| File name: | fswssmonitor.exe |
| Full analysis: | https://app.any.run/tasks/42cc1677-46b5-4469-8c88-765f0297e52a |
| Verdict: | No threats detected |
| Analysis date: | June 04, 2020, 15:08:31 |
| OS: | Windows 7 Professional Service Pack 1 (build: 7601, 32 bit) |
| MIME: | application/octet-stream |
| File info: | MS Compress archive data |
| MD5: | C6CD7A293C78CB93897849A0A3F7D511 |
| SHA1: | E1FD75338D47B06D83D200A56BC0BDCBADBA7003 |
| SHA256: | E377F46E5483FD0C1EDC84FD44978CB0AE68258CFBCB2E283A5ED58ABF278760 |
| SSDEEP: | 1536:z4LmR5qTA8UQ2hL16xbK8B9Ikxq2Kc1Scw:JuTBUQwLcxe8IN2zScw |
| .ex_ | | | Microsoft SZDD compressed (Haruhiko Okumura's LZSS) (100) |
|---|
PID | CMD | Path | Indicators | Parent process | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 2364 | "C:\Windows\system32\ntvdm.exe" -i1 | C:\Windows\system32\ntvdm.exe | explorer.exe | ||||||||||||
User: admin Company: Microsoft Corporation Integrity Level: MEDIUM Description: NTVDM.EXE Exit code: 3221225622 Version: 6.1.7600.16385 (win7_rtm.090713-1255) Modules
| |||||||||||||||