| File name: | 842e75f3b013d7a85031778707b75a70.zip |
| Full analysis: | https://app.any.run/tasks/00b7adf6-14e1-4c9f-baba-90333825bf9b |
| Verdict: | No threats detected |
| Analysis date: | December 27, 2019, 17:14:31 |
| OS: | Windows 7 Professional Service Pack 1 (build: 7601, 32 bit) |
| Indicators: | |
| MIME: | application/zip |
| File info: | Zip archive data, at least v2.0 to extract |
| MD5: | 336815D102F45127F37EFEF8E3A4FE83 |
| SHA1: | E5B61963FB428FAB7CACB69B8742BE81F00585D7 |
| SHA256: | E479D133C6630FE71356BD08BAB0DB80D0F9F7A7EFD1BF8FAAB81C6BFCAC95F9 |
| SSDEEP: | 98304:PhO4vOqvww0p7J8slxRNIQOBizujMZ0MP4c6foDYk9kFbjgVyZU:PhO6roJDrRWjKUML6fE9SFQVqU |
| .zip | | | ZIP compressed archive (100) |
|---|
| ZipRequiredVersion: | 20 |
|---|---|
| ZipBitFlag: | - |
| ZipCompression: | Deflated |
| ZipModifyDate: | 2013:03:15 12:52:04 |
| ZipCRC: | 0xbe6e3905 |
| ZipCompressedSize: | 12496 |
| ZipUncompressedSize: | 21448 |
| ZipFileName: | aksclass.sys |
PID | CMD | Path | Indicators | Parent process | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 964 | "C:\Program Files\WinRAR\WinRAR.exe" "C:\Users\admin\AppData\Local\Temp\842e75f3b013d7a85031778707b75a70.zip" | C:\Program Files\WinRAR\WinRAR.exe | explorer.exe | ||||||||||||
User: admin Company: Alexander Roshal Integrity Level: MEDIUM Description: WinRAR archiver Exit code: 0 Version: 5.60.0 Modules
| |||||||||||||||
| 2172 | "C:\Users\admin\Desktop\hasplms.exe" | C:\Users\admin\Desktop\hasplms.exe | — | explorer.exe | |||||||||||
User: admin Company: SafeNet Inc. Integrity Level: MEDIUM Description: Sentinel LDK License Manager Service Exit code: 1 Version: 14.1.1.31592 Modules
| |||||||||||||||
| (PID) Process: | (964) WinRAR.exe | Key: | HKEY_CURRENT_USER\Software\WinRAR\Interface\Themes |
| Operation: | write | Name: | ShellExtBMP |
Value: | |||
| (PID) Process: | (964) WinRAR.exe | Key: | HKEY_CURRENT_USER\Software\WinRAR\Interface\Themes |
| Operation: | write | Name: | ShellExtIcon |
Value: | |||
| (PID) Process: | (964) WinRAR.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\MuiCache\12B\52C64B7E |
| Operation: | write | Name: | LanguageList |
Value: en-US | |||
| (PID) Process: | (964) WinRAR.exe | Key: | HKEY_CURRENT_USER\Software\WinRAR\ArcHistory |
| Operation: | write | Name: | 0 |
Value: C:\Users\admin\AppData\Local\Temp\842e75f3b013d7a85031778707b75a70.zip | |||
| (PID) Process: | (964) WinRAR.exe | Key: | HKEY_CURRENT_USER\Software\WinRAR\FileList\FileColumnWidths |
| Operation: | write | Name: | name |
Value: 120 | |||
| (PID) Process: | (964) WinRAR.exe | Key: | HKEY_CURRENT_USER\Software\WinRAR\FileList\FileColumnWidths |
| Operation: | write | Name: | size |
Value: 80 | |||
| (PID) Process: | (964) WinRAR.exe | Key: | HKEY_CURRENT_USER\Software\WinRAR\FileList\FileColumnWidths |
| Operation: | write | Name: | type |
Value: 120 | |||
| (PID) Process: | (964) WinRAR.exe | Key: | HKEY_CURRENT_USER\Software\WinRAR\FileList\FileColumnWidths |
| Operation: | write | Name: | mtime |
Value: 100 | |||
| (PID) Process: | (964) WinRAR.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\MuiCache\12B\52C64B7E |
| Operation: | write | Name: | @cryptext.dll,-6145 |
Value: Security Catalog | |||
| (PID) Process: | (964) WinRAR.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\MuiCache\12B\52C64B7E |
| Operation: | write | Name: | @C:\Windows\System32\setupapi.dll,-2000 |
Value: Setup Information | |||
PID | Process | Filename | Type | |
|---|---|---|---|---|
| 964 | WinRAR.exe | C:\Users\admin\Desktop\akshhl.sys | executable | |
MD5:053B204554F104CB5DC3D94B61BDA458 | SHA256:72EB2556AA4B83489D2908ADC40DEB2E5ACE98D7A6112E9395F46924BD60501E | |||
| 964 | WinRAR.exe | C:\Users\admin\Desktop\aksusb4.dll | executable | |
MD5:E05C996F43C48DE8FEAF2F258D2DDE32 | SHA256:AA9952675303BD437569FAEF3FC94A5A89EA059371FCC898D3FC322BCB8C0D73 | |||
| 964 | WinRAR.exe | C:\Users\admin\Desktop\aksfridge.sys | executable | |
MD5:2C3ACA835E99CAD1FF36E33D66AFBAA7 | SHA256:7381FA422C8C921FB0A94CF6D4A37B1A43AFD814CFA97351763881A83E074056 | |||
| 964 | WinRAR.exe | C:\Users\admin\Desktop\aksusb.sys | executable | |
MD5:A25C21F6C040832B016F592B50F0259F | SHA256:DA3C0B928FB6F2F1007C4BE389AAD06F34A869E53659BDE29F47168B70E35397 | |||
| 964 | WinRAR.exe | C:\Users\admin\Desktop\akshhl30.dll | executable | |
MD5:73E3F7CEC83120CCDECD2D3172B64F91 | SHA256:55AF059E2BABDDA4B65B7C2044105557BF5FA8DE8A8BCE9C55CD76FEFB5FCB42 | |||
| 964 | WinRAR.exe | C:\Users\admin\Desktop\aksusb.PNF | pnf | |
MD5:C4ABC6BA1B890E91F5BBD9B14A2523B8 | SHA256:3ED09A7D45176FF9FDD30F169360351B8DCE0F4495610A023920E3847EDB1396 | |||
| 964 | WinRAR.exe | C:\Users\admin\Desktop\aksdf.sys | executable | |
MD5:DB262BADD56D97652D5E726B7C2ED9DF | SHA256:55BB0857C9F5BBD47DDC598BA67F276EB264F1FE225A06C6546BF1556DDF60D4 | |||
| 964 | WinRAR.exe | C:\Users\admin\Desktop\aksclass.sys | executable | |
MD5:A6C6F0718E7F7B6C1D045D5A34AB6E9A | SHA256:FD76344B77DF6E56081C7AF1D1E9BE7C6A43833937E9AC429A94308F53FD4545 | |||
| 964 | WinRAR.exe | C:\Users\admin\Desktop\aksusb.inf | binary | |
MD5:842E75F3B013D7A85031778707B75A70 | SHA256:D34B8CC73F97D4B4042040A402C82375FAC99BBBA3E6CD9B801B114696F7AA89 | |||
| 964 | WinRAR.exe | C:\Users\admin\Desktop\akshsp52.dll | executable | |
MD5:C6C641A5DFB0C8893E36D498CA5103A7 | SHA256:B70E1E9D06B02651B04E060E5DB14E0C2DDE1FA37A4176833B6C25B3C862CB1C | |||