (PID: 6540)
      • Unicorn-48547.exe (PID: 7172)
      • Unicorn-61619.exe (PID: 1116)
      • Unicorn-19648.exe (PID: 7220)
      • Unicorn-6657.exe (PID: 7260)
      • Unicorn-11863.exe (PID: 1052)
      • Unicorn-21148.exe (PID: 7288)
      • Unicorn-32646.exe (PID: 7248)
      • Unicorn-44344.exe (PID: 7240)
      • Unicorn-57119.exe (PID: 7548)
      • Unicorn-39330.exe (PID: 7344)
      • Unicorn-22470.exe (PID: 7420)
      • Unicorn-38828.exe (PID: 7600)
      • Unicorn-47359.exe (PID: 7620)
      • Unicorn-45460.exe (PID: 7352)
      • Unicorn-32824.exe (PID: 7380)
      • Unicorn-13098.exe (PID: 7484)
      • Unicorn-3010.exe (PID: 7832)
      • Unicorn-52667.exe (PID: 7316)
      • Unicorn-43680.exe (PID: 7780)
      • Unicorn-58480.exe (PID: 7436)
      • Unicorn-4433.exe (PID: 7472)
      • Unicorn-37484.exe (PID: 7268)
      • Unicorn-54951.exe (PID: 7448)
      • Unicorn-23763.exe (PID: 7868)
      • Unicorn-25594.exe (PID: 7336)
      • Unicorn-1614.exe (PID: 8004)
      • Unicorn-9176.exe (PID: 7756)
      • Unicorn-24028.exe (PID: 7876)
      • Unicorn-34287.exe (PID: 7636)
      • Unicorn-13342.exe (PID: 7324)
      • Unicorn-23068.exe (PID: 7804)
      • Unicorn-3149.exe (PID: 7456)
      • Unicorn-60466.exe (PID: 7996)
      • Unicorn-26384.exe (PID: 7628)
      • Unicorn-42201.exe (PID: 7952)
      • Unicorn-54567.exe (PID: 7508)
      • Unicorn-45652.exe (PID: 7276)
      • Unicorn-13695.exe (PID: 8208)
      • Unicorn-58672.exe (PID: 7400)
      • Unicorn-28688.exe (PID: 7980)
      • Unicorn-63249.exe (PID: 7540)
      • Unicorn-64292.exe (PID: 7696)
      • Unicorn-50120.exe (PID: 7500)
      • Unicorn-28304.exe (PID: 7852)
      • Unicorn-30084.exe (PID: 7412)
      • Unicorn-58407.exe (PID: 8172)
      • Unicorn-61427.exe (PID: 7188)
      • Unicorn-62866.exe (PID: 8340)
      • Unicorn-50208.exe (PID: 1672)
      • Unicorn-31340.exe (PID: 8264)
      • Unicorn-30328.exe (PID: 8876)
      • Unicorn-32086.exe (PID: 8500)
      • Unicorn-26937.exe (PID: 8836)
      • Unicorn-20624.exe (PID: 8524)
      • Unicorn-21288.exe (PID: 8084)
      • Unicorn-38932.exe (PID: 8396)
      • Unicorn-57062.exe (PID: 7920)
      • Unicorn-14567.exe (PID: 9056)
      • Unicorn-18984.exe (PID: 7748)
      • Unicorn-22906.exe (PID: 2516)
      • Unicorn-4405.exe (PID: 8280)
      • Unicorn-24604.exe (PID: 7972)
      • Unicorn-11894.exe (PID: 7960)
      • Unicorn-33081.exe (PID: 7840)
      • Unicorn-7006.exe (PID: 8348)
      • Unicorn-56188.exe (PID: 8436)
      • Unicorn-31877.exe (PID: 8040)
      • Unicorn-30608.exe (PID: 3140)
      • Unicorn-13202.exe (PID: 8812)
      • Unicorn-36450.exe (PID: 8884)
      • Unicorn-58458.exe (PID: 8676)
      • Unicorn-22906.exe (PID: 8012)
      • Unicorn-51583.exe (PID: 5084)
      • Unicorn-55268.exe (PID: 8384)
      • Unicorn-8651.exe (PID: 8180)
      • Unicorn-42004.exe (PID: 9028)
      • Unicorn-48916.exe (PID: 8312)
      • Unicorn-57624.exe (PID: 4736)
      • Unicorn-35595.exe (PID: 7084)
      • Unicorn-12102.exe (PID: 10224)
      • Unicorn-23992.exe (PID: 10108)
      • Unicorn-22906.exe (PID: 8016)
      • Unicorn-35806.exe (PID: 8560)
      • Unicorn-52398.exe (PID: 8232)
      • Unicorn-22264.exe (PID: 9668)
      • Unicorn-44744.exe (PID: 8640)
      • Unicorn-1910.exe (PID: 8964)
      • Unicorn-2979.exe (PID: 8320)
      • Unicorn-51952.exe (PID: 8492)
      • Unicorn-38356.exe (PID: 10624)
      • Unicorn-38710.exe (PID: 10704)
      • Unicorn-19346.exe (PID: 2852)
      • Unicorn-17692.exe (PID: 8972)
      • Unicorn-59470.exe (PID: 6208)
      • Unicorn-14863.exe (PID: 10024)
      • Unicorn-7986.exe (PID: 8760)
      • Unicorn-33068.exe (PID: 8824)
      • Unicorn-61812.exe (PID: 10900)
      • Unicorn-53452.exe (PID: 6852)
      • Unicorn-63493.exe (PID: 9036)
      • Unicorn-26553.exe (PID: 8600)
      • Unicorn-45304.exe (PID: 7792)
      • Unicorn-30218.exe (PID: 9532)
      • Unicorn-36170.exe (PID: 9464)
      • Unicorn-64426.exe (PID: 812)
      • Unicorn-56835.exe (PID: 9756)
      • Unicorn-54146.exe (PID: 11060)
      • Unicorn-51916.exe (PID: 11100)
      • Unicorn-51931.exe (PID: 8332)
      • Unicorn-9221.exe (PID: 11092)
      • Unicorn-27640.exe (PID: 8484)
      • Unicorn-54095.exe (PID: 2288)
      • Unicorn-33841.exe (PID: 7904)
      • Unicorn-8158.exe (PID: 3024)
      • Unicorn-39818.exe (PID: 12816)
      • Unicorn-6946.exe (PID: 12796)
      • Unicorn-49634.exe (PID: 12780)
      • Unicorn-12014.exe (PID: 11020)
      • Unicorn-36310.exe (PID: 9224)
      • Unicorn-52580.exe (PID: 10088)
      • Unicorn-59108.exe (PID: 8076)
      • Unicorn-28356.exe (PID: 9332)
      • Unicorn-41428.exe (PID: 8792)
      • Unicorn-45263.exe (PID: 11200)
      • Unicorn-53592.exe (PID: 9428)
      • Unicorn-20240.exe (PID: 8632)
      • Unicorn-24137.exe (PID: 8804)
      • Unicorn-20690.exe (PID: 7860)
      • Unicorn-51568.exe (PID: 8272)
      • Unicorn-42559.exe (PID: 10528)
      • Unicorn-39662.exe (PID: 11184)
      • Unicorn-43364.exe (PID: 10800)
      • Unicorn-3571.exe (PID: 10072)
      • Unicorn-29729.exe (PID: 6620)
      • Unicorn-47763.exe (PID: 12096)
      • Unicorn-60971.exe (PID: 11780)
      • Unicorn-21150.exe (PID: 12240)
      • Unicorn-24488.exe (PID: 12232)
      • Unicorn-19701.exe (PID: 12248)
      • Unicorn-19701.exe (PID: 776)
      • Unicorn-14183.exe (PID: 9180)
      • Unicorn-40468.exe (PID: 8696)
      • Unicorn-50281.exe (PID: 12072)
      • Unicorn-31480.exe (PID: 9276)
      • Unicorn-3903.exe (PID: 8576)
      • Unicorn-42802.exe (PID: 10652)
      • Unicorn-16246.exe (PID: 12908)
      • Unicorn-21090.exe (PID: 9452)
      • Unicorn-21200.exe (PID: 8740)
      • Unicorn-46503.exe (PID: 10352)
      • Unicorn-53104.exe (PID: 8552)
      • Unicorn-27756.exe (PID: 10960)
      • Unicorn-5966.exe (PID: 5036)
      • Unicorn-40146.exe (PID: 8220)
      • Unicorn-25964.exe (PID: 9492)
      • Unicorn-49892.exe (PID: 9556)
      • Unicorn-22906.exe (PID: 8052)
      • Unicorn-15173.exe (PID: 9596)
      • Unicorn-419.exe (PID: 14128)
      • Unicorn-4311.exe (PID: 14164)
      • Unicorn-45263.exe (PID: 11192)
      • Unicorn-40489.exe (PID: 12088)
      • Unicorn-39996.exe (PID: 11636)
      • Unicorn-5439.exe (PID: 8908)
      • Unicorn-14147.exe (PID: 11628)
      • Unicorn-54268.exe (PID: 10640)
      • Unicorn-3830.exe (PID: 3896)
      • Unicorn-16901.exe (PID: 1164)
      • Unicorn-12611.exe (PID: 4108)
      • Unicorn-60238.exe (PID: 10368)
      • Unicorn-43682.exe (PID: 12624)
      • Unicorn-37124.exe (PID: 12204)
      • Unicorn-8587.exe (PID: 14156)
      • Unicorn-19693.exe (PID: 11388)
      • Unicorn-41293.exe (PID: 9744)
      • Unicorn-21038.exe (PID: 9588)
      • Unicorn-46140.exe (PID: 10296)
      • Unicorn-45987.exe (PID: 12960)
      • Unicorn-48904.exe (PID: 16624)
      • Unicorn-22080.exe (PID: 13324)
      • Unicorn-40550.exe (PID: 16452)
      • Unicorn-33120.exe (PID: 10232)
      • Unicorn-57684.exe (PID: 13008)
      • Unicorn-5403.exe (PID: 11376)
      • Unicorn-53351.exe (PID: 16168)
      • Unicorn-3801.exe (PID: 14644)
      • Unicorn-53351.exe (PID: 16160)
      • Unicorn-54552.exe (PID: 9480)
      • Unicorn-34521.exe (PID: 8748)
      • Unicorn-59139.exe (PID: 10320)
      • Unicorn-63512.exe (PID: 15468)
      • Unicorn-5966.exe (PID: 4172)
      • Unicorn-14119.exe (PID: 15540)
      • Unicorn-24568.exe (PID: 10264)
      • Unicorn-15277.exe (PID: 16252)
      • Unicorn-2346.exe (PID: 10564)
  • INFO

    • Reads the computer name

      • 1 (1363).exe (PID: 6112)
      • Unicorn-2963.exe (PID: 2692)
      • Unicorn-37904.exe (PID: 5988)
      • Unicorn-26206.exe (PID: 864)
      • Unicorn-26223.exe (PID: 6744)
      • Unicorn-43991.exe (PID: 6564)
      • Unicorn-44977.exe (PID: 2340)
      • Unicorn-24234.exe (PID: 5344)
      • Unicorn-63818.exe (PID: 4628)
      • Unicorn-12304.exe (PID: 4996)
      • Unicorn-10187.exe (PID: 976)
      • Unicorn-63472.exe (PID: 4024)
      • Unicorn-41006.exe (PID: 4380)
      • Unicorn-27270.exe (PID: 6876)
      • Unicorn-45740.exe (PID: 3768)
      • Unicorn-58355.exe (PID: 1348)
      • Unicorn-33296.exe (PID: 6512)
      • Unicorn-23081.exe (PID: 5384)
      • Unicorn-42616.exe (PID: 2420)
      • Unicorn-46871.exe (PID: 5436)
      • Unicorn-5475.exe (PID: 2240)
      • Unicorn-45859.exe (PID: 856)
      • Unicorn-25512.exe (PID: 2040)
      • Unicorn-50208.exe (PID: 1672)
      • Unicorn-4389.exe (PID: 5228)
      • Unicorn-32393.exe (PID: 2284)
      • Unicorn-13259.exe (PID: 5360)
      • Unicorn-61619.exe (PID: 1116)
      • Unicorn-40644.exe (PID: 6540)
      • Unicorn-11863.exe (PID: 1052)
      • Unicorn-19648.exe (PID: 7220)
      • Unicorn-44344.exe (PID: 7240)
      • Unicorn-6657.exe (PID: 7260)
      • Unicorn-57119.exe (PID: 7548)
      • Unicorn-32646.exe (PID: 7248)
      • Unicorn-21148.exe (PID: 7288)
      • Unicorn-47359.exe (PID: 7620)
      • Unicorn-22470.exe (PID: 7420)
      • Unicorn-39330.exe (PID: 7344)
      • Unicorn-45460.exe (PID: 7352)
      • Unicorn-13098.exe (PID: 7484)
      • Unicorn-38828.exe (PID: 7600)
      • Unicorn-3010.exe (PID: 7832)
      • Unicorn-43680.exe (PID: 7780)
      • Unicorn-54951.exe (PID: 7448)
      • Unicorn-58480.exe (PID: 7436)
      • Unicorn-4433.exe (PID: 7472)
      • Unicorn-37484.exe (PID: 7268)
      • Unicorn-25594.exe (PID: 7336)
      • Unicorn-23763.exe (PID: 7868)
      • Unicorn-13342.exe (PID: 7324)
      • Unicorn-1614.exe (PID: 8004)
      • Unicorn-9176.exe (PID: 7756)
      • Unicorn-24028.exe (PID: 7876)
      • Unicorn-54567.exe (PID: 7508)
      • Unicorn-23068.exe (PID: 7804)
      • Unicorn-3149.exe (PID: 7456)
      • Unicorn-34287.exe (PID: 7636)
      • Unicorn-45652.exe (PID: 7276)
      • Unicorn-60466.exe (PID: 7996)
      • Unicorn-42201.exe (PID: 7952)
      • Unicorn-26384.exe (PID: 7628)
      • Unicorn-63249.exe (PID: 7540)
      • Unicorn-28304.exe (PID: 7852)
      • Unicorn-58407.exe (PID: 8172)
      • Unicorn-30084.exe (PID: 7412)
      • Unicorn-62866.exe (PID: 8340)
      • Unicorn-18984.exe (PID: 7748)
      • Unicorn-33068.exe (PID: 8824)
      • Unicorn-30328.exe (PID: 8876)
      • Unicorn-32086.exe (PID: 8500)
      • Unicorn-38932.exe (PID: 8396)
      • Unicorn-22906.exe (PID: 2516)
      • Unicorn-14567.exe (PID: 9056)
      • Unicorn-57062.exe (PID: 7920)
      • Unicorn-21288.exe (PID: 8084)
      • Unicorn-11894.exe (PID: 7960)
      • Unicorn-4405.exe (PID: 8280)
      • Unicorn-30608.exe (PID: 3140)
      • Unicorn-56188.exe (PID: 8436)
      • Unicorn-7006.exe (PID: 8348)
      • Unicorn-53104.exe (PID: 8552)
      • Unicorn-36450.exe (PID: 8884)
      • Unicorn-51583.exe (PID: 5084)
      • Unicorn-22906.exe (PID: 8012)
      • Unicorn-13202.exe (PID: 8812)
      • Unicorn-58458.exe (PID: 8676)
      • Unicorn-8651.exe (PID: 8180)
      • Unicorn-35595.exe (PID: 7084)
      • Unicorn-42004.exe (PID: 9028)
      • Unicorn-48916.exe (PID: 8312)
      • Unicorn-22906.exe (PID: 8016)
      • Unicorn-23992.exe (PID: 10108)
      • Unicorn-52398.exe (PID: 8232)
      • Unicorn-57624.exe (PID: 4736)
      • Unicorn-44744.exe (PID: 8640)
      • Unicorn-35806.exe (PID: 8560)
      • Unicorn-51952.exe (PID: 8492)
      • Unicorn-59470.exe (PID: 6208)
      • Unicorn-1910.exe (PID: 8964)
      • Unicorn-26553.exe (PID: 8600)
      • Unicorn-45304.exe (PID: 7792)
      • Unicorn-12611.exe (PID: 4108)
      • Unicorn-53452.exe (PID: 6852)
      • Unicorn-27640.exe (PID: 8484)
      • Unicorn-56835.exe (PID: 9756)
      • Unicorn-54146.exe (PID: 11060)
      • Unicorn-54095.exe (PID: 2288)
      • Unicorn-49634.exe (PID: 12780)
      • Unicorn-39818.exe (PID: 12816)
      • Unicorn-9221.exe (PID: 11092)
      • Unicorn-51568.exe (PID: 8272)
      • Unicorn-59108.exe (PID: 8076)
      • Unicorn-41428.exe (PID: 8792)
      • Unicorn-53592.exe (PID: 9428)
      • Unicorn-45263.exe (PID: 11200)
      • Unicorn-28356.exe (PID: 9332)
      • Unicorn-60971.exe (PID: 11780)
      • Unicorn-16901.exe (PID: 1164)
      • Unicorn-42559.exe (PID: 10528)
      • Unicorn-24137.exe (PID: 8804)
      • Unicorn-21150.exe (PID: 12240)
      • Unicorn-29729.exe (PID: 6620)
      • Unicorn-19701.exe (PID: 776)
      • Unicorn-14183.exe (PID: 9180)
      • Unicorn-50281.exe (PID: 12072)
      • Unicorn-47763.exe (PID: 12096)
      • Unicorn-42802.exe (PID: 10652)
      • Unicorn-16246.exe (PID: 12908)
      • Unicorn-21090.exe (PID: 9452)
      • Unicorn-61812.exe (PID: 10900)
      • Unicorn-8587.exe (PID: 14156)
      • Unicorn-40489.exe (PID: 12088)
    • The sample compiled with chinese language support

      • 1 (1363).exe (PID: 6112)
    • Checks supported languages

      • 1 (1363).exe (PID: 6112)
      • Unicorn-26206.exe (PID: 864)
      • Unicorn-2963.exe (PID: 2692)
      • Unicorn-37904.exe (PID: 5988)
      • Unicorn-12304.exe (PID: 4996)
      • Unicorn-44977.exe (PID: 2340)
      • Unicorn-24234.exe (PID: 5344)
      • Unicorn-63818.exe (PID: 4628)
      • Unicorn-26223.exe (PID: 6744)
      • Unicorn-43991.exe (PID: 6564)
      • Unicorn-63472.exe (PID: 4024)
      • Unicorn-46871.exe (PID: 2096)
      • Unicorn-22440.exe (PID: 5504)
      • Unicorn-27270.exe (PID: 6876)
      • Unicorn-41006.exe (PID: 4380)
      • Unicorn-45740.exe (PID: 3768)
      • Unicorn-58355.exe (PID: 1348)
      • Unicorn-10187.exe (PID: 976)
      • Unicorn-5475.exe (PID: 2240)
      • Unicorn-46871.exe (PID: 5756)
      • Unicorn-30342.exe (PID: 2384)
      • Unicorn-25512.exe (PID: 2040)
      • Unicorn-4389.exe (PID: 5228)
      • Unicorn-23902.exe (PID: 6768)
      • Unicorn-45859.exe (PID: 856)
      • Unicorn-53088.exe (PID: 1532)
      • Unicorn-11863.exe (PID: 1052)
      • Unicorn-61427.exe (PID: 7188)
      • Unicorn-40644.exe (PID: 6540)
      • Unicorn-48547.exe (PID: 7172)
      • Unicorn-44344.exe (PID: 7240)
      • Unicorn-6657.exe (PID: 7260)
      • Unicorn-21148.exe (PID: 7288)
      • Unicorn-52667.exe (PID: 7316)
      • Unicorn-32646.exe (PID: 7248)
      • Unicorn-39330.exe (PID: 7344)
      • Unicorn-45460.exe (PID: 7352)
      • Unicorn-58672.exe (PID: 7400)
      • Unicorn-30084.exe (PID: 7412)
      • Unicorn-57119.exe (PID: 7548)
      • Unicorn-3149.exe (PID: 7456)
      • Unicorn-4433.exe (PID: 7472)
      • Unicorn-13098.exe (PID: 7484)
      • Unicorn-38828.exe (PID: 7600)
      • Unicorn-22470.exe (PID: 7420)
      • Unicorn-47359.exe (PID: 7620)
      • Unicorn-34287.exe (PID: 7636)
      • Unicorn-63249.exe (PID: 7540)
      • Unicorn-26384.exe (PID: 7628)
      • Unicorn-64292.exe (PID: 7696)
      • Unicorn-9176.exe (PID: 7756)
      • Unicorn-50120.exe (PID: 7500)
      • Unicorn-45304.exe (PID: 7792)
      • Unicorn-23068.exe (PID: 7804)
      • Unicorn-3010.exe (PID: 7832)
      • Unicorn-43680.exe (PID: 7780)
      • Unicorn-23763.exe (PID: 7868)
      • Unicorn-24604.exe (PID: 7972)
      • Unicorn-60466.exe (PID: 7996)
      • Unicorn-20690.exe (PID: 7860)
      • Unicorn-28688.exe (PID: 7980)
      • Unicorn-58407.exe (PID: 8172)
      • Unicorn-13695.exe (PID: 8208)
      • Unicorn-21288.exe (PID: 8084)
      • Unicorn-31340.exe (PID: 8264)
      • Unicorn-4405.exe (PID: 8280)
      • Unicorn-52398.exe (PID: 8232)
      • Unicorn-51931.exe (PID: 8332)
      • Unicorn-62866.exe (PID: 8340)
      • Unicorn-2979.exe (PID: 8320)
      • Unicorn-55268.exe (PID: 8384)
      • Unicorn-40146.exe (PID: 8220)
      • Unicorn-15772.exe (PID: 8408)
      • Unicorn-51568.exe (PID: 8272)
      • Unicorn-56188.exe (PID: 8436)
      • Unicorn-27640.exe (PID: 8484)
      • Unicorn-51952.exe (PID: 8492)
      • Unicorn-53104.exe (PID: 8552)
      • Unicorn-33068.exe (PID: 8824)
      • Unicorn-35806.exe (PID: 8560)
      • Unicorn-32086.exe (PID: 8500)
      • Unicorn-20624.exe (PID: 8524)
      • Unicorn-20240.exe (PID: 8632)
      • Unicorn-44744.exe (PID: 8640)
      • Unicorn-58458.exe (PID: 8676)
      • Unicorn-40468.exe (PID: 8696)
      • Unicorn-4671.exe (PID: 8728)
      • Unicorn-12818.exe (PID: 8592)
      • Unicorn-3903.exe (PID: 8576)
      • Unicorn-30328.exe (PID: 8876)
      • Unicorn-21200.exe (PID: 8740)
      • Unicorn-34521.exe (PID: 8748)
      • Unicorn-24137.exe (PID: 8804)
      • Unicorn-36450.exe (PID: 8884)
      • Unicorn-41428.exe (PID: 8792)
      • Unicorn-17692.exe (PID: 8972)
      • Unicorn-1910.exe (PID: 8964)
      • Unicorn-63493.exe (PID: 9036)
      • Unicorn-14567.exe (PID: 9056)
      • Unicorn-26553.exe (PID: 8600)
      • Unicorn-5439.exe (PID: 8908)
      • Unicorn-5247.exe (PID: 8944)
      • Unicorn-39072.exe (PID: 9128)
      • Unicorn-7986.exe (PID: 8760)
      • Unicorn-30904.exe (PID: 9120)
      • Unicorn-59108.exe (PID: 8076)
      • Unicorn-3830.exe (PID: 3896)
      • Unicorn-14183.exe (PID: 9180)
      • Unicorn-57062.exe (PID: 7920)
      • Unicorn-22906.exe (PID: 2516)
      • Unicorn-36310.exe (PID: 9224)
      • Unicorn-13481.exe (PID: 3956)
      • Unicorn-7530.exe (PID: 9284)
      • Unicorn-31480.exe (PID: 9276)
      • Unicorn-22906.exe (PID: 8052)
      • Unicorn-56295.exe (PID: 9356)
      • Unicorn-61007.exe (PID: 7916)
      • Unicorn-25925.exe (PID: 9380)
      • Unicorn-12190.exe (PID: 9372)
      • Unicorn-58615.exe (PID: 9408)
      • Unicorn-53592.exe (PID: 9428)
      • Unicorn-54552.exe (PID: 9480)
      • Unicorn-30218.exe (PID: 9532)
      • Unicorn-62144.exe (PID: 9568)
      • Unicorn-15335.exe (PID: 7896)
      • Unicorn-15173.exe (PID: 9596)
      • Unicorn-54552.exe (PID: 9472)
      • Unicorn-25964.exe (PID: 9492)
      • Unicorn-56835.exe (PID: 9756)
      • Unicorn-1438.exe (PID: 9580)
      • Unicorn-43836.exe (PID: 9736)
      • Unicorn-49892.exe (PID: 9556)
      • Unicorn-41293.exe (PID: 9744)
      • Unicorn-47131.exe (PID: 9700)
      • Unicorn-20534.exe (PID: 9524)
      • Unicorn-26156.exe (PID: 9728)
      • Unicorn-22264.exe (PID: 9668)
      • Unicorn-21038.exe (PID: 9588)
      • Unicorn-57115.exe (PID: 9928)
      • Unicorn-61329.exe (PID: 9244)
      • Unicorn-3571.exe (PID: 10072)
      • Unicorn-38216.exe (PID: 9500)
      • Unicorn-14863.exe (PID: 10024)
      • Unicorn-35595.exe (PID: 7084)
      • Unicorn-52580.exe (PID: 10088)
      • Unicorn-23992.exe (PID: 10108)
      • Unicorn-57624.exe (PID: 4736)
      • Unicorn-26684.exe (PID: 10100)
      • Unicorn-36170.exe (PID: 9464)
      • Unicorn-63872.exe (PID: 10044)
      • Unicorn-12102.exe (PID: 10224)
      • Unicorn-29729.exe (PID: 6620)
      • Unicorn-8158.exe (PID: 3024)
      • Unicorn-54095.exe (PID: 2288)
      • Unicorn-29729.exe (PID: 872)
      • Unicorn-59470.exe (PID: 6208)
      • Unicorn-17552.exe (PID: 10312)
      • Unicorn-46140.exe (PID: 10296)
      • Unicorn-59139.exe (PID: 10320)
      • Unicorn-38334.exe (PID: 10336)
      • Unicorn-45372.exe (PID: 4620)
      • Unicorn-60238.exe (PID: 10368)
      • Unicorn-50395.exe (PID: 10404)
      • Unicorn-56665.exe (PID: 10464)
      • Unicorn-24568.exe (PID: 10264)
      • Unicorn-28652.exe (PID: 10272)
      • Unicorn-7913.exe (PID: 10556)
      • Unicorn-46503.exe (PID: 10352)
      • Unicorn-42802.exe (PID: 10652)
      • Unicorn-2346.exe (PID: 10564)
      • Unicorn-54268.exe (PID: 10640)
      • Unicorn-5113.exe (PID: 10544)
      • Unicorn-38710.exe (PID: 10704)
      • Unicorn-40712.exe (PID: 10376)
      • Unicorn-61812.exe (PID: 10900)
      • Unicorn-64723.exe (PID: 10780)
      • Unicorn-4753.exe (PID: 10788)
      • Unicorn-53452.exe (PID: 6852)
      • Unicorn-12611.exe (PID: 4108)
      • Unicorn-50254.exe (PID: 10988)
      • Unicorn-54801.exe (PID: 11036)
      • Unicorn-53523.exe (PID: 10676)
      • Unicorn-60011.exe (PID: 11076)
      • Unicorn-9221.exe (PID: 11092)
      • Unicorn-40816.exe (PID: 11136)
      • Unicorn-65128.exe (PID: 11176)
      • Unicorn-39662.exe (PID: 11184)
      • Unicorn-51916.exe (PID: 11100)
      • Unicorn-10373.exe (PID: 11124)
      • Unicorn-45263.exe (PID: 11200)
      • Unicorn-45263.exe (PID: 11208)
      • Unicorn-45263.exe (PID: 11224)
      • Unicorn-37692.exe (PID: 11244)
      • Unicorn-12922.exe (PID: 744)
      • Unicorn-49944.exe (PID: 11252)
      • Unicorn-64426.exe (PID: 812)
      • Unicorn-23393.exe (PID: 10888)
      • Unicorn-35942.exe (PID: 10736)
      • Unicorn-35942.exe (PID: 10748)
      • Unicorn-49678.exe (PID: 10764)
      • Unicorn-40114.exe (PID: 11360)
      • Unicorn-22700.exe (PID: 11524)
      • Unicorn-52803.exe (PID: 11788)
      • Unicorn-4225.exe (PID: 11536)
      • Unicorn-59072.exe (PID: 11592)
      • Unicorn-2855.exe (PID: 11736)
      • Unicorn-60971.exe (PID: 11780)
      • Unicorn-56140.exe (PID: 11728)
      • Unicorn-61023.exe (PID: 11084)
      • Unicorn-47972.exe (PID: 11716)
      • Unicorn-23638.exe (PID: 11900)
      • Unicorn-26597.exe (PID: 11908)
      • Unicorn-57418.exe (PID: 12612)
      • Unicorn-59071.exe (PID: 11936)
      • Unicorn-50281.exe (PID: 12072)
      • Unicorn-40380.exe (PID: 12080)
      • Unicorn-21150.exe (PID: 12240)
      • Unicorn-24488.exe (PID: 12232)
      • Unicorn-49184.exe (PID: 12296)
      • Unicorn-19701.exe (PID: 12264)
      • Unicorn-19701.exe (PID: 12272)
      • Unicorn-15662.exe (PID: 11916)
      • Unicorn-39818.exe (PID: 12816)
      • Unicorn-5966.exe (PID: 4172)
      • Unicorn-5966.exe (PID: 10476)
      • Unicorn-19701.exe (PID: 12248)
      • Unicorn-40166.exe (PID: 11840)
      • Unicorn-49634.exe (PID: 12780)
      • Unicorn-366.exe (PID: 4452)
      • Unicorn-13731.exe (PID: 12680)
      • Unicorn-12235.exe (PID: 12216)
      • Unicorn-37316.exe (PID: 12168)
      • Unicorn-27181.exe (PID: 12892)
      • Unicorn-29981.exe (PID: 12924)
      • Unicorn-16246.exe (PID: 12908)
      • Unicorn-35847.exe (PID: 12916)
      • Unicorn-19701.exe (PID: 5740)
      • Unicorn-5966.exe (PID: 6248)
      • Unicorn-10521.exe (PID: 12968)
      • Unicorn-30586.exe (PID: 12952)
      • Unicorn-57684.exe (PID: 13008)
      • Unicorn-7141.exe (PID: 13020)
      • Unicorn-25374.exe (PID: 13036)
      • Unicorn-30611.exe (PID: 13072)
      • Unicorn-34633.exe (PID: 13224)
      • Unicorn-5966.exe (PID: 5036)
      • Unicorn-25567.exe (PID: 4284)
      • Unicorn-41540.exe (PID: 13288)
      • Unicorn-507.exe (PID: 2092)
      • Unicorn-18188.exe (PID: 13304)
      • Unicorn-40454.exe (PID: 13364)
      • Unicorn-419.exe (PID: 14128)
      • Unicorn-50403.exe (PID: 13384)
      • Unicorn-9059.exe (PID: 13232)
      • Unicorn-5743.exe (PID: 13316)
      • Unicorn-40454.exe (PID: 13416)
      • Unicorn-40454.exe (PID: 13408)
      • Unicorn-62655.exe (PID: 13432)
      • Unicorn-62655.exe (PID: 13424)
      • Unicorn-18920.exe (PID: 13464)
      • Unicorn-43351.exe (PID: 13504)
      • Unicorn-25041.exe (PID: 13552)
      • Unicorn-40454.exe (PID: 13356)
      • Unicorn-35064.exe (PID: 13612)
      • Unicorn-47871.exe (PID: 13584)
      • Unicorn-56039.exe (PID: 13600)
      • Unicorn-5329.exe (PID: 13680)
      • Unicorn-54530.exe (PID: 13636)
      • Unicorn-12213.exe (PID: 13716)
      • Unicorn-51784.exe (PID: 13544)
      • Unicorn-39651.exe (PID: 13752)
      • Unicorn-39996.exe (PID: 11636)
      • Unicorn-32251.exe (PID: 13868)
      • Unicorn-51982.exe (PID: 13880)
      • Unicorn-8587.exe (PID: 14156)
      • Unicorn-11498.exe (PID: 14304)
      • Unicorn-23750.exe (PID: 14320)
      • Unicorn-19666.exe (PID: 14328)
      • Unicorn-25233.exe (PID: 5428)
      • Unicorn-50507.exe (PID: 14344)
      • Unicorn-39075.exe (PID: 13572)
      • Unicorn-32197.exe (PID: 14384)
      • Unicorn-31918.exe (PID: 14264)
      • Unicorn-8129.exe (PID: 13688)
      • Unicorn-46494.exe (PID: 14500)
      • Unicorn-14762.exe (PID: 14668)
      • Unicorn-51156.exe (PID: 14604)
      • Unicorn-65254.exe (PID: 14612)
      • Unicorn-55603.exe (PID: 14652)
      • Unicorn-34363.exe (PID: 14684)
      • Unicorn-34363.exe (PID: 14740)
      • Unicorn-43351.exe (PID: 14368)
      • Unicorn-54664.exe (PID: 14400)
      • Unicorn-37944.exe (PID: 14476)
      • Unicorn-28497.exe (PID: 14676)
      • Unicorn-20137.exe (PID: 14312)
      • Unicorn-39008.exe (PID: 15492)
      • Unicorn-35182.exe (PID: 14748)
      • Unicorn-40300.exe (PID: 14516)
      • Unicorn-36631.exe (PID: 15124)
      • Unicorn-61592.exe (PID: 15052)
      • Unicorn-48416.exe (PID: 15004)
      • Unicorn-5582.exe (PID: 14628)
      • Unicorn-24221.exe (PID: 14296)
      • Unicorn-14119.exe (PID: 15540)
      • Unicorn-25697.exe (PID: 14716)
      • Unicorn-9459.exe (PID: 15184)
      • Unicorn-17436.exe (PID: 15376)
      • Unicorn-3226.exe (PID: 14984)
      • Unicorn-25697.exe (PID: 14692)
      • Unicorn-2147.exe (PID: 14568)
      • Unicorn-48468.exe (PID: 14540)
      • Unicorn-45263.exe (PID: 11216)
      • Unicorn-48883.exe (PID: 15100)
      • Unicorn-27978.exe (PID: 15596)
      • Unicorn-47944.exe (PID: 15868)
      • Unicorn-43594.exe (PID: 13628)
      • Unicorn-39267.exe (PID: 15268)
      • Unicorn-26228.exe (PID: 14756)
      • Unicorn-25697.exe (PID: 14700)
      • Unicorn-25697.exe (PID: 14732)
      • Unicorn-19444.exe (PID: 14764)
      • Unicorn-3470.exe (PID: 14800)
      • Unicorn-3470.exe (PID: 14808)
      • Unicorn-6719.exe (PID: 15884)
      • Unicorn-53216.exe (PID: 13060)
      • Unicorn-48395.exe (PID: 14888)
      • Unicorn-15463.exe (PID: 16184)
      • Unicorn-34353.exe (PID: 16084)
      • Unicorn-64816.exe (PID: 16204)
      • Unicorn-53351.exe (PID: 16160)
      • Unicorn-7414.exe (PID: 16132)
      • Unicorn-43666.exe (PID: 16176)
      • Unicorn-53351.exe (PID: 16168)
      • Unicorn-4342.exe (PID: 16192)
      • Unicorn-62942.exe (PID: 16072)
      • Unicorn-15277.exe (PID: 16252)
      • Unicorn-53351.exe (PID: 16236)
      • Unicorn-53351.exe (PID: 16212)
    • Create files in a temporary directory

      • 1 (1363).exe (PID: 6112)
      • Unicorn-37904.exe (PID: 5988)
      • Unicorn-44977.exe (PID: 2340)
      • Unicorn-24234.exe (PID: 5344)
      • Unicorn-63818.exe (PID: 4628)
      • Unicorn-63472.exe (PID: 4024)
      • Unicorn-26206.exe (PID: 864)
      • Unicorn-10187.exe (PID: 976)
      • Unicorn-2963.exe (PID: 2692)
      • Unicorn-22440.exe (PID: 5504)
      • Unicorn-43991.exe (PID: 6564)
      • Unicorn-46871.exe (PID: 5756)
      • Unicorn-5475.exe (PID: 2240)
      • Unicorn-4713.exe (PID: 2772)
      • Unicorn-13259.exe (PID: 5360)
      • Unicorn-25512.exe (PID: 2040)
      • Unicorn-12304.exe (PID: 4996)
      • Unicorn-32393.exe (PID: 2284)
      • Unicorn-30342.exe (PID: 2384)
      • Unicorn-4389.exe (PID: 5228)
      • Unicorn-26223.exe (PID: 6744)
      • Unicorn-23902.exe (PID: 6768)
      • Unicorn-53088.exe (PID: 1532)
      • Unicorn-58355.exe (PID: 1348)
      • Unicorn-40644.exe (PID: 6540)
      • Unicorn-23081.exe (PID: 5384)
      • Unicorn-61619.exe (PID: 1116)
      • Unicorn-48547.exe (PID: 7172)
      • Unicorn-6657.exe (PID: 7260)
      • Unicorn-19648.exe (PID: 7220)
      • Unicorn-32646.exe (PID: 7248)
      • Unicorn-42616.exe (PID: 2420)
      • Unicorn-57119.exe (PID: 7548)
      • Unicorn-39330.exe (PID: 7344)
      • Unicorn-38828.exe (PID: 7600)
      • Unicorn-22470.exe (PID: 7420)
      • Unicorn-13098.exe (PID: 7484)
      • Unicorn-21148.exe (PID: 7288)
      • Unicorn-45460.exe (PID: 7352)
      • Unicorn-43680.exe (PID: 7780)
      • Unicorn-58480.exe (PID: 7436)
      • Unicorn-54951.exe (PID: 7448)
      • Unicorn-41006.exe (PID: 4380)
      • Unicorn-13342.exe (PID: 7324)
      • Unicorn-33296.exe (PID: 6512)
      • Unicorn-25594.exe (PID: 7336)
      • Unicorn-46871.exe (PID: 5436)
      • Unicorn-34287.exe (PID: 7636)
      • Unicorn-9176.exe (PID: 7756)
      • Unicorn-24028.exe (PID: 7876)
      • Unicorn-1614.exe (PID: 8004)
      • Unicorn-23068.exe (PID: 7804)
      • Unicorn-54567.exe (PID: 7508)
      • Unicorn-45859.exe (PID: 856)
      • Unicorn-3149.exe (PID: 7456)
      • Unicorn-46871.exe (PID: 2096)
      • Unicorn-45740.exe (PID: 3768)
      • Unicorn-60466.exe (PID: 7996)
      • Unicorn-26384.exe (PID: 7628)
      • Unicorn-42201.exe (PID: 7952)
      • Unicorn-45652.exe (PID: 7276)
      • Unicorn-13695.exe (PID: 8208)
      • Unicorn-58672.exe (PID: 7400)
      • Unicorn-28688.exe (PID: 7980)
      • Unicorn-50120.exe (PID: 7500)
      • Unicorn-63249.exe (PID: 7540)
      • Unicorn-64292.exe (PID: 7696)
      • Unicorn-55126.exe (PID: 6488)
      • Unicorn-27270.exe (PID: 6876)
      • Unicorn-30084.exe (PID: 7412)
      • Unicorn-28304.exe (PID: 7852)
      • Unicorn-11863.exe (PID: 1052)
      • Unicorn-62866.exe (PID: 8340)
      • Unicorn-58407.exe (PID: 8172)
      • Unicorn-31340.exe (PID: 8264)
      • Unicorn-61427.exe (PID: 7188)
      • Unicorn-32086.exe (PID: 8500)
      • Unicorn-20624.exe (PID: 8524)
      • Unicorn-21288.exe (PID: 8084)
      • Unicorn-38932.exe (PID: 8396)
      • Unicorn-57062.exe (PID: 7920)
      • Unicorn-18984.exe (PID: 7748)
      • Unicorn-14567.exe (PID: 9056)
      • Unicorn-4405.exe (PID: 8280)
      • Unicorn-44344.exe (PID: 7240)
      • Unicorn-33081.exe (PID: 7840)
      • Unicorn-7006.exe (PID: 8348)
      • Unicorn-30608.exe (PID: 3140)
      • Unicorn-13202.exe (PID: 8812)
      • Unicorn-47359.exe (PID: 7620)
      • Unicorn-51583.exe (PID: 5084)
      • Unicorn-22906.exe (PID: 8012)
      • Unicorn-58458.exe (PID: 8676)
      • Unicorn-37484.exe (PID: 7268)
      • Unicorn-55268.exe (PID: 8384)
      • Unicorn-24604.exe (PID: 7972)
      • Unicorn-8651.exe (PID: 8180)
      • Unicorn-4433.exe (PID: 7472)
      • Unicorn-52667.exe (PID: 7316)
      • Unicorn-42004.exe (PID: 9028)
      • Unicorn-20240.exe (PID: 8632)
      • Unicorn-12102.exe (PID: 10224)
      • Unicorn-23763.exe (PID: 7868)
      • Unicorn-3010.exe (PID: 7832)
      • Unicorn-48916.exe (PID: 8312)
      • Unicorn-35595.exe (PID: 7084)
      • Unicorn-23992.exe (PID: 10108)
      • Unicorn-52398.exe (PID: 8232)
      • Unicorn-22906.exe (PID: 8016)
      • Unicorn-35806.exe (PID: 8560)
      • Unicorn-22264.exe (PID: 9668)
      • Unicorn-44744.exe (PID: 8640)
      • Unicorn-1910.exe (PID: 8964)
      • Unicorn-51952.exe (PID: 8492)
      • Unicorn-38356.exe (PID: 10624)
      • Unicorn-59470.exe (PID: 6208)
      • Unicorn-38710.exe (PID: 10704)
      • Unicorn-19346.exe (PID: 2852)
      • Unicorn-22906.exe (PID: 2516)
      • Unicorn-2979.exe (PID: 8320)
      • Unicorn-30328.exe (PID: 8876)
      • Unicorn-7986.exe (PID: 8760)
      • Unicorn-33068.exe (PID: 8824)
      • Unicorn-31877.exe (PID: 8040)
      • Unicorn-61812.exe (PID: 10900)
      • Unicorn-53452.exe (PID: 6852)
      • Unicorn-63493.exe (PID: 9036)
      • Unicorn-26553.exe (PID: 8600)
      • Unicorn-45304.exe (PID: 7792)
      • Unicorn-64426.exe (PID: 812)
      • Unicorn-56835.exe (PID: 9756)
      • Unicorn-51931.exe (PID: 8332)
      • Unicorn-32824.exe (PID: 7380)
      • Unicorn-51916.exe (PID: 11100)
      • Unicorn-33841.exe (PID: 7904)
      • Unicorn-49634.exe (PID: 12780)
      • Unicorn-6946.exe (PID: 12796)
      • Unicorn-11894.exe (PID: 7960)
      • Unicorn-57624.exe (PID: 4736)
      • Unicorn-36310.exe (PID: 9224)
      • Unicorn-12014.exe (PID: 11020)
      • Unicorn-36450.exe (PID: 8884)
      • Unicorn-52580.exe (PID: 10088)
      • Unicorn-59108.exe (PID: 8076)
      • Unicorn-45263.exe (PID: 11200)
      • Unicorn-53592.exe (PID: 9428)
      • Unicorn-24137.exe (PID: 8804)
      • Unicorn-20690.exe (PID: 7860)
      • Unicorn-26937.exe (PID: 8836)
      • Unicorn-42559.exe (PID: 10528)
      • Unicorn-21150.exe (PID: 12240)
      • Unicorn-42802.exe (PID: 10652)
      • Unicorn-16246.exe (PID: 12908)
      • Unicorn-46503.exe (PID: 10352)
      • Unicorn-8587.exe (PID: 14156)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | Win32 Executable (generic) (52.9)
.exe | Generic Win/DOS Executable (23.5)
.exe | DOS Executable Generic (23.5)

EXIF

EXE

MachineType: Intel 386 or later, and compatibles
TimeStamp: 2019:01:19 13:36:00+00:00
ImageFileCharacteristics: No relocs, Executable, No line numbers, No symbols, 32-bit, No debug, Removable run from swap, Net run from swap, Uniprocessor only, Bytes reversed hi
PEType: PE32
LinkerVersion: 6
CodeSize: 176128
InitializedDataSize: 299008
UninitializedDataSize: -
EntryPoint: 0x13d4
OSVersion: 4
ImageVersion: 1
SubsystemVersion: 4
Subsystem: Windows GUI
FileVersionNumber: 1.0.0.0
ProductVersionNumber: 1.0.0.0
FileFlagsMask: 0x003f
FileFlags: (none)
FileOS: Win32
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: Chinese (Simplified)
CharacterSet: Unicode
CompanyName: UEFI
ProductName: Kawaii-Unicorn
FileVersion: 1
ProductVersion: 1
InternalName: Kawaii-Unicorn
OriginalFileName: Kawaii-Unicorn.exe
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
651
Monitored processes
516
Malicious processes
83
Suspicious processes
68

Behavior graph

Click at the process to see the details
start 1 (1363).exe sppextcomobj.exe no specs slui.exe unicorn-2963.exe unicorn-37904.exe unicorn-26206.exe unicorn-44977.exe unicorn-24234.exe unicorn-12304.exe unicorn-63818.exe unicorn-26223.exe unicorn-43991.exe unicorn-63472.exe unicorn-10187.exe unicorn-22440.exe unicorn-46871.exe unicorn-41006.exe unicorn-27270.exe unicorn-45740.exe unicorn-58355.exe unicorn-23081.exe unicorn-33296.exe unicorn-42616.exe unicorn-5475.exe unicorn-4713.exe unicorn-46871.exe unicorn-46871.exe unicorn-13259.exe unicorn-30342.exe unicorn-25512.exe unicorn-45859.exe unicorn-4389.exe unicorn-50208.exe unicorn-32393.exe unicorn-23902.exe unicorn-53088.exe unicorn-55126.exe unicorn-11863.exe unicorn-61619.exe unicorn-40644.exe unicorn-48547.exe unicorn-61427.exe unicorn-19648.exe unicorn-44344.exe unicorn-32646.exe unicorn-6657.exe unicorn-37484.exe unicorn-45652.exe unicorn-21148.exe unicorn-52667.exe unicorn-13342.exe unicorn-25594.exe unicorn-39330.exe unicorn-45460.exe unicorn-32824.exe unicorn-58672.exe unicorn-30084.exe unicorn-22470.exe unicorn-58480.exe unicorn-54951.exe unicorn-3149.exe unicorn-4433.exe unicorn-13098.exe unicorn-50120.exe unicorn-54567.exe unicorn-63249.exe unicorn-57119.exe unicorn-38828.exe unicorn-47359.exe unicorn-26384.exe unicorn-34287.exe unicorn-64292.exe unicorn-18984.exe unicorn-9176.exe unicorn-43680.exe unicorn-45304.exe unicorn-23068.exe unicorn-3010.exe unicorn-33081.exe unicorn-28304.exe unicorn-20690.exe unicorn-23763.exe unicorn-24028.exe unicorn-42201.exe unicorn-11894.exe unicorn-24604.exe unicorn-28688.exe unicorn-60466.exe unicorn-1614.exe unicorn-31877.exe unicorn-21288.exe unicorn-58407.exe unicorn-8651.exe unicorn-51583.exe unicorn-30608.exe unicorn-13695.exe unicorn-40146.exe unicorn-52398.exe unicorn-31340.exe unicorn-51568.exe unicorn-4405.exe unicorn-48916.exe unicorn-2979.exe unicorn-51931.exe unicorn-62866.exe unicorn-7006.exe unicorn-55268.exe unicorn-38932.exe unicorn-15772.exe no specs unicorn-56188.exe unicorn-27640.exe unicorn-51952.exe unicorn-32086.exe unicorn-20624.exe unicorn-53104.exe unicorn-35806.exe unicorn-3903.exe unicorn-12818.exe no specs unicorn-26553.exe unicorn-20240.exe unicorn-44744.exe unicorn-58458.exe unicorn-40468.exe unicorn-4671.exe no specs unicorn-21200.exe unicorn-34521.exe unicorn-7986.exe unicorn-41428.exe unicorn-24137.exe unicorn-13202.exe unicorn-33068.exe unicorn-26937.exe unicorn-30328.exe unicorn-36450.exe unicorn-5439.exe unicorn-5247.exe no specs unicorn-1910.exe unicorn-17692.exe unicorn-42004.exe unicorn-63493.exe unicorn-14567.exe unicorn-30904.exe no specs unicorn-39072.exe no specs unicorn-14183.exe unicorn-57062.exe unicorn-59108.exe unicorn-22906.exe unicorn-22906.exe unicorn-22906.exe unicorn-22906.exe unicorn-33841.exe unicorn-15335.exe no specs unicorn-61007.exe no specs unicorn-19346.exe unicorn-3830.exe unicorn-13481.exe no specs unicorn-36310.exe unicorn-61329.exe no specs unicorn-31480.exe unicorn-7530.exe no specs unicorn-65039.exe no specs unicorn-28356.exe unicorn-56295.exe no specs unicorn-12190.exe no specs unicorn-25925.exe no specs unicorn-58615.exe no specs unicorn-53592.exe unicorn-21090.exe unicorn-36170.exe unicorn-54552.exe no specs unicorn-54552.exe unicorn-25964.exe unicorn-38216.exe no specs unicorn-20534.exe no specs unicorn-30218.exe unicorn-49892.exe unicorn-62144.exe no specs unicorn-1438.exe no specs unicorn-21038.exe unicorn-15173.exe unicorn-38792.exe no specs unicorn-22264.exe unicorn-47131.exe no specs unicorn-26156.exe no specs unicorn-43836.exe no specs unicorn-41293.exe unicorn-56835.exe unicorn-57115.exe no specs unicorn-14863.exe unicorn-63872.exe no specs unicorn-3571.exe unicorn-52580.exe unicorn-26684.exe no specs unicorn-23992.exe unicorn-12102.exe unicorn-35595.exe unicorn-57624.exe unicorn-29729.exe unicorn-45372.exe no specs unicorn-8158.exe unicorn-54095.exe unicorn-29729.exe no specs unicorn-33120.exe unicorn-59470.exe unicorn-24568.exe unicorn-28652.exe no specs unicorn-46140.exe unicorn-17552.exe no specs unicorn-59139.exe unicorn-38334.exe no specs unicorn-46503.exe unicorn-60238.exe unicorn-40712.exe no specs unicorn-50395.exe no specs unicorn-56665.exe no specs unicorn-42559.exe unicorn-5113.exe no specs unicorn-7913.exe no specs unicorn-2346.exe unicorn-38356.exe unicorn-54268.exe unicorn-42802.exe unicorn-53523.exe no specs unicorn-38710.exe unicorn-46878.exe no specs unicorn-35942.exe no specs unicorn-35942.exe no specs unicorn-49678.exe no specs unicorn-64723.exe no specs unicorn-4753.exe no specs unicorn-43364.exe unicorn-27756.exe unicorn-50254.exe no specs unicorn-12014.exe unicorn-8864.exe no specs unicorn-54801.exe no specs unicorn-54146.exe unicorn-60011.exe no specs unicorn-60011.exe no specs unicorn-61023.exe no specs unicorn-9221.exe unicorn-51916.exe unicorn-10373.exe no specs unicorn-40816.exe no specs unicorn-65128.exe no specs unicorn-39662.exe unicorn-45263.exe unicorn-45263.exe unicorn-45263.exe no specs unicorn-45263.exe no specs unicorn-45263.exe no specs unicorn-9797.exe no specs unicorn-37692.exe no specs unicorn-49944.exe no specs unicorn-64426.exe unicorn-12922.exe no specs unicorn-23393.exe no specs unicorn-41319.exe no specs unicorn-61812.exe unicorn-53452.exe unicorn-12611.exe unicorn-59435.exe no specs unicorn-40114.exe no specs unicorn-5403.exe unicorn-19693.exe unicorn-25632.exe no specs unicorn-22700.exe no specs unicorn-4225.exe no specs unicorn-59072.exe no specs unicorn-14147.exe unicorn-39996.exe unicorn-3047.exe no specs unicorn-23660.exe no specs unicorn-47972.exe no specs unicorn-56140.exe no specs unicorn-2855.exe no specs unicorn-52803.exe no specs unicorn-1001.exe no specs unicorn-63738.exe no specs unicorn-60971.exe unicorn-52803.exe no specs unicorn-52803.exe no specs unicorn-40166.exe no specs unicorn-40166.exe no specs unicorn-23638.exe no specs unicorn-26597.exe no specs unicorn-15662.exe no specs unicorn-59071.exe no specs unicorn-50281.exe unicorn-40380.exe no specs unicorn-40489.exe unicorn-47763.exe unicorn-37316.exe no specs unicorn-37124.exe unicorn-12235.exe no specs unicorn-12235.exe no specs unicorn-24488.exe unicorn-21150.exe unicorn-19701.exe unicorn-19701.exe no specs unicorn-19701.exe no specs unicorn-19701.exe no specs unicorn-19701.exe no specs unicorn-19701.exe no specs unicorn-19701.exe unicorn-16901.exe unicorn-366.exe no specs unicorn-5966.exe unicorn-5966.exe no specs unicorn-5966.exe no specs unicorn-5966.exe no specs unicorn-25567.exe no specs unicorn-5966.exe unicorn-5966.exe no specs unicorn-49184.exe no specs unicorn-31953.exe no specs unicorn-44007.exe no specs unicorn-57418.exe no specs unicorn-43682.exe unicorn-13731.exe no specs unicorn-46728.exe no specs unicorn-6563.exe no specs unicorn-49634.exe unicorn-6946.exe unicorn-39818.exe unicorn-40123.exe no specs unicorn-64700.exe no specs unicorn-27181.exe no specs unicorn-16246.exe unicorn-35847.exe no specs unicorn-29981.exe no specs unicorn-30586.exe no specs unicorn-45987.exe unicorn-10521.exe no specs unicorn-18689.exe no specs unicorn-57684.exe unicorn-7141.exe no specs unicorn-37072.exe no specs unicorn-25374.exe no specs unicorn-49059.exe no specs unicorn-53216.exe no specs unicorn-30611.exe no specs unicorn-34633.exe no specs unicorn-9059.exe no specs unicorn-44473.exe no specs unicorn-41540.exe no specs unicorn-18188.exe no specs unicorn-507.exe no specs unicorn-5743.exe no specs unicorn-22080.exe unicorn-40454.exe no specs unicorn-40454.exe no specs unicorn-50403.exe no specs unicorn-40454.exe no specs unicorn-40454.exe no specs unicorn-40454.exe no specs unicorn-40454.exe no specs unicorn-62655.exe no specs unicorn-62655.exe no specs unicorn-18920.exe no specs unicorn-15582.exe no specs unicorn-43351.exe no specs unicorn-47700.exe no specs unicorn-51784.exe no specs unicorn-25041.exe no specs unicorn-39075.exe no specs unicorn-47871.exe no specs unicorn-56039.exe no specs unicorn-35064.exe no specs unicorn-43594.exe no specs unicorn-54530.exe no specs unicorn-18078.exe no specs unicorn-18078.exe no specs unicorn-5329.exe no specs unicorn-8129.exe no specs unicorn-58415.exe no specs unicorn-64015.exe no specs unicorn-12213.exe no specs unicorn-2007.exe no specs unicorn-39651.exe no specs unicorn-6859.exe no specs unicorn-65188.exe no specs unicorn-32251.exe no specs unicorn-51982.exe no specs unicorn-15796.exe no specs unicorn-25500.exe no specs unicorn-419.exe unicorn-8587.exe unicorn-4311.exe slui.exe no specs unicorn-31918.exe no specs unicorn-37486.exe no specs unicorn-24221.exe no specs unicorn-11498.exe no specs unicorn-20137.exe no specs unicorn-23750.exe no specs unicorn-19666.exe no specs unicorn-25233.exe no specs unicorn-23750.exe no specs unicorn-50507.exe no specs unicorn-50507.exe no specs unicorn-43351.exe no specs unicorn-32197.exe no specs unicorn-54664.exe no specs unicorn-58556.exe no specs unicorn-37944.exe no specs unicorn-51308.exe no specs unicorn-46494.exe no specs unicorn-12213.exe no specs unicorn-40300.exe no specs unicorn-48468.exe no specs unicorn-2147.exe no specs unicorn-51156.exe no specs unicorn-65254.exe no specs unicorn-45918.exe no specs unicorn-5582.exe no specs unicorn-13750.exe no specs unicorn-3801.exe unicorn-55603.exe no specs unicorn-14762.exe no specs unicorn-28497.exe no specs unicorn-34363.exe no specs unicorn-25697.exe no specs unicorn-25697.exe no specs unicorn-25697.exe no specs unicorn-25697.exe no specs unicorn-34363.exe no specs unicorn-25697.exe no specs unicorn-34363.exe no specs unicorn-35182.exe no specs unicorn-26228.exe no specs unicorn-19444.exe no specs unicorn-54154.exe no specs unicorn-3470.exe no specs unicorn-3470.exe no specs unicorn-48395.exe no specs unicorn-44146.exe no specs unicorn-7575.exe no specs unicorn-3226.exe no specs unicorn-48416.exe no specs unicorn-523.exe no specs unicorn-1078.exe no specs unicorn-41364.exe no specs unicorn-61592.exe no specs unicorn-48883.exe no specs unicorn-57051.exe no specs unicorn-36631.exe no specs unicorn-27965.exe no specs unicorn-9459.exe no specs unicorn-39267.exe no specs unicorn-17436.exe no specs unicorn-63512.exe unicorn-39008.exe no specs unicorn-14119.exe unicorn-27978.exe no specs unicorn-1483.exe no specs unicorn-18012.exe no specs unicorn-56450.exe no specs unicorn-47944.exe no specs unicorn-6719.exe no specs unicorn-31224.exe no specs unicorn-19526.exe no specs unicorn-35308.exe no specs unicorn-29177.exe no specs unicorn-62942.exe no specs unicorn-34353.exe no specs unicorn-5278.exe no specs unicorn-7414.exe no specs unicorn-65411.exe no specs unicorn-43666.exe no specs unicorn-7414.exe no specs unicorn-61519.exe no specs unicorn-20294.exe no specs unicorn-53351.exe unicorn-53351.exe unicorn-43666.exe no specs unicorn-15463.exe no specs unicorn-4342.exe no specs unicorn-64816.exe no specs unicorn-53351.exe no specs unicorn-53351.exe no specs unicorn-53351.exe no specs unicorn-53351.exe no specs unicorn-49267.exe no specs unicorn-15277.exe unicorn-3330.exe no specs unicorn-1549.exe no specs unicorn-1549.exe no specs unicorn-20678.exe no specs unicorn-66.exe no specs unicorn-23751.exe no specs unicorn-32376.exe no specs unicorn-47750.exe no specs unicorn-1549.exe no specs unicorn-4342.exe no specs unicorn-40550.exe unicorn-8810.exe no specs unicorn-11915.exe no specs unicorn-34605.exe no specs unicorn-20050.exe no specs unicorn-20050.exe no specs unicorn-20050.exe no specs unicorn-20050.exe no specs unicorn-29038.exe no specs unicorn-48904.exe unicorn-20050.exe no specs unicorn-29038.exe no specs unicorn-450.exe no specs unicorn-450.exe no specs unicorn-14185.exe no specs unicorn-14185.exe no specs unicorn-14185.exe no specs unicorn-45402.exe no specs unicorn-11385.exe no specs unicorn-64538.exe no specs unicorn-62500.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
744C:\Users\admin\AppData\Local\Temp\Unicorn-12922.exeC:\Users\admin\AppData\Local\Temp\Unicorn-12922.exeUnicorn-25512.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-12922.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
776C:\Users\admin\AppData\Local\Temp\Unicorn-19701.exeC:\Users\admin\AppData\Local\Temp\Unicorn-19701.exe
Unicorn-61427.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-19701.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
812C:\Users\admin\AppData\Local\Temp\Unicorn-64426.exeC:\Users\admin\AppData\Local\Temp\Unicorn-64426.exe
Unicorn-32824.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-64426.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
856C:\Users\admin\AppData\Local\Temp\Unicorn-45859.exeC:\Users\admin\AppData\Local\Temp\Unicorn-45859.exe
Unicorn-2963.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-45859.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
864C:\Users\admin\AppData\Local\Temp\Unicorn-26206.exeC:\Users\admin\AppData\Local\Temp\Unicorn-26206.exe
1 (1363).exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-26206.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
872C:\Users\admin\AppData\Local\Temp\Unicorn-29729.exeC:\Users\admin\AppData\Local\Temp\Unicorn-29729.exeUnicorn-23081.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-29729.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
976C:\Users\admin\AppData\Local\Temp\Unicorn-10187.exeC:\Users\admin\AppData\Local\Temp\Unicorn-10187.exe
Unicorn-63818.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-10187.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1052C:\Users\admin\AppData\Local\Temp\Unicorn-11863.exeC:\Users\admin\AppData\Local\Temp\Unicorn-11863.exe
Unicorn-33296.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-11863.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1116C:\Users\admin\AppData\Local\Temp\Unicorn-61619.exeC:\Users\admin\AppData\Local\Temp\Unicorn-61619.exe
Unicorn-10187.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-61619.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1164C:\Users\admin\AppData\Local\Temp\Unicorn-16901.exeC:\Users\admin\AppData\Local\Temp\Unicorn-16901.exe
Unicorn-43991.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-16901.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
Total events
10 726
Read events
10 726
Write events
0
Delete events
0

Modification events

No data
Executable files
772
Suspicious files
0
Text files
0
Unknown types
0

Dropped files

PID
Process
Filename
Type
61121 (1363).exeC:\Users\admin\AppData\Local\Temp\Unicorn-46871.exeexecutable
MD5:B35F42C759BA8E942AD16A5D9D71A129
SHA256:764985C7FCBEE9F537A04D577E0D929299AAFAD9DDFD440CC7C399F96615C042
2692Unicorn-2963.exeC:\Users\admin\AppData\Local\Temp\Unicorn-24234.exeexecutable
MD5:DECEAEA9DA2AFD034083B2CCAE66CEA2
SHA256:FF41976BEEDCD90A3E2746238570921B932A36674D7BE121CD18817ED2EB7B6F
61121 (1363).exeC:\Users\admin\AppData\Local\Temp\Unicorn-63818.exeexecutable
MD5:F0384EBFAE6060FEA665EE63E84033F2
SHA256:01BA945C1E7F13A20920D4F1D31DB9B7A04292F7157CE213D0C5E5492DE33935
5988Unicorn-37904.exeC:\Users\admin\AppData\Local\Temp\Unicorn-44977.exeexecutable
MD5:E3C35F330DAE15FB1BF2104A37B0E782
SHA256:2DFA66400896DF6F5C9D163C26B66FBC11EF742FD294EEC552B9A61BA589730E
61121 (1363).exeC:\Users\admin\AppData\Local\Temp\Unicorn-2963.exeexecutable
MD5:698893BE939210F1E3D8D15CE429E115
SHA256:1BC253570C0BBE64DCEE84DB183A9727EA15E4F6AD952B4863F1B224734C50DE
61121 (1363).exeC:\Users\admin\AppData\Local\Temp\Unicorn-26206.exeexecutable
MD5:E58B9D117B6AAA70C43D25BB06A2EDD6
SHA256:3C285ADA3712B61D55746ABE6F297954123311007D086661C89A6EA2B0751EDE
864Unicorn-26206.exeC:\Users\admin\AppData\Local\Temp\Unicorn-12304.exeexecutable
MD5:E649AF92DAE02D08694338B95723004F
SHA256:95ABFAA002B1603F57CCE1D3326059219B37B521C0D44DE13A1EF11EE21527CE
4996Unicorn-12304.exeC:\Users\admin\AppData\Local\Temp\Unicorn-22440.exeexecutable
MD5:EC94A32862AB128F433ACFECD15E3E71
SHA256:C1569B2596A50B8B440041BDF3B68F24AA92E021723C8DBFA5BC8364E87299CB
2340Unicorn-44977.exeC:\Users\admin\AppData\Local\Temp\Unicorn-26223.exeexecutable
MD5:615B2AED3772A181248FC20408284C06
SHA256:3A83F05FA8D484FA3F2D76C5F94E9EB11143720D3F3E086A353E80638C991308
5988Unicorn-37904.exeC:\Users\admin\AppData\Local\Temp\Unicorn-43991.exeexecutable
MD5:5EADC4FE676AAFDAE318D8A9CBE4C831
SHA256:5993C727DD99C9A9F44B2E4FF9AE1F49F11750CAAE47F79266FA512C7018014D
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
5
TCP/UDP connections
22
DNS requests
16
Threats
0

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
5496
MoUsoCoreWorker.exe
GET
200
104.124.11.58:80
http://crl.microsoft.com/pki/crl/products/MicRooCerAut2011_2011_03_22.crl
unknown
whitelisted
6544
svchost.exe
GET
200
184.30.131.245:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
8012
SIHClient.exe
GET
200
23.38.73.129:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Product%20Root%20Certificate%20Authority%202018.crl
unknown
whitelisted
8012
SIHClient.exe
GET
200
23.38.73.129:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Update%20Secure%20Server%20CA%202.1.crl
unknown
whitelisted
1532
backgroundTaskHost.exe
GET
200
184.30.131.245:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAUZZSZEml49Gjh0j13P68w%3D
unknown
whitelisted
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
4
System
192.168.100.255:137
whitelisted
51.104.136.2:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
5496
MoUsoCoreWorker.exe
104.124.11.58:80
crl.microsoft.com
Akamai International B.V.
DE
whitelisted
2104
svchost.exe
51.104.136.2:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
5496
MoUsoCoreWorker.exe
51.104.136.2:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
4
System
192.168.100.255:138
whitelisted
4996
RUXIMICS.exe
51.104.136.2:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
3216
svchost.exe
40.113.103.199:443
client.wns.windows.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
6544
svchost.exe
40.126.31.67:443
login.live.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
6544
svchost.exe
184.30.131.245:80
ocsp.digicert.com
AKAMAI-AS
US
whitelisted

DNS requests

Domain
IP
Reputation
google.com
  • 142.250.185.78
whitelisted
settings-win.data.microsoft.com
  • 51.104.136.2
whitelisted
crl.microsoft.com
  • 104.124.11.58
  • 104.124.11.17
whitelisted
client.wns.windows.com
  • 40.113.103.199
whitelisted
login.live.com
  • 40.126.31.67
  • 20.190.159.129
  • 40.126.31.69
  • 40.126.31.129
  • 40.126.31.130
  • 20.190.159.64
  • 40.126.31.1
  • 40.126.31.2
whitelisted
ocsp.digicert.com
  • 184.30.131.245
whitelisted
arc.msn.com
  • 20.31.169.57
whitelisted
slscr.update.microsoft.com
  • 52.149.20.212
whitelisted
www.microsoft.com
  • 23.38.73.129
whitelisted
fe3cr.delivery.mp.microsoft.com
  • 13.85.23.206
whitelisted

Threats

No threats detected
No debug info