File name:

1 (1133)

Full analysis: https://app.any.run/tasks/8a7274af-c734-48c1-ab6f-161705bede30
Verdict: Malicious activity
Analysis date: March 24, 2025, 09:02:10
OS: Windows 10 Professional (build: 19045, 64 bit)
Indicators:
MIME: application/vnd.microsoft.portable-executable
File info: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows, 3 sections
MD5:

6221386F66067013D625613D73B48B20

SHA1:

E4968C15B2E3D72858157D9A401BA605FFE1E7C7

SHA256:

E5F79C40018404F83C0E71DF0FD19737FFD239DC9B3DB534FEE6373E09B8F442

SSDEEP:

12288:raX2EjHA5sUU7BchaVOye5Sex4DxmDsR:raGE056BchN5

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    No malicious indicators.
  • SUSPICIOUS

    • Executable content was dropped or overwritten

      • 1 (1133).exe (PID: 4528)
      • Unicorn-56734.exe (PID: 1760)
      • Unicorn-56537.exe (PID: 6480)
      • Unicorn-37740.exe (PID: 1660)
      • Unicorn-55777.exe (PID: 5344)
      • Unicorn-8806.exe (PID: 4996)
      • Unicorn-14936.exe (PID: 2432)
      • Unicorn-21324.exe (PID: 1168)
      • Unicorn-31953.exe (PID: 2092)
      • Unicorn-50136.exe (PID: 6708)
      • Unicorn-50401.exe (PID: 4208)
      • Unicorn-28812.exe (PID: 4688)
      • Unicorn-37172.exe (PID: 5304)
      • Unicorn-16001.exe (PID: 7148)
      • Unicorn-36945.exe (PID: 1452)
      • Unicorn-14687.exe (PID: 2268)
      • Unicorn-28422.exe (PID: 1328)
      • Unicorn-20609.exe (PID: 1128)
      • Unicorn-743.exe (PID: 6676)
      • Unicorn-25617.exe (PID: 1040)
      • Unicorn-32476.exe (PID: 4188)
      • Unicorn-50204.exe (PID: 5400)
      • Unicorn-35046.exe (PID: 5360)
      • Unicorn-34973.exe (PID: 2984)
      • Unicorn-50505.exe (PID: 856)
      • Unicorn-23436.exe (PID: 1764)
      • Unicorn-33214.exe (PID: 6576)
      • Unicorn-29107.exe (PID: 2040)
      • Unicorn-30639.exe (PID: 1568)
      • Unicorn-40806.exe (PID: 2284)
      • Unicorn-18527.exe (PID: 6032)
      • Unicorn-10935.exe (PID: 668)
      • Unicorn-36312.exe (PID: 1132)
      • Unicorn-5912.exe (PID: 4268)
      • Unicorn-55527.exe (PID: 7224)
      • Unicorn-4096.exe (PID: 7204)
      • Unicorn-40038.exe (PID: 3896)
      • Unicorn-38615.exe (PID: 3300)
      • Unicorn-951.exe (PID: 7236)
      • Unicorn-29478.exe (PID: 2656)
      • Unicorn-4013.exe (PID: 7244)
      • Unicorn-16519.exe (PID: 7284)
      • Unicorn-51304.exe (PID: 7344)
      • Unicorn-36001.exe (PID: 7264)
      • Unicorn-44169.exe (PID: 7256)
      • Unicorn-29182.exe (PID: 7300)
      • Unicorn-20049.exe (PID: 7292)
      • Unicorn-42943.exe (PID: 7308)
      • Unicorn-13031.exe (PID: 7356)
      • Unicorn-31398.exe (PID: 7364)
      • Unicorn-7744.exe (PID: 7620)
      • Unicorn-24465.exe (PID: 7660)
      • Unicorn-23321.exe (PID: 7376)
      • Unicorn-5632.exe (PID: 7336)
      • Unicorn-46473.exe (PID: 7324)
      • Unicorn-47661.exe (PID: 7392)
      • Unicorn-39862.exe (PID: 7708)
      • Unicorn-29452.exe (PID: 7384)
      • Unicorn-49353.exe (PID: 7576)
      • Unicorn-1531.exe (PID: 7564)
      • Unicorn-48999.exe (PID: 7696)
      • Unicorn-29857.exe (PID: 7776)
      • Unicorn-4983.exe (PID: 7592)
      • Unicorn-19207.exe (PID: 7528)
      • Unicorn-63790.exe (PID: 7940)
      • Unicorn-40417.exe (PID: 7612)
      • Unicorn-61496.exe (PID: 7896)
      • Unicorn-3276.exe (PID: 7856)
      • Unicorn-22566.exe (PID: 7748)
      • Unicorn-32166.exe (PID: 7552)
      • Unicorn-15440.exe (PID: 7960)
      • Unicorn-63577.exe (PID: 7520)
      • Unicorn-10375.exe (PID: 7848)
      • Unicorn-173.exe (PID: 7864)
      • Unicorn-2093.exe (PID: 8032)
      • Unicorn-53800.exe (PID: 7672)
      • Unicorn-31585.exe (PID: 7948)
      • Unicorn-49177.exe (PID: 8324)
      • Unicorn-7271.exe (PID: 8048)
      • Unicorn-27374.exe (PID: 7988)
      • Unicorn-24678.exe (PID: 7968)
      • Unicorn-25249.exe (PID: 8448)
      • Unicorn-9694.exe (PID: 7888)
      • Unicorn-43318.exe (PID: 8040)
      • Unicorn-16209.exe (PID: 7904)
      • Unicorn-33535.exe (PID: 8800)
      • Unicorn-12368.exe (PID: 8792)
      • Unicorn-49945.exe (PID: 8824)
      • Unicorn-43894.exe (PID: 8256)
      • Unicorn-13084.exe (PID: 8892)
      • Unicorn-18918.exe (PID: 8524)
      • Unicorn-48511.exe (PID: 7316)
      • Unicorn-21423.exe (PID: 8120)
      • Unicorn-32950.exe (PID: 8868)
      • Unicorn-18263.exe (PID: 9080)
      • Unicorn-13084.exe (PID: 8484)
      • Unicorn-21038.exe (PID: 8628)
      • Unicorn-21423.exe (PID: 8112)
      • Unicorn-23991.exe (PID: 8092)
      • Unicorn-22783.exe (PID: 7152)
      • Unicorn-26904.exe (PID: 8648)
      • Unicorn-18913.exe (PID: 7804)
      • Unicorn-63333.exe (PID: 8084)
      • Unicorn-32685.exe (PID: 8904)
      • Unicorn-6622.exe (PID: 8704)
      • Unicorn-60417.exe (PID: 8512)
      • Unicorn-53998.exe (PID: 8320)
      • Unicorn-50049.exe (PID: 9960)
      • Unicorn-57100.exe (PID: 10036)
      • Unicorn-30841.exe (PID: 10116)
      • Unicorn-58056.exe (PID: 9500)
      • Unicorn-18529.exe (PID: 9072)
      • Unicorn-6254.exe (PID: 9516)
      • Unicorn-57646.exe (PID: 8848)
      • Unicorn-23726.exe (PID: 7928)
      • Unicorn-61585.exe (PID: 9508)
      • Unicorn-27081.exe (PID: 7812)
      • Unicorn-44569.exe (PID: 8264)
      • Unicorn-47096.exe (PID: 1512)
      • Unicorn-42929.exe (PID: 8560)
      • Unicorn-58902.exe (PID: 9908)
      • Unicorn-3183.exe (PID: 9868)
      • Unicorn-25929.exe (PID: 5960)
      • Unicorn-38518.exe (PID: 8716)
      • Unicorn-39961.exe (PID: 9792)
      • Unicorn-33121.exe (PID: 8104)
      • Unicorn-54745.exe (PID: 7828)
      • Unicorn-22595.exe (PID: 9276)
      • Unicorn-58056.exe (PID: 9484)
      • Unicorn-58056.exe (PID: 9492)
      • Unicorn-19089.exe (PID: 7648)
      • Unicorn-31048.exe (PID: 8160)
      • Unicorn-39701.exe (PID: 4452)
      • Unicorn-56805.exe (PID: 8432)
      • Unicorn-54288.exe (PID: 7796)
      • Unicorn-39124.exe (PID: 8464)
      • Unicorn-40941.exe (PID: 7876)
      • Unicorn-13925.exe (PID: 9380)
      • Unicorn-49301.exe (PID: 6828)
      • Unicorn-4923.exe (PID: 6640)
      • Unicorn-7013.exe (PID: 9672)
      • Unicorn-10000.exe (PID: 6644)
      • Unicorn-4923.exe (PID: 10104)
      • Unicorn-25830.exe (PID: 8072)
      • Unicorn-35062.exe (PID: 9012)
      • Unicorn-14038.exe (PID: 9440)
      • Unicorn-41589.exe (PID: 9940)
      • Unicorn-8166.exe (PID: 8152)
      • Unicorn-49945.exe (PID: 8440)
      • Unicorn-2318.exe (PID: 10472)
      • Unicorn-52846.exe (PID: 9228)
      • Unicorn-56606.exe (PID: 10156)
      • Unicorn-7926.exe (PID: 10168)
      • Unicorn-11621.exe (PID: 9116)
      • Unicorn-2724.exe (PID: 10180)
      • Unicorn-20369.exe (PID: 3176)
      • Unicorn-64120.exe (PID: 11100)
      • Unicorn-55118.exe (PID: 11476)
      • Unicorn-56725.exe (PID: 10632)
      • Unicorn-14694.exe (PID: 9760)
      • Unicorn-42407.exe (PID: 12320)
      • Unicorn-44328.exe (PID: 11844)
      • Unicorn-4909.exe (PID: 10124)
      • Unicorn-3759.exe (PID: 9808)
      • Unicorn-50575.exe (PID: 12308)
      • Unicorn-27007.exe (PID: 9408)
      • Unicorn-4923.exe (PID: 10624)
      • Unicorn-32327.exe (PID: 8196)
      • Unicorn-3854.exe (PID: 10676)
      • Unicorn-42584.exe (PID: 10656)
      • Unicorn-40404.exe (PID: 11064)
      • Unicorn-5703.exe (PID: 5780)
      • Unicorn-62884.exe (PID: 4284)
      • Unicorn-39295.exe (PID: 8248)
      • Unicorn-7727.exe (PID: 12084)
      • Unicorn-10788.exe (PID: 10640)
      • Unicorn-8941.exe (PID: 2084)
      • Unicorn-42661.exe (PID: 10888)
      • Unicorn-35745.exe (PID: 11004)
      • Unicorn-3759.exe (PID: 9800)
      • Unicorn-37657.exe (PID: 10220)
      • Unicorn-33838.exe (PID: 10316)
      • Unicorn-33918.exe (PID: 10648)
      • Unicorn-42407.exe (PID: 12332)
      • Unicorn-58063.exe (PID: 11852)
      • Unicorn-10788.exe (PID: 10096)
      • Unicorn-50972.exe (PID: 14104)
      • Unicorn-33369.exe (PID: 14196)
      • Unicorn-780.exe (PID: 8540)
      • Unicorn-59545.exe (PID: 8296)
      • Unicorn-39844.exe (PID: 14128)
      • Unicorn-56061.exe (PID: 10972)
      • Unicorn-40447.exe (PID: 6808)
      • Unicorn-25663.exe (PID: 9340)
      • Unicorn-62553.exe (PID: 872)
      • Unicorn-21942.exe (PID: 14492)
      • Unicorn-36249.exe (PID: 14376)
      • Unicorn-6336.exe (PID: 10136)
      • Unicorn-40447.exe (PID: 720)
      • Unicorn-42964.exe (PID: 8676)
      • Unicorn-9174.exe (PID: 13536)
      • Unicorn-49724.exe (PID: 12216)
      • Unicorn-16459.exe (PID: 10192)
      • Unicorn-19438.exe (PID: 2560)
      • Unicorn-29513.exe (PID: 12284)
      • Unicorn-13207.exe (PID: 13224)
      • Unicorn-37918.exe (PID: 9532)
      • Unicorn-62661.exe (PID: 10204)
      • Unicorn-3685.exe (PID: 14468)
      • Unicorn-21885.exe (PID: 14516)
      • Unicorn-612.exe (PID: 10684)
      • Unicorn-29142.exe (PID: 11428)
      • Unicorn-6067.exe (PID: 9260)
      • Unicorn-55263.exe (PID: 11896)
      • Unicorn-35111.exe (PID: 12236)
      • Unicorn-7599.exe (PID: 9612)
      • Unicorn-44328.exe (PID: 11816)
      • Unicorn-19686.exe (PID: 8604)
      • Unicorn-47976.exe (PID: 11120)
      • Unicorn-58349.exe (PID: 12588)
      • Unicorn-7539.exe (PID: 12072)
      • Unicorn-22118.exe (PID: 11732)
      • Unicorn-24920.exe (PID: 12520)
      • Unicorn-64318.exe (PID: 12728)
      • Unicorn-38100.exe (PID: 12608)
      • Unicorn-59149.exe (PID: 12056)
      • Unicorn-19793.exe (PID: 11084)
      • Unicorn-204.exe (PID: 8656)
      • Unicorn-60676.exe (PID: 14692)
      • Unicorn-59865.exe (PID: 11156)
      • Unicorn-13456.exe (PID: 11572)
      • Unicorn-10981.exe (PID: 13432)
      • Unicorn-28041.exe (PID: 8188)
      • Unicorn-44361.exe (PID: 7272)
      • Unicorn-28153.exe (PID: 11232)
      • Unicorn-28833.exe (PID: 11656)
      • Unicorn-37463.exe (PID: 6156)
      • Unicorn-49895.exe (PID: 11908)
      • Unicorn-31867.exe (PID: 15372)
      • Unicorn-59165.exe (PID: 15412)
      • Unicorn-19851.exe (PID: 15812)
      • Unicorn-14622.exe (PID: 11196)
      • Unicorn-36347.exe (PID: 10868)
      • Unicorn-21345.exe (PID: 5232)
      • Unicorn-5781.exe (PID: 11748)
      • Unicorn-10405.exe (PID: 13148)
      • Unicorn-41753.exe (PID: 16892)
      • Unicorn-7347.exe (PID: 12044)
      • Unicorn-53047.exe (PID: 11208)
      • Unicorn-15191.exe (PID: 9768)
      • Unicorn-26294.exe (PID: 16912)
      • Unicorn-23057.exe (PID: 10324)
      • Unicorn-27337.exe (PID: 16960)
      • Unicorn-4880.exe (PID: 9292)
      • Unicorn-18132.exe (PID: 7052)
      • Unicorn-58056.exe (PID: 9476)
      • Unicorn-32320.exe (PID: 12680)
      • Unicorn-21921.exe (PID: 12200)
      • Unicorn-19025.exe (PID: 11172)
      • Unicorn-56807.exe (PID: 2192)
      • Unicorn-32974.exe (PID: 10716)
      • Unicorn-26529.exe (PID: 10788)
      • Unicorn-58744.exe (PID: 11524)
      • Unicorn-9600.exe (PID: 10444)
      • Unicorn-44328.exe (PID: 11828)
      • Unicorn-2943.exe (PID: 15804)
      • Unicorn-5895.exe (PID: 12392)
      • Unicorn-34431.exe (PID: 15124)
      • Unicorn-18132.exe (PID: 15348)
      • Unicorn-63855.exe (PID: 15468)
      • Unicorn-32118.exe (PID: 12444)
      • Unicorn-40031.exe (PID: 15160)
      • Unicorn-13166.exe (PID: 10052)
      • Unicorn-21814.exe (PID: 9540)
      • Unicorn-51630.exe (PID: 13376)
      • Unicorn-16831.exe (PID: 9460)
      • Unicorn-4733.exe (PID: 12144)
      • Unicorn-37385.exe (PID: 11716)
      • Unicorn-13975.exe (PID: 13128)
      • Unicorn-20403.exe (PID: 10964)
      • Unicorn-30966.exe (PID: 12164)
      • Unicorn-19054.exe (PID: 12528)
      • Unicorn-55760.exe (PID: 11860)
      • Unicorn-3877.exe (PID: 14308)
      • Unicorn-2231.exe (PID: 4400)
      • Unicorn-18132.exe (PID: 5172)
      • Unicorn-35553.exe (PID: 10984)
      • Unicorn-36129.exe (PID: 11072)
      • Unicorn-49149.exe (PID: 5056)
      • Unicorn-22356.exe (PID: 13520)
      • Unicorn-8528.exe (PID: 8832)
      • Unicorn-57864.exe (PID: 9468)
      • Unicorn-12616.exe (PID: 15428)
      • Unicorn-39807.exe (PID: 11136)
      • Unicorn-45337.exe (PID: 9320)
      • Unicorn-63230.exe (PID: 9844)
      • Unicorn-44328.exe (PID: 11800)
      • Unicorn-50305.exe (PID: 16992)
      • Unicorn-16366.exe (PID: 12368)
      • Unicorn-23625.exe (PID: 9784)
      • Unicorn-10320.exe (PID: 16500)
      • Unicorn-18583.exe (PID: 15772)
      • Unicorn-140.exe (PID: 11412)
      • Unicorn-64342.exe (PID: 9824)
      • Unicorn-20118.exe (PID: 13448)
      • Unicorn-44992.exe (PID: 10100)
      • Unicorn-3799.exe (PID: 15316)
    • Starts itself from another location

      • Unicorn-56537.exe (PID: 6480)
      • Unicorn-37740.exe (PID: 1660)
      • 1 (1133).exe (PID: 4528)
      • Unicorn-56734.exe (PID: 1760)
      • Unicorn-55777.exe (PID: 5344)
      • Unicorn-8806.exe (PID: 4996)
      • Unicorn-28812.exe (PID: 4688)
      • Unicorn-21324.exe (PID: 1168)
      • Unicorn-31953.exe (PID: 2092)
      • Unicorn-14936.exe (PID: 2432)
      • Unicorn-16001.exe (PID: 7148)
      • Unicorn-50136.exe (PID: 6708)
      • Unicorn-50401.exe (PID: 4208)
      • Unicorn-23436.exe (PID: 1764)
      • Unicorn-36945.exe (PID: 1452)
      • Unicorn-37172.exe (PID: 5304)
      • Unicorn-743.exe (PID: 6676)
      • Unicorn-28422.exe (PID: 1328)
      • Unicorn-20609.exe (PID: 1128)
      • Unicorn-25617.exe (PID: 1040)
      • Unicorn-32476.exe (PID: 4188)
      • Unicorn-50204.exe (PID: 5400)
      • Unicorn-35046.exe (PID: 5360)
      • Unicorn-34973.exe (PID: 2984)
      • Unicorn-50505.exe (PID: 856)
      • Unicorn-30639.exe (PID: 1568)
      • Unicorn-29107.exe (PID: 2040)
      • Unicorn-40806.exe (PID: 2284)
      • Unicorn-14687.exe (PID: 2268)
      • Unicorn-10935.exe (PID: 668)
      • Unicorn-36312.exe (PID: 1132)
      • Unicorn-18527.exe (PID: 6032)
      • Unicorn-5912.exe (PID: 4268)
      • Unicorn-38615.exe (PID: 3300)
      • Unicorn-55527.exe (PID: 7224)
      • Unicorn-40038.exe (PID: 3896)
      • Unicorn-29478.exe (PID: 2656)
      • Unicorn-4013.exe (PID: 7244)
      • Unicorn-4096.exe (PID: 7204)
      • Unicorn-951.exe (PID: 7236)
      • Unicorn-36001.exe (PID: 7264)
      • Unicorn-44169.exe (PID: 7256)
      • Unicorn-16519.exe (PID: 7284)
      • Unicorn-51304.exe (PID: 7344)
      • Unicorn-29182.exe (PID: 7300)
      • Unicorn-42943.exe (PID: 7308)
      • Unicorn-44361.exe (PID: 7272)
      • Unicorn-31398.exe (PID: 7364)
      • Unicorn-7744.exe (PID: 7620)
      • Unicorn-13031.exe (PID: 7356)
      • Unicorn-23321.exe (PID: 7376)
      • Unicorn-5632.exe (PID: 7336)
      • Unicorn-24465.exe (PID: 7660)
      • Unicorn-46473.exe (PID: 7324)
      • Unicorn-20049.exe (PID: 7292)
      • Unicorn-1531.exe (PID: 7564)
      • Unicorn-49353.exe (PID: 7576)
      • Unicorn-29857.exe (PID: 7776)
      • Unicorn-19207.exe (PID: 7528)
      • Unicorn-4983.exe (PID: 7592)
      • Unicorn-33214.exe (PID: 6576)
      • Unicorn-40417.exe (PID: 7612)
      • Unicorn-3276.exe (PID: 7856)
      • Unicorn-47661.exe (PID: 7392)
      • Unicorn-22566.exe (PID: 7748)
      • Unicorn-48511.exe (PID: 7316)
      • Unicorn-63790.exe (PID: 7940)
      • Unicorn-25830.exe (PID: 8072)
      • Unicorn-29452.exe (PID: 7384)
      • Unicorn-32166.exe (PID: 7552)
      • Unicorn-54745.exe (PID: 7828)
      • Unicorn-39862.exe (PID: 7708)
      • Unicorn-48999.exe (PID: 7696)
      • Unicorn-63577.exe (PID: 7520)
      • Unicorn-40941.exe (PID: 7876)
      • Unicorn-53800.exe (PID: 7672)
      • Unicorn-31585.exe (PID: 7948)
      • Unicorn-10375.exe (PID: 7848)
      • Unicorn-173.exe (PID: 7864)
      • Unicorn-24678.exe (PID: 7968)
      • Unicorn-49177.exe (PID: 8324)
      • Unicorn-7271.exe (PID: 8048)
      • Unicorn-27374.exe (PID: 7988)
      • Unicorn-25249.exe (PID: 8448)
      • Unicorn-43318.exe (PID: 8040)
      • Unicorn-61496.exe (PID: 7896)
      • Unicorn-9694.exe (PID: 7888)
      • Unicorn-15440.exe (PID: 7960)
      • Unicorn-16209.exe (PID: 7904)
      • Unicorn-2093.exe (PID: 8032)
      • Unicorn-33535.exe (PID: 8800)
      • Unicorn-12368.exe (PID: 8792)
      • Unicorn-49945.exe (PID: 8824)
      • Unicorn-13084.exe (PID: 8892)
      • Unicorn-18918.exe (PID: 8524)
      • Unicorn-21423.exe (PID: 8120)
      • Unicorn-32950.exe (PID: 8868)
      • Unicorn-21423.exe (PID: 8112)
      • Unicorn-18263.exe (PID: 9080)
      • Unicorn-21038.exe (PID: 8628)
      • Unicorn-23991.exe (PID: 8092)
      • Unicorn-26904.exe (PID: 8648)
      • Unicorn-22783.exe (PID: 7152)
      • Unicorn-18913.exe (PID: 7804)
      • Unicorn-63333.exe (PID: 8084)
      • Unicorn-53998.exe (PID: 8320)
      • Unicorn-32685.exe (PID: 8904)
      • Unicorn-60417.exe (PID: 8512)
      • Unicorn-50049.exe (PID: 9960)
      • Unicorn-6622.exe (PID: 8704)
      • Unicorn-57100.exe (PID: 10036)
      • Unicorn-30841.exe (PID: 10116)
      • Unicorn-18529.exe (PID: 9072)
      • Unicorn-6254.exe (PID: 9516)
      • Unicorn-58056.exe (PID: 9500)
      • Unicorn-23726.exe (PID: 7928)
      • Unicorn-61585.exe (PID: 9508)
      • Unicorn-27081.exe (PID: 7812)
      • Unicorn-47096.exe (PID: 1512)
      • Unicorn-57646.exe (PID: 8848)
      • Unicorn-42929.exe (PID: 8560)
      • Unicorn-38518.exe (PID: 8716)
      • Unicorn-58902.exe (PID: 9908)
      • Unicorn-3183.exe (PID: 9868)
      • Unicorn-44569.exe (PID: 8264)
      • Unicorn-25929.exe (PID: 5960)
      • Unicorn-39961.exe (PID: 9792)
      • Unicorn-33121.exe (PID: 8104)
      • Unicorn-9600.exe (PID: 10444)
      • Unicorn-58056.exe (PID: 9492)
      • Unicorn-19089.exe (PID: 7648)
      • Unicorn-22595.exe (PID: 9276)
      • Unicorn-39701.exe (PID: 4452)
      • Unicorn-56805.exe (PID: 8432)
      • Unicorn-54288.exe (PID: 7796)
      • Unicorn-39124.exe (PID: 8464)
      • Unicorn-31048.exe (PID: 8160)
      • Unicorn-49301.exe (PID: 6828)
      • Unicorn-7013.exe (PID: 9672)
      • Unicorn-4923.exe (PID: 6640)
      • Unicorn-4923.exe (PID: 10104)
      • Unicorn-10000.exe (PID: 6644)
      • Unicorn-58056.exe (PID: 9484)
      • Unicorn-8166.exe (PID: 8152)
      • Unicorn-14038.exe (PID: 9440)
      • Unicorn-49945.exe (PID: 8440)
      • Unicorn-2318.exe (PID: 10472)
      • Unicorn-52846.exe (PID: 9228)
      • Unicorn-56606.exe (PID: 10156)
      • Unicorn-7926.exe (PID: 10168)
      • Unicorn-2724.exe (PID: 10180)
      • Unicorn-20369.exe (PID: 3176)
      • Unicorn-11621.exe (PID: 9116)
      • Unicorn-35062.exe (PID: 9012)
      • Unicorn-55118.exe (PID: 11476)
      • Unicorn-64120.exe (PID: 11100)
      • Unicorn-56725.exe (PID: 10632)
      • Unicorn-42407.exe (PID: 12320)
      • Unicorn-27007.exe (PID: 9408)
      • Unicorn-44328.exe (PID: 11844)
      • Unicorn-4909.exe (PID: 10124)
      • Unicorn-50575.exe (PID: 12308)
      • Unicorn-4923.exe (PID: 10624)
      • Unicorn-3854.exe (PID: 10676)
      • Unicorn-42584.exe (PID: 10656)
      • Unicorn-43894.exe (PID: 8256)
      • Unicorn-3759.exe (PID: 9808)
      • Unicorn-32327.exe (PID: 8196)
      • Unicorn-14694.exe (PID: 9760)
      • Unicorn-5703.exe (PID: 5780)
      • Unicorn-7727.exe (PID: 12084)
      • Unicorn-40404.exe (PID: 11064)
      • Unicorn-39295.exe (PID: 8248)
      • Unicorn-10788.exe (PID: 10640)
      • Unicorn-19438.exe (PID: 2560)
      • Unicorn-15191.exe (PID: 9768)
      • Unicorn-8941.exe (PID: 2084)
      • Unicorn-42661.exe (PID: 10888)
      • Unicorn-61709.exe (PID: 9388)
      • Unicorn-35745.exe (PID: 11004)
      • Unicorn-37657.exe (PID: 10220)
      • Unicorn-3759.exe (PID: 9800)
      • Unicorn-33838.exe (PID: 10316)
      • Unicorn-62884.exe (PID: 4284)
      • Unicorn-13084.exe (PID: 8484)
      • Unicorn-33918.exe (PID: 10648)
      • Unicorn-58063.exe (PID: 11852)
      • Unicorn-50972.exe (PID: 14104)
      • Unicorn-10788.exe (PID: 10096)
      • Unicorn-42407.exe (PID: 12332)
      • Unicorn-780.exe (PID: 8540)
      • Unicorn-59545.exe (PID: 8296)
      • Unicorn-39844.exe (PID: 14128)
      • Unicorn-31867.exe (PID: 15372)
      • Unicorn-29067.exe (PID: 5044)
      • Unicorn-40447.exe (PID: 6808)
      • Unicorn-25663.exe (PID: 9340)
      • Unicorn-56061.exe (PID: 10972)
      • Unicorn-6336.exe (PID: 10136)
      • Unicorn-36249.exe (PID: 14376)
      • Unicorn-23265.exe (PID: 6248)
      • Unicorn-9174.exe (PID: 13536)
      • Unicorn-42964.exe (PID: 8676)
      • Unicorn-62553.exe (PID: 872)
      • Unicorn-21942.exe (PID: 14492)
      • Unicorn-44328.exe (PID: 11828)
      • Unicorn-49724.exe (PID: 12216)
      • Unicorn-23625.exe (PID: 9784)
      • Unicorn-29142.exe (PID: 11428)
      • Unicorn-13925.exe (PID: 9380)
      • Unicorn-13207.exe (PID: 13224)
      • Unicorn-37918.exe (PID: 9532)
      • Unicorn-3685.exe (PID: 14468)
      • Unicorn-21885.exe (PID: 14516)
      • Unicorn-612.exe (PID: 10684)
      • Unicorn-33369.exe (PID: 14196)
      • Unicorn-26294.exe (PID: 16912)
      • Unicorn-27337.exe (PID: 16960)
      • Unicorn-6067.exe (PID: 9260)
      • Unicorn-35111.exe (PID: 12236)
      • Unicorn-44328.exe (PID: 11816)
      • Unicorn-47976.exe (PID: 11120)
      • Unicorn-19686.exe (PID: 8604)
      • Unicorn-19793.exe (PID: 11084)
      • Unicorn-58349.exe (PID: 12588)
      • Unicorn-7599.exe (PID: 9612)
    • Executes application which crashes

      • Unicorn-24019.exe (PID: 8880)
  • INFO

    • Create files in a temporary directory

      • 1 (1133).exe (PID: 4528)
      • Unicorn-56734.exe (PID: 1760)
      • Unicorn-8806.exe (PID: 4996)
      • Unicorn-55777.exe (PID: 5344)
      • Unicorn-31953.exe (PID: 2092)
      • Unicorn-37740.exe (PID: 1660)
      • Unicorn-16001.exe (PID: 7148)
      • Unicorn-50136.exe (PID: 6708)
      • Unicorn-50401.exe (PID: 4208)
      • Unicorn-14687.exe (PID: 2268)
      • Unicorn-28422.exe (PID: 1328)
      • Unicorn-14936.exe (PID: 2432)
      • Unicorn-21324.exe (PID: 1168)
      • Unicorn-25617.exe (PID: 1040)
      • Unicorn-32476.exe (PID: 4188)
      • Unicorn-50204.exe (PID: 5400)
      • Unicorn-35046.exe (PID: 5360)
      • Unicorn-34973.exe (PID: 2984)
      • Unicorn-50505.exe (PID: 856)
      • Unicorn-33214.exe (PID: 6576)
      • Unicorn-23436.exe (PID: 1764)
      • Unicorn-30639.exe (PID: 1568)
      • Unicorn-29107.exe (PID: 2040)
      • Unicorn-28812.exe (PID: 4688)
      • Unicorn-40806.exe (PID: 2284)
      • Unicorn-36945.exe (PID: 1452)
      • Unicorn-18527.exe (PID: 6032)
      • Unicorn-10935.exe (PID: 668)
      • Unicorn-36312.exe (PID: 1132)
      • Unicorn-5912.exe (PID: 4268)
      • Unicorn-55527.exe (PID: 7224)
      • Unicorn-20609.exe (PID: 1128)
      • Unicorn-16519.exe (PID: 7284)
      • Unicorn-4096.exe (PID: 7204)
      • Unicorn-951.exe (PID: 7236)
      • Unicorn-29478.exe (PID: 2656)
      • Unicorn-4013.exe (PID: 7244)
      • Unicorn-37172.exe (PID: 5304)
      • Unicorn-44169.exe (PID: 7256)
      • Unicorn-42943.exe (PID: 7308)
      • Unicorn-56537.exe (PID: 6480)
      • Unicorn-7744.exe (PID: 7620)
      • Unicorn-24465.exe (PID: 7660)
      • Unicorn-13031.exe (PID: 7356)
      • Unicorn-47661.exe (PID: 7392)
      • Unicorn-29452.exe (PID: 7384)
      • Unicorn-48999.exe (PID: 7696)
      • Unicorn-46473.exe (PID: 7324)
      • Unicorn-39862.exe (PID: 7708)
      • Unicorn-1531.exe (PID: 7564)
      • Unicorn-20049.exe (PID: 7292)
      • Unicorn-38615.exe (PID: 3300)
      • Unicorn-4983.exe (PID: 7592)
      • Unicorn-32166.exe (PID: 7552)
      • Unicorn-63790.exe (PID: 7940)
      • Unicorn-29857.exe (PID: 7776)
      • Unicorn-22566.exe (PID: 7748)
      • Unicorn-40417.exe (PID: 7612)
      • Unicorn-15440.exe (PID: 7960)
      • Unicorn-63577.exe (PID: 7520)
      • Unicorn-173.exe (PID: 7864)
      • Unicorn-53800.exe (PID: 7672)
      • Unicorn-7271.exe (PID: 8048)
      • Unicorn-51304.exe (PID: 7344)
      • Unicorn-10375.exe (PID: 7848)
      • Unicorn-24678.exe (PID: 7968)
      • Unicorn-49177.exe (PID: 8324)
      • Unicorn-5632.exe (PID: 7336)
      • Unicorn-27374.exe (PID: 7988)
      • Unicorn-61496.exe (PID: 7896)
      • Unicorn-43318.exe (PID: 8040)
      • Unicorn-25249.exe (PID: 8448)
      • Unicorn-2093.exe (PID: 8032)
      • Unicorn-743.exe (PID: 6676)
      • Unicorn-49353.exe (PID: 7576)
      • Unicorn-12368.exe (PID: 8792)
      • Unicorn-49945.exe (PID: 8824)
      • Unicorn-43894.exe (PID: 8256)
      • Unicorn-32950.exe (PID: 8868)
      • Unicorn-23991.exe (PID: 8092)
      • Unicorn-18263.exe (PID: 9080)
      • Unicorn-13084.exe (PID: 8484)
      • Unicorn-21038.exe (PID: 8628)
      • Unicorn-21423.exe (PID: 8112)
      • Unicorn-22783.exe (PID: 7152)
      • Unicorn-63333.exe (PID: 8084)
      • Unicorn-18913.exe (PID: 7804)
      • Unicorn-26904.exe (PID: 8648)
      • Unicorn-53998.exe (PID: 8320)
      • Unicorn-48511.exe (PID: 7316)
      • Unicorn-32685.exe (PID: 8904)
      • Unicorn-6622.exe (PID: 8704)
      • Unicorn-19207.exe (PID: 7528)
      • Unicorn-60417.exe (PID: 8512)
      • Unicorn-36001.exe (PID: 7264)
      • Unicorn-57100.exe (PID: 10036)
      • Unicorn-50049.exe (PID: 9960)
      • Unicorn-58056.exe (PID: 9500)
      • Unicorn-18529.exe (PID: 9072)
      • Unicorn-40038.exe (PID: 3896)
      • Unicorn-33121.exe (PID: 8104)
      • Unicorn-61585.exe (PID: 9508)
      • Unicorn-31398.exe (PID: 7364)
      • Unicorn-57646.exe (PID: 8848)
      • Unicorn-23726.exe (PID: 7928)
      • Unicorn-38518.exe (PID: 8716)
      • Unicorn-58902.exe (PID: 9908)
      • Unicorn-23321.exe (PID: 7376)
      • Unicorn-25929.exe (PID: 5960)
      • Unicorn-44569.exe (PID: 8264)
      • Unicorn-39961.exe (PID: 9792)
      • Unicorn-54745.exe (PID: 7828)
      • Unicorn-13084.exe (PID: 8892)
      • Unicorn-22595.exe (PID: 9276)
      • Unicorn-58056.exe (PID: 9484)
      • Unicorn-39701.exe (PID: 4452)
      • Unicorn-54288.exe (PID: 7796)
      • Unicorn-13925.exe (PID: 9380)
      • Unicorn-21423.exe (PID: 8120)
      • Unicorn-31048.exe (PID: 8160)
      • Unicorn-49301.exe (PID: 6828)
      • Unicorn-4923.exe (PID: 6640)
      • Unicorn-8166.exe (PID: 8152)
      • Unicorn-14038.exe (PID: 9440)
      • Unicorn-3276.exe (PID: 7856)
      • Unicorn-25830.exe (PID: 8072)
      • Unicorn-41589.exe (PID: 9940)
      • Unicorn-16209.exe (PID: 7904)
      • Unicorn-3183.exe (PID: 9868)
      • Unicorn-9694.exe (PID: 7888)
      • Unicorn-56606.exe (PID: 10156)
      • Unicorn-29182.exe (PID: 7300)
      • Unicorn-2724.exe (PID: 10180)
      • Unicorn-11621.exe (PID: 9116)
      • Unicorn-35062.exe (PID: 9012)
      • Unicorn-33535.exe (PID: 8800)
      • Unicorn-31585.exe (PID: 7948)
      • Unicorn-30841.exe (PID: 10116)
      • Unicorn-50575.exe (PID: 12308)
      • Unicorn-55118.exe (PID: 11476)
      • Unicorn-40404.exe (PID: 11064)
      • Unicorn-18918.exe (PID: 8524)
      • Unicorn-39295.exe (PID: 8248)
      • Unicorn-42661.exe (PID: 10888)
      • Unicorn-10788.exe (PID: 10640)
      • Unicorn-42407.exe (PID: 12332)
      • Unicorn-58063.exe (PID: 11852)
      • Unicorn-10788.exe (PID: 10096)
      • Unicorn-47096.exe (PID: 1512)
      • Unicorn-39844.exe (PID: 14128)
      • Unicorn-62553.exe (PID: 872)
      • Unicorn-27081.exe (PID: 7812)
      • Unicorn-7926.exe (PID: 10168)
      • Unicorn-9174.exe (PID: 13536)
      • Unicorn-29142.exe (PID: 11428)
      • Unicorn-44328.exe (PID: 11828)
      • Unicorn-49724.exe (PID: 12216)
      • Unicorn-5703.exe (PID: 5780)
      • Unicorn-16459.exe (PID: 10192)
      • Unicorn-62661.exe (PID: 10204)
      • Unicorn-21885.exe (PID: 14516)
      • Unicorn-10000.exe (PID: 6644)
      • Unicorn-41753.exe (PID: 16892)
      • Unicorn-58056.exe (PID: 9492)
      • Unicorn-4923.exe (PID: 10104)
    • The sample compiled with chinese language support

      • 1 (1133).exe (PID: 4528)
      • Unicorn-63333.exe (PID: 8084)
    • Checks supported languages

      • 1 (1133).exe (PID: 4528)
      • Unicorn-56734.exe (PID: 1760)
      • Unicorn-56537.exe (PID: 6480)
      • Unicorn-37740.exe (PID: 1660)
      • Unicorn-55777.exe (PID: 5344)
      • Unicorn-14936.exe (PID: 2432)
      • Unicorn-28812.exe (PID: 4688)
      • Unicorn-21324.exe (PID: 1168)
      • Unicorn-31953.exe (PID: 2092)
      • Unicorn-8806.exe (PID: 4996)
      • Unicorn-16001.exe (PID: 7148)
      • Unicorn-37172.exe (PID: 5304)
      • Unicorn-50136.exe (PID: 6708)
      • Unicorn-50401.exe (PID: 4208)
      • Unicorn-23436.exe (PID: 1764)
      • Unicorn-36945.exe (PID: 1452)
      • Unicorn-20609.exe (PID: 1128)
      • Unicorn-14687.exe (PID: 2268)
      • Unicorn-50204.exe (PID: 5400)
      • Unicorn-32476.exe (PID: 4188)
      • Unicorn-25617.exe (PID: 1040)
      • Unicorn-28422.exe (PID: 1328)
      • Unicorn-30639.exe (PID: 1568)
      • Unicorn-5912.exe (PID: 4268)
      • Unicorn-29107.exe (PID: 2040)
      • Unicorn-40038.exe (PID: 3896)
      • Unicorn-55527.exe (PID: 7224)
      • Unicorn-4013.exe (PID: 7244)
      • Unicorn-44169.exe (PID: 7256)
      • Unicorn-48511.exe (PID: 7316)
      • Unicorn-31398.exe (PID: 7364)
      • Unicorn-36001.exe (PID: 7264)
      • Unicorn-16519.exe (PID: 7284)
      • Unicorn-20049.exe (PID: 7292)
      • Unicorn-42943.exe (PID: 7308)
      • Unicorn-63577.exe (PID: 7520)
      • Unicorn-1531.exe (PID: 7564)
      • Unicorn-49353.exe (PID: 7576)
      • Unicorn-48999.exe (PID: 7696)
      • Unicorn-39862.exe (PID: 7708)
      • Unicorn-7744.exe (PID: 7620)
      • Unicorn-4983.exe (PID: 7592)
      • Unicorn-53800.exe (PID: 7672)
      • Unicorn-54288.exe (PID: 7796)
      • Unicorn-54745.exe (PID: 7828)
      • Unicorn-10375.exe (PID: 7848)
      • Unicorn-22566.exe (PID: 7748)
      • Unicorn-29857.exe (PID: 7776)
      • Unicorn-61496.exe (PID: 7896)
      • Unicorn-173.exe (PID: 7864)
      • Unicorn-40941.exe (PID: 7876)
      • Unicorn-9694.exe (PID: 7888)
      • Unicorn-31585.exe (PID: 7948)
      • Unicorn-63790.exe (PID: 7940)
      • Unicorn-16209.exe (PID: 7904)
      • Unicorn-23726.exe (PID: 7928)
      • Unicorn-24678.exe (PID: 7968)
      • Unicorn-43318.exe (PID: 8040)
      • Unicorn-7271.exe (PID: 8048)
      • Unicorn-25830.exe (PID: 8072)
      • Unicorn-2093.exe (PID: 8032)
      • Unicorn-49177.exe (PID: 8324)
      • Unicorn-39295.exe (PID: 8248)
      • Unicorn-43894.exe (PID: 8256)
      • Unicorn-25249.exe (PID: 8448)
      • Unicorn-60417.exe (PID: 8512)
      • Unicorn-42929.exe (PID: 8560)
      • Unicorn-33121.exe (PID: 8104)
      • Unicorn-37463.exe (PID: 6156)
      • Unicorn-31048.exe (PID: 8160)
      • Unicorn-8166.exe (PID: 8152)
      • Unicorn-40447.exe (PID: 720)
      • Unicorn-7303.exe (PID: 8636)
      • Unicorn-49945.exe (PID: 8824)
      • Unicorn-21423.exe (PID: 8112)
      • Unicorn-36873.exe (PID: 8784)
      • Unicorn-21038.exe (PID: 8628)
      • Unicorn-57646.exe (PID: 8848)
      • Unicorn-19686.exe (PID: 8604)
      • Unicorn-18529.exe (PID: 9072)
      • Unicorn-32685.exe (PID: 8904)
      • Unicorn-32950.exe (PID: 8868)
      • Unicorn-11621.exe (PID: 9116)
      • Unicorn-38518.exe (PID: 8716)
      • Unicorn-204.exe (PID: 8656)
      • Unicorn-42964.exe (PID: 8676)
      • Unicorn-49945.exe (PID: 8440)
      • Unicorn-8528.exe (PID: 8832)
      • Unicorn-18263.exe (PID: 9080)
      • Unicorn-24019.exe (PID: 8880)
      • Unicorn-47096.exe (PID: 1512)
      • Unicorn-21423.exe (PID: 8120)
      • Unicorn-22783.exe (PID: 7152)
      • Unicorn-49301.exe (PID: 6828)
      • Unicorn-28041.exe (PID: 8188)
      • Unicorn-53998.exe (PID: 8320)
      • Unicorn-19681.exe (PID: 2244)
      • Unicorn-44569.exe (PID: 8264)
      • Unicorn-6067.exe (PID: 9260)
      • Unicorn-22595.exe (PID: 9276)
      • Unicorn-3459.exe (PID: 9284)
      • Unicorn-4880.exe (PID: 9292)
      • Unicorn-30646.exe (PID: 9328)
      • Unicorn-45337.exe (PID: 9320)
      • Unicorn-61709.exe (PID: 9388)
      • Unicorn-3380.exe (PID: 9236)
      • Unicorn-49369.exe (PID: 8856)
      • Unicorn-19089.exe (PID: 7648)
      • Unicorn-5285.exe (PID: 9524)
      • Unicorn-61585.exe (PID: 9508)
      • Unicorn-16831.exe (PID: 9460)
      • Unicorn-58056.exe (PID: 9484)
      • Unicorn-15107.exe (PID: 9452)
      • Unicorn-13925.exe (PID: 9380)
      • Unicorn-27081.exe (PID: 7812)
      • Unicorn-3344.exe (PID: 2644)
      • Unicorn-7599.exe (PID: 9612)
      • Unicorn-23625.exe (PID: 9784)
      • Unicorn-14694.exe (PID: 9760)
      • Unicorn-17494.exe (PID: 9776)
      • Unicorn-15191.exe (PID: 9768)
      • Unicorn-30841.exe (PID: 10116)
      • Unicorn-7013.exe (PID: 9672)
      • Unicorn-50049.exe (PID: 9960)
      • Unicorn-3759.exe (PID: 9800)
      • Unicorn-39961.exe (PID: 9792)
      • Unicorn-3759.exe (PID: 9808)
      • Unicorn-21814.exe (PID: 9540)
      • Unicorn-6254.exe (PID: 9516)
      • Unicorn-64342.exe (PID: 9824)
      • Unicorn-63230.exe (PID: 9844)
      • Unicorn-58056.exe (PID: 9476)
      • Unicorn-3183.exe (PID: 9868)
      • Unicorn-58902.exe (PID: 9908)
      • Unicorn-41589.exe (PID: 9940)
      • Unicorn-7926.exe (PID: 10168)
      • Unicorn-16459.exe (PID: 10192)
      • Unicorn-13627.exe (PID: 10232)
      • Unicorn-507.exe (PID: 1312)
      • Unicorn-2231.exe (PID: 4400)
      • Unicorn-44992.exe (PID: 10100)
      • Unicorn-25086.exe (PID: 6004)
      • Unicorn-33838.exe (PID: 10316)
      • Unicorn-9600.exe (PID: 10444)
      • Unicorn-55272.exe (PID: 10452)
      • Unicorn-2318.exe (PID: 10472)
      • Unicorn-4923.exe (PID: 6640)
      • Unicorn-4923.exe (PID: 10104)
      • Unicorn-3854.exe (PID: 10676)
      • Unicorn-32974.exe (PID: 10716)
      • Unicorn-13166.exe (PID: 10052)
      • Unicorn-20403.exe (PID: 10964)
      • Unicorn-23057.exe (PID: 10324)
      • Unicorn-36129.exe (PID: 11072)
      • Unicorn-64120.exe (PID: 11100)
      • Unicorn-61711.exe (PID: 11112)
      • Unicorn-1728.exe (PID: 10900)
      • Unicorn-59398.exe (PID: 10956)
      • Unicorn-59865.exe (PID: 11156)
      • Unicorn-19025.exe (PID: 11172)
      • Unicorn-39807.exe (PID: 11136)
      • Unicorn-20369.exe (PID: 3176)
      • Unicorn-26529.exe (PID: 10788)
      • Unicorn-19438.exe (PID: 2560)
      • Unicorn-15324.exe (PID: 11300)
      • Unicorn-140.exe (PID: 11412)
      • Unicorn-32319.exe (PID: 11460)
      • Unicorn-58744.exe (PID: 11524)
      • Unicorn-716.exe (PID: 11492)
      • Unicorn-29142.exe (PID: 11428)
      • Unicorn-29985.exe (PID: 11588)
      • Unicorn-58168.exe (PID: 11664)
      • Unicorn-28833.exe (PID: 11656)
      • Unicorn-22118.exe (PID: 11732)
      • Unicorn-4556.exe (PID: 11868)
      • Unicorn-13072.exe (PID: 11532)
      • Unicorn-21926.exe (PID: 11700)
      • Unicorn-55760.exe (PID: 11860)
      • Unicorn-44328.exe (PID: 11828)
      • Unicorn-55263.exe (PID: 11896)
      • Unicorn-24046.exe (PID: 11884)
      • Unicorn-44328.exe (PID: 11836)
      • Unicorn-59149.exe (PID: 12056)
      • Unicorn-20577.exe (PID: 12036)
      • Unicorn-7727.exe (PID: 12084)
      • Unicorn-7347.exe (PID: 12044)
      • Unicorn-55470.exe (PID: 12156)
      • Unicorn-49724.exe (PID: 12216)
      • Unicorn-60441.exe (PID: 11392)
      • Unicorn-21345.exe (PID: 5232)
      • Unicorn-12695.exe (PID: 5736)
      • Unicorn-10611.exe (PID: 12300)
      • Unicorn-29513.exe (PID: 12284)
      • Unicorn-16558.exe (PID: 12420)
      • Unicorn-49424.exe (PID: 12508)
      • Unicorn-19054.exe (PID: 12528)
      • Unicorn-17820.exe (PID: 12544)
      • Unicorn-18286.exe (PID: 12660)
      • Unicorn-32320.exe (PID: 12680)
      • Unicorn-58349.exe (PID: 12588)
      • Unicorn-52014.exe (PID: 13460)
      • Unicorn-16366.exe (PID: 12368)
      • Unicorn-56622.exe (PID: 12428)
      • Unicorn-44920.exe (PID: 12948)
      • Unicorn-16471.exe (PID: 13232)
      • Unicorn-33369.exe (PID: 14196)
      • Unicorn-51630.exe (PID: 13376)
      • Unicorn-707.exe (PID: 13252)
      • Unicorn-59231.exe (PID: 13000)
      • Unicorn-13207.exe (PID: 13224)
      • Unicorn-10981.exe (PID: 13432)
      • Unicorn-13975.exe (PID: 13128)
      • Unicorn-1168.exe (PID: 13136)
      • Unicorn-50591.exe (PID: 13620)
      • Unicorn-49902.exe (PID: 12984)
      • Unicorn-33177.exe (PID: 13528)
      • Unicorn-9174.exe (PID: 13536)
      • Unicorn-21885.exe (PID: 14516)
      • Unicorn-16471.exe (PID: 13244)
      • Unicorn-997.exe (PID: 13488)
      • Unicorn-32118.exe (PID: 12444)
      • Unicorn-17889.exe (PID: 13388)
      • Unicorn-504.exe (PID: 14204)
      • Unicorn-41439.exe (PID: 13156)
      • Unicorn-63476.exe (PID: 14708)
      • Unicorn-13782.exe (PID: 14756)
      • Unicorn-18132.exe (PID: 5172)
      • Unicorn-21619.exe (PID: 14560)
      • Unicorn-60676.exe (PID: 14692)
      • Unicorn-3804.exe (PID: 14700)
      • Unicorn-60676.exe (PID: 14332)
      • Unicorn-36249.exe (PID: 14376)
      • Unicorn-33561.exe (PID: 14244)
      • Unicorn-3685.exe (PID: 14468)
      • Unicorn-33561.exe (PID: 14236)
      • Unicorn-43567.exe (PID: 15012)
      • Unicorn-13782.exe (PID: 14764)
      • Unicorn-39263.exe (PID: 14928)
      • Unicorn-40394.exe (PID: 14868)
      • Unicorn-13192.exe (PID: 15280)
      • Unicorn-40031.exe (PID: 15208)
      • Unicorn-53767.exe (PID: 15216)
      • Unicorn-9248.exe (PID: 14280)
      • Unicorn-10696.exe (PID: 15236)
      • Unicorn-34431.exe (PID: 15176)
      • Unicorn-59632.exe (PID: 15256)
      • Unicorn-11512.exe (PID: 15596)
      • Unicorn-40263.exe (PID: 15620)
      • Unicorn-34431.exe (PID: 15168)
      • Unicorn-63855.exe (PID: 15468)
      • Unicorn-3799.exe (PID: 15308)
      • Unicorn-12616.exe (PID: 15428)
      • Unicorn-63855.exe (PID: 15460)
      • Unicorn-58973.exe (PID: 15324)
      • Unicorn-13228.exe (PID: 15396)
      • Unicorn-27337.exe (PID: 16960)
      • Unicorn-59165.exe (PID: 15412)
      • Unicorn-50120.exe (PID: 15452)
      • Unicorn-18132.exe (PID: 15348)
      • Unicorn-12839.exe (PID: 6476)
      • Unicorn-39409.exe (PID: 7500)
      • Unicorn-50967.exe (PID: 15116)
      • Unicorn-21553.exe (PID: 15292)
    • Reads the computer name

      • 1 (1133).exe (PID: 4528)
      • Unicorn-56734.exe (PID: 1760)
      • Unicorn-56537.exe (PID: 6480)
      • Unicorn-37740.exe (PID: 1660)
      • Unicorn-8806.exe (PID: 4996)
      • Unicorn-21324.exe (PID: 1168)
      • Unicorn-28812.exe (PID: 4688)
      • Unicorn-14936.exe (PID: 2432)
      • Unicorn-31953.exe (PID: 2092)
      • Unicorn-55777.exe (PID: 5344)
      • Unicorn-16001.exe (PID: 7148)
      • Unicorn-50136.exe (PID: 6708)
      • Unicorn-50401.exe (PID: 4208)
      • Unicorn-37172.exe (PID: 5304)
      • Unicorn-23436.exe (PID: 1764)
      • Unicorn-14687.exe (PID: 2268)
      • Unicorn-25617.exe (PID: 1040)
      • Unicorn-35046.exe (PID: 5360)
      • Unicorn-34973.exe (PID: 2984)
      • Unicorn-40806.exe (PID: 2284)
      • Unicorn-18527.exe (PID: 6032)
      • Unicorn-20609.exe (PID: 1128)
      • Unicorn-743.exe (PID: 6676)
      • Unicorn-50204.exe (PID: 5400)
      • Unicorn-10935.exe (PID: 668)
      • Unicorn-36312.exe (PID: 1132)
      • Unicorn-40038.exe (PID: 3896)
      • Unicorn-29478.exe (PID: 2656)
      • Unicorn-4013.exe (PID: 7244)
      • Unicorn-36001.exe (PID: 7264)
      • Unicorn-51304.exe (PID: 7344)
      • Unicorn-951.exe (PID: 7236)
      • Unicorn-44361.exe (PID: 7272)
      • Unicorn-20049.exe (PID: 7292)
      • Unicorn-44169.exe (PID: 7256)
      • Unicorn-42943.exe (PID: 7308)
      • Unicorn-13031.exe (PID: 7356)
      • Unicorn-31398.exe (PID: 7364)
      • Unicorn-23321.exe (PID: 7376)
      • Unicorn-29452.exe (PID: 7384)
      • Unicorn-47661.exe (PID: 7392)
      • Unicorn-39862.exe (PID: 7708)
      • Unicorn-32166.exe (PID: 7552)
      • Unicorn-49353.exe (PID: 7576)
      • Unicorn-19207.exe (PID: 7528)
      • Unicorn-48511.exe (PID: 7316)
      • Unicorn-1531.exe (PID: 7564)
      • Unicorn-4983.exe (PID: 7592)
      • Unicorn-40417.exe (PID: 7612)
      • Unicorn-43318.exe (PID: 8040)
      • Unicorn-25830.exe (PID: 8072)
      • Unicorn-61496.exe (PID: 7896)
      • Unicorn-15440.exe (PID: 7960)
      • Unicorn-63577.exe (PID: 7520)
      • Unicorn-7271.exe (PID: 8048)
      • Unicorn-173.exe (PID: 7864)
      • Unicorn-24678.exe (PID: 7968)
      • Unicorn-27374.exe (PID: 7988)
      • Unicorn-49177.exe (PID: 8324)
      • Unicorn-2093.exe (PID: 8032)
      • Unicorn-25249.exe (PID: 8448)
      • Unicorn-16209.exe (PID: 7904)
      • Unicorn-18918.exe (PID: 8524)
      • Unicorn-32950.exe (PID: 8868)
      • Unicorn-23991.exe (PID: 8092)
      • Unicorn-21423.exe (PID: 8120)
      • Unicorn-26904.exe (PID: 8648)
      • Unicorn-13084.exe (PID: 8484)
      • Unicorn-21038.exe (PID: 8628)
      • Unicorn-60417.exe (PID: 8512)
      • Unicorn-22783.exe (PID: 7152)
      • Unicorn-32685.exe (PID: 8904)
      • Unicorn-30841.exe (PID: 10116)
      • Unicorn-61585.exe (PID: 9508)
      • Unicorn-6254.exe (PID: 9516)
      • Unicorn-56805.exe (PID: 8432)
      • Unicorn-38518.exe (PID: 8716)
      • Unicorn-27081.exe (PID: 7812)
      • Unicorn-47096.exe (PID: 1512)
      • Unicorn-44569.exe (PID: 8264)
      • Unicorn-3183.exe (PID: 9868)
      • Unicorn-39961.exe (PID: 9792)
      • Unicorn-9600.exe (PID: 10444)
      • Unicorn-13925.exe (PID: 9380)
      • Unicorn-32327.exe (PID: 8196)
      • Unicorn-4923.exe (PID: 10104)
      • Unicorn-10000.exe (PID: 6644)
      • Unicorn-39295.exe (PID: 8248)
      • Unicorn-49945.exe (PID: 8440)
      • Unicorn-14038.exe (PID: 9440)
      • Unicorn-20369.exe (PID: 3176)
      • Unicorn-2724.exe (PID: 10180)
      • Unicorn-11621.exe (PID: 9116)
      • Unicorn-55118.exe (PID: 11476)
      • Unicorn-50575.exe (PID: 12308)
      • Unicorn-61709.exe (PID: 9388)
      • Unicorn-44328.exe (PID: 11844)
      • Unicorn-4909.exe (PID: 10124)
      • Unicorn-15191.exe (PID: 9768)
      • Unicorn-42584.exe (PID: 10656)
      • Unicorn-5703.exe (PID: 5780)
      • Unicorn-19438.exe (PID: 2560)
      • Unicorn-42661.exe (PID: 10888)
      • Unicorn-37657.exe (PID: 10220)
      • Unicorn-33838.exe (PID: 10316)
      • Unicorn-10788.exe (PID: 10096)
      • Unicorn-50972.exe (PID: 14104)
      • Unicorn-42407.exe (PID: 12332)
      • Unicorn-39844.exe (PID: 14128)
      • Unicorn-33369.exe (PID: 14196)
      • Unicorn-612.exe (PID: 10684)
      • Unicorn-4556.exe (PID: 11868)
      • Unicorn-55263.exe (PID: 11896)
      • Unicorn-35111.exe (PID: 12236)
      • Unicorn-62553.exe (PID: 872)
      • Unicorn-6067.exe (PID: 9260)
      • Unicorn-37918.exe (PID: 9532)
      • Unicorn-59149.exe (PID: 12056)
      • Unicorn-53047.exe (PID: 11208)
      • Unicorn-4733.exe (PID: 12144)
      • Unicorn-29142.exe (PID: 11428)
      • Unicorn-21885.exe (PID: 14516)
      • Unicorn-37463.exe (PID: 6156)
      • Unicorn-58744.exe (PID: 11524)
      • Unicorn-42964.exe (PID: 8676)
      • Unicorn-23265.exe (PID: 6248)
      • Unicorn-40447.exe (PID: 6808)
      • Unicorn-6336.exe (PID: 10136)
      • Unicorn-14622.exe (PID: 11196)
      • Unicorn-24593.exe (PID: 10460)
      • Unicorn-24920.exe (PID: 12520)
      • Unicorn-26294.exe (PID: 16912)
      • Unicorn-19025.exe (PID: 11172)
      • Unicorn-8528.exe (PID: 8832)
    • Creates files or folders in the user directory

      • WerFault.exe (PID: 10104)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | Win32 Executable Microsoft Visual Basic 6 (90.6)
.exe | Win32 Executable (generic) (4.9)
.exe | Generic Win/DOS Executable (2.2)
.exe | DOS Executable Generic (2.2)

EXIF

EXE

MachineType: Intel 386 or later, and compatibles
TimeStamp: 2019:01:19 13:34:56+00:00
ImageFileCharacteristics: No relocs, Executable, No line numbers, No symbols, 32-bit, No debug, Removable run from swap, Net run from swap, Uniprocessor only, Bytes reversed hi
PEType: PE32
LinkerVersion: 6
CodeSize: 176128
InitializedDataSize: 299008
UninitializedDataSize: -
EntryPoint: 0x13d4
OSVersion: 4
ImageVersion: 1
SubsystemVersion: 4
Subsystem: Windows GUI
FileVersionNumber: 1.0.0.0
ProductVersionNumber: 1.0.0.0
FileFlagsMask: 0x003f
FileFlags: (none)
FileOS: Win32
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: Chinese (Simplified)
CharacterSet: Unicode
CompanyName: UEFI
ProductName: Kawaii-Unicorn
FileVersion: 1
ProductVersion: 1
InternalName: Kawaii-Unicorn
OriginalFileName: Kawaii-Unicorn.exe
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
756
Monitored processes
621
Malicious processes
89
Suspicious processes
79

Behavior graph

Click at the process to see the details
start 1 (1133).exe sppextcomobj.exe no specs slui.exe unicorn-56734.exe unicorn-56537.exe unicorn-37740.exe unicorn-55777.exe unicorn-28812.exe unicorn-14936.exe unicorn-8806.exe unicorn-31953.exe unicorn-21324.exe unicorn-16001.exe unicorn-50136.exe unicorn-50401.exe unicorn-37172.exe unicorn-23436.exe unicorn-36945.exe unicorn-20609.exe unicorn-743.exe unicorn-28422.exe unicorn-14687.exe unicorn-50204.exe unicorn-32476.exe unicorn-25617.exe unicorn-33214.exe unicorn-35046.exe unicorn-30639.exe unicorn-34973.exe unicorn-29107.exe unicorn-50505.exe unicorn-40806.exe unicorn-18527.exe unicorn-5912.exe unicorn-10935.exe unicorn-40038.exe unicorn-38615.exe unicorn-36312.exe unicorn-29478.exe unicorn-4096.exe unicorn-55527.exe unicorn-951.exe unicorn-4013.exe unicorn-44169.exe unicorn-36001.exe unicorn-44361.exe unicorn-16519.exe unicorn-20049.exe unicorn-29182.exe unicorn-42943.exe unicorn-48511.exe unicorn-46473.exe unicorn-5632.exe unicorn-51304.exe unicorn-13031.exe unicorn-31398.exe unicorn-23321.exe unicorn-29452.exe unicorn-47661.exe unicorn-63577.exe unicorn-19207.exe unicorn-32166.exe unicorn-1531.exe unicorn-49353.exe unicorn-4983.exe unicorn-40417.exe unicorn-7744.exe unicorn-24579.exe no specs unicorn-24465.exe unicorn-53800.exe unicorn-48999.exe unicorn-39862.exe unicorn-22566.exe unicorn-29857.exe unicorn-54288.exe unicorn-54745.exe unicorn-10375.exe unicorn-3276.exe unicorn-173.exe unicorn-40941.exe unicorn-9694.exe unicorn-61496.exe unicorn-16209.exe unicorn-23726.exe unicorn-63790.exe unicorn-31585.exe unicorn-15440.exe unicorn-24678.exe unicorn-27374.exe unicorn-2093.exe unicorn-43318.exe unicorn-7271.exe unicorn-25830.exe unicorn-63333.exe unicorn-23991.exe unicorn-33121.exe unicorn-21423.exe unicorn-21423.exe unicorn-8166.exe unicorn-31048.exe unicorn-49301.exe unicorn-37463.exe unicorn-19089.exe unicorn-39701.exe unicorn-40447.exe unicorn-40447.exe unicorn-32327.exe unicorn-39295.exe unicorn-43894.exe unicorn-59545.exe unicorn-49177.exe unicorn-56805.exe unicorn-49945.exe unicorn-25249.exe unicorn-39124.exe unicorn-13084.exe unicorn-60417.exe unicorn-18918.exe unicorn-780.exe unicorn-42929.exe unicorn-19686.exe unicorn-21038.exe unicorn-7303.exe no specs unicorn-26904.exe unicorn-204.exe unicorn-42964.exe unicorn-6622.exe unicorn-38518.exe unicorn-21414.exe no specs unicorn-36873.exe no specs unicorn-12368.exe unicorn-33535.exe unicorn-49945.exe unicorn-8528.exe unicorn-57646.exe unicorn-49369.exe no specs unicorn-32950.exe unicorn-24019.exe unicorn-13084.exe unicorn-32685.exe unicorn-35062.exe unicorn-18529.exe unicorn-18263.exe unicorn-11621.exe unicorn-25929.exe unicorn-47096.exe unicorn-22783.exe unicorn-19681.exe no specs unicorn-3344.exe no specs unicorn-28041.exe unicorn-44569.exe unicorn-53998.exe unicorn-27081.exe unicorn-18913.exe unicorn-52846.exe unicorn-3380.exe no specs unicorn-23935.exe no specs unicorn-6067.exe unicorn-22595.exe unicorn-3459.exe no specs unicorn-4880.exe unicorn-45337.exe unicorn-30646.exe no specs unicorn-25663.exe unicorn-13925.exe unicorn-61709.exe no specs unicorn-27007.exe unicorn-14038.exe unicorn-15107.exe no specs unicorn-16831.exe unicorn-57864.exe unicorn-58056.exe unicorn-58056.exe unicorn-58056.exe unicorn-58056.exe unicorn-61585.exe unicorn-6254.exe unicorn-5285.exe no specs unicorn-37918.exe unicorn-21814.exe unicorn-7599.exe unicorn-7013.exe unicorn-14694.exe unicorn-15191.exe unicorn-17494.exe no specs unicorn-23625.exe unicorn-39961.exe unicorn-3759.exe unicorn-3759.exe unicorn-64342.exe unicorn-63230.exe unicorn-3183.exe unicorn-58902.exe unicorn-41589.exe unicorn-50049.exe unicorn-57100.exe werfault.exe no specs unicorn-30841.exe unicorn-6336.exe unicorn-56606.exe unicorn-7926.exe unicorn-2724.exe unicorn-16459.exe unicorn-62661.exe unicorn-37657.exe unicorn-13627.exe no specs unicorn-31142.exe no specs unicorn-56807.exe unicorn-507.exe no specs unicorn-2231.exe unicorn-13166.exe unicorn-44992.exe unicorn-40660.exe no specs unicorn-25086.exe no specs unicorn-62553.exe unicorn-2811.exe no specs unicorn-8941.exe unicorn-33838.exe unicorn-23057.exe unicorn-9600.exe unicorn-55272.exe no specs unicorn-24593.exe no specs unicorn-2318.exe unicorn-24904.exe no specs unicorn-4923.exe unicorn-56725.exe unicorn-10788.exe unicorn-33918.exe unicorn-42584.exe unicorn-3854.exe unicorn-612.exe unicorn-32974.exe unicorn-36347.exe unicorn-42661.exe unicorn-1728.exe no specs unicorn-16913.exe no specs unicorn-59398.exe no specs unicorn-20403.exe unicorn-56061.exe unicorn-35553.exe unicorn-35745.exe unicorn-35937.exe no specs unicorn-36129.exe unicorn-19793.exe unicorn-64120.exe unicorn-61711.exe no specs unicorn-47976.exe unicorn-47976.exe no specs unicorn-39807.exe unicorn-37207.exe no specs unicorn-59865.exe unicorn-19025.exe unicorn-14622.exe unicorn-53047.exe unicorn-61712.exe no specs unicorn-28153.exe unicorn-10788.exe unicorn-4909.exe unicorn-20369.exe unicorn-4923.exe unicorn-4923.exe unicorn-10000.exe unicorn-40404.exe unicorn-26529.exe unicorn-49149.exe unicorn-5703.exe unicorn-19438.exe unicorn-62884.exe unicorn-15324.exe no specs unicorn-12797.exe no specs unicorn-60441.exe no specs unicorn-140.exe unicorn-29142.exe unicorn-45863.exe no specs unicorn-32319.exe no specs unicorn-55118.exe unicorn-716.exe no specs unicorn-58744.exe unicorn-13072.exe no specs unicorn-13456.exe unicorn-29985.exe no specs unicorn-62382.exe no specs unicorn-21276.exe no specs unicorn-28833.exe unicorn-58168.exe no specs unicorn-61697.exe no specs unicorn-21926.exe no specs unicorn-37385.exe unicorn-22118.exe unicorn-5781.exe unicorn-44328.exe unicorn-44328.exe no specs unicorn-44328.exe unicorn-44328.exe unicorn-44328.exe no specs unicorn-44328.exe unicorn-58063.exe unicorn-55760.exe unicorn-4556.exe no specs unicorn-36159.exe no specs unicorn-24046.exe no specs unicorn-55263.exe unicorn-49895.exe unicorn-24195.exe no specs unicorn-34260.exe no specs unicorn-7155.exe no specs unicorn-20577.exe no specs unicorn-7347.exe unicorn-59149.exe unicorn-7539.exe unicorn-7727.exe unicorn-4733.exe unicorn-55470.exe no specs unicorn-30966.exe unicorn-21921.exe unicorn-49724.exe unicorn-35111.exe unicorn-29513.exe unicorn-21345.exe unicorn-23265.exe no specs unicorn-6928.exe no specs unicorn-12695.exe no specs unicorn-10611.exe no specs unicorn-50575.exe unicorn-42407.exe unicorn-42407.exe unicorn-16366.exe unicorn-6160.exe no specs unicorn-5895.exe unicorn-16558.exe no specs unicorn-56622.exe no specs unicorn-32118.exe unicorn-39144.exe no specs unicorn-49424.exe no specs unicorn-24920.exe unicorn-19054.exe unicorn-17820.exe no specs unicorn-43751.exe no specs unicorn-13679.exe no specs unicorn-58349.exe unicorn-38100.exe unicorn-8957.exe no specs unicorn-7119.exe no specs unicorn-26454.exe no specs unicorn-18286.exe no specs unicorn-24152.exe no specs unicorn-32320.exe unicorn-64318.exe unicorn-21449.exe no specs unicorn-62673.exe no specs unicorn-39430.exe no specs unicorn-44920.exe no specs unicorn-49902.exe no specs unicorn-24329.exe no specs unicorn-59231.exe no specs unicorn-30095.exe no specs unicorn-3119.exe no specs unicorn-42620.exe no specs unicorn-40857.exe no specs unicorn-13975.exe unicorn-1168.exe no specs unicorn-10405.exe unicorn-41439.exe no specs unicorn-42128.exe no specs unicorn-5916.exe no specs unicorn-49409.exe no specs unicorn-13207.exe unicorn-16471.exe no specs unicorn-16471.exe no specs unicorn-707.exe no specs unicorn-21567.exe no specs unicorn-27209.exe no specs unicorn-51630.exe unicorn-17889.exe no specs unicorn-6383.exe no specs unicorn-10981.exe unicorn-20118.exe unicorn-52014.exe no specs unicorn-997.exe no specs unicorn-22356.exe unicorn-33177.exe no specs unicorn-9174.exe unicorn-57598.exe no specs unicorn-50591.exe no specs unicorn-25673.exe no specs unicorn-20118.exe no specs unicorn-59710.exe no specs unicorn-50972.exe unicorn-39844.exe unicorn-33369.exe unicorn-504.exe no specs unicorn-18102.exe no specs unicorn-33561.exe no specs unicorn-33561.exe no specs unicorn-33561.exe no specs unicorn-9363.exe no specs unicorn-9248.exe no specs unicorn-2543.exe no specs unicorn-3877.exe unicorn-60676.exe no specs unicorn-36249.exe unicorn-28774.exe no specs unicorn-3685.exe unicorn-21942.exe unicorn-37401.exe no specs unicorn-21885.exe unicorn-21619.exe no specs unicorn-60676.exe unicorn-3804.exe no specs unicorn-63476.exe no specs unicorn-13782.exe no specs unicorn-13782.exe no specs unicorn-40394.exe no specs slui.exe no specs unicorn-39263.exe no specs unicorn-4374.exe no specs unicorn-55216.exe no specs unicorn-43567.exe no specs unicorn-28185.exe no specs unicorn-2263.exe no specs unicorn-50967.exe no specs unicorn-50967.exe no specs unicorn-50967.exe no specs unicorn-34431.exe unicorn-40031.exe no specs unicorn-54836.exe no specs unicorn-40031.exe no specs unicorn-40031.exe unicorn-34431.exe no specs unicorn-34431.exe no specs unicorn-34431.exe no specs unicorn-41100.exe no specs unicorn-25892.exe no specs unicorn-40031.exe no specs unicorn-53767.exe no specs unicorn-10696.exe no specs unicorn-59632.exe no specs unicorn-2839.exe no specs unicorn-13192.exe no specs unicorn-21553.exe no specs unicorn-3799.exe no specs unicorn-3799.exe unicorn-58973.exe no specs unicorn-47790.exe no specs unicorn-18132.exe unicorn-18132.exe no specs unicorn-18132.exe no specs unicorn-18132.exe no specs unicorn-37733.exe no specs unicorn-58096.exe no specs unicorn-18132.exe no specs unicorn-18132.exe unicorn-29067.exe no specs unicorn-18132.exe unicorn-31867.exe unicorn-53565.exe no specs unicorn-13228.exe no specs unicorn-59165.exe unicorn-59165.exe no specs unicorn-12616.exe unicorn-12351.exe no specs unicorn-50120.exe no specs unicorn-50120.exe no specs unicorn-63855.exe no specs unicorn-63855.exe unicorn-63855.exe no specs unicorn-63855.exe no specs unicorn-4183.exe no specs unicorn-50120.exe no specs unicorn-50312.exe no specs unicorn-6368.exe no specs unicorn-8598.exe no specs unicorn-11512.exe no specs unicorn-40263.exe no specs unicorn-1952.exe no specs unicorn-9160.exe no specs unicorn-44552.exe no specs unicorn-53981.exe no specs unicorn-18583.exe unicorn-21582.exe no specs unicorn-21582.exe no specs unicorn-21582.exe no specs unicorn-2943.exe unicorn-19851.exe unicorn-19851.exe no specs unicorn-60312.exe no specs unicorn-44548.exe no specs unicorn-44548.exe no specs unicorn-50428.exe no specs unicorn-8326.exe no specs unicorn-12839.exe no specs unicorn-13908.exe no specs unicorn-59247.exe no specs unicorn-16295.exe no specs unicorn-51031.exe no specs unicorn-17913.exe no specs unicorn-17913.exe no specs unicorn-17913.exe no specs unicorn-60014.exe no specs unicorn-10320.exe unicorn-36876.exe no specs unicorn-8421.exe no specs unicorn-64151.exe no specs unicorn-20543.exe no specs unicorn-25142.exe no specs unicorn-9199.exe no specs unicorn-9199.exe no specs unicorn-534.exe no specs unicorn-58433.exe no specs unicorn-46968.exe no specs unicorn-55136.exe no specs unicorn-55136.exe no specs unicorn-42713.exe no specs unicorn-1872.exe no specs unicorn-8696.exe no specs unicorn-50798.exe no specs unicorn-41753.exe unicorn-26294.exe unicorn-27337.exe unicorn-52910.exe no specs unicorn-50305.exe unicorn-7855.exe no specs unicorn-18591.exe no specs unicorn-37927.exe no specs unicorn-37927.exe no specs unicorn-24191.exe no specs unicorn-24191.exe no specs unicorn-24191.exe no specs unicorn-24191.exe no specs unicorn-24191.exe no specs unicorn-37927.exe no specs unicorn-18591.exe no specs unicorn-24191.exe no specs unicorn-12261.exe no specs unicorn-52225.exe no specs unicorn-35126.exe no specs unicorn-35126.exe no specs unicorn-35126.exe no specs unicorn-43792.exe no specs unicorn-43792.exe no specs unicorn-43792.exe no specs unicorn-43792.exe no specs unicorn-43792.exe no specs unicorn-24191.exe no specs unicorn-21507.exe no specs unicorn-51373.exe no specs unicorn-2064.exe no specs unicorn-52334.exe no specs unicorn-2256.exe no specs unicorn-51457.exe no specs unicorn-43289.exe no specs unicorn-24191.exe no specs unicorn-24191.exe no specs unicorn-24191.exe no specs unicorn-24191.exe no specs unicorn-24191.exe no specs unicorn-24191.exe no specs unicorn-24191.exe no specs unicorn-39588.exe no specs unicorn-26486.exe no specs unicorn-39863.exe no specs unicorn-14527.exe no specs unicorn-28518.exe no specs unicorn-12182.exe no specs unicorn-51280.exe no specs unicorn-64456.exe no specs unicorn-35915.exe no specs unicorn-62836.exe no specs unicorn-49656.exe no specs unicorn-62609.exe no specs unicorn-6309.exe no specs unicorn-62801.exe no specs unicorn-63553.exe no specs unicorn-7580.exe no specs unicorn-22343.exe no specs unicorn-22343.exe no specs unicorn-41679.exe no specs unicorn-41679.exe no specs unicorn-41679.exe no specs unicorn-39409.exe no specs unicorn-39409.exe no specs unicorn-39409.exe no specs unicorn-38879.exe no specs unicorn-22153.exe no specs unicorn-5816.exe no specs unicorn-4000.exe no specs unicorn-62173.exe no specs unicorn-62173.exe no specs unicorn-62173.exe no specs unicorn-62173.exe no specs unicorn-62173.exe no specs unicorn-62173.exe no specs unicorn-32507.exe no specs unicorn-62173.exe no specs unicorn-62173.exe no specs unicorn-36972.exe no specs unicorn-42572.exe no specs unicorn-54038.exe no specs unicorn-56308.exe no specs unicorn-56308.exe no specs unicorn-56308.exe no specs unicorn-56308.exe no specs unicorn-56308.exe no specs unicorn-56308.exe no specs unicorn-56308.exe no specs unicorn-56308.exe no specs unicorn-56308.exe no specs unicorn-56308.exe no specs unicorn-56308.exe no specs unicorn-56308.exe no specs unicorn-56308.exe no specs unicorn-53508.exe no specs unicorn-53508.exe no specs unicorn-11976.exe no specs unicorn-11208.exe no specs unicorn-60409.exe no specs unicorn-2271.exe no specs unicorn-61670.exe no specs unicorn-26958.exe no specs unicorn-62054.exe no specs unicorn-5344.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
668C:\Users\admin\AppData\Local\Temp\Unicorn-10935.exeC:\Users\admin\AppData\Local\Temp\Unicorn-10935.exe
Unicorn-37172.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-10935.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
720C:\Users\admin\AppData\Local\Temp\Unicorn-40447.exeC:\Users\admin\AppData\Local\Temp\Unicorn-40447.exe
Unicorn-30639.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-40447.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
732C:\Users\admin\AppData\Local\Temp\Unicorn-31142.exeC:\Users\admin\AppData\Local\Temp\Unicorn-31142.exeUnicorn-22783.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-31142.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
776C:\Users\admin\AppData\Local\Temp\Unicorn-24191.exeC:\Users\admin\AppData\Local\Temp\Unicorn-24191.exeUnicorn-4909.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
856C:\Users\admin\AppData\Local\Temp\Unicorn-50505.exeC:\Users\admin\AppData\Local\Temp\Unicorn-50505.exe
Unicorn-23436.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-50505.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
872C:\Users\admin\AppData\Local\Temp\Unicorn-62553.exeC:\Users\admin\AppData\Local\Temp\Unicorn-62553.exe
Unicorn-63333.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-62553.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
900C:\Users\admin\AppData\Local\Temp\Unicorn-13908.exeC:\Users\admin\AppData\Local\Temp\Unicorn-13908.exeUnicorn-50575.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-13908.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
1040C:\Users\admin\AppData\Local\Temp\Unicorn-25617.exeC:\Users\admin\AppData\Local\Temp\Unicorn-25617.exe
Unicorn-50136.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-25617.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1128C:\Users\admin\AppData\Local\Temp\Unicorn-20609.exeC:\Users\admin\AppData\Local\Temp\Unicorn-20609.exe
Unicorn-21324.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-20609.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1132C:\Users\admin\AppData\Local\Temp\Unicorn-36312.exeC:\Users\admin\AppData\Local\Temp\Unicorn-36312.exe
Unicorn-56537.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-36312.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
Total events
12 570
Read events
12 570
Write events
0
Delete events
0

Modification events

No data
Executable files
784
Suspicious files
3
Text files
1
Unknown types
0

Dropped files

PID
Process
Filename
Type
45281 (1133).exeC:\Users\admin\AppData\Local\Temp\Unicorn-56734.exeexecutable
MD5:12476B9C49C7D36A170176D5C3B1B519
SHA256:3B9D3EA3A49C60631D6D084B44AFCB874B387695A751EEF22D0A7F181449005B
1168Unicorn-21324.exeC:\Users\admin\AppData\Local\Temp\Unicorn-20609.exeexecutable
MD5:41EEAD5744D5E9726FC1EA4812A2B000
SHA256:49084C7C9EA3B5B00EC9062A770602149E14046A046FA7B2986AF6FD9CB9FF88
2432Unicorn-14936.exeC:\Users\admin\AppData\Local\Temp\Unicorn-50401.exeexecutable
MD5:9862C8659DB4E47B8F44296B55AE3365
SHA256:62EDAC979FD81D478BA6CFAD7817C86D284F06292FD0DCC9A55E7DCF6E479462
4996Unicorn-8806.exeC:\Users\admin\AppData\Local\Temp\Unicorn-16001.exeexecutable
MD5:8D67A80444F5F2DEB5CFE6463016E257
SHA256:8B6F5C90598A094E95D60F8669DAF0E4D64AF102A97176934F9C00BFA78E8B4D
1660Unicorn-37740.exeC:\Users\admin\AppData\Local\Temp\Unicorn-23436.exeexecutable
MD5:23AA36CC99879CE4D066689399B61E85
SHA256:3107FC1F9512E0708A028BDFA089A199A02211110864029CB5295BD50DAA3805
45281 (1133).exeC:\Users\admin\AppData\Local\Temp\Unicorn-50136.exeexecutable
MD5:B30C1BBE219AF4296223F9A9EE884C2C
SHA256:96F381C30C6281A5E5BDED39BAD6318C759019C005146BF7B40C392DC48D1466
1760Unicorn-56734.exeC:\Users\admin\AppData\Local\Temp\Unicorn-28812.exeexecutable
MD5:DA92068B35880BC87D8DDD757BC73FDF
SHA256:56860517BB8A36EE10612AF34E7CBC054F24C325672876D2DD38D47DE02D7C7D
2092Unicorn-31953.exeC:\Users\admin\AppData\Local\Temp\Unicorn-36945.exeexecutable
MD5:0758425A5CCFE64CE8CA00F867C68E61
SHA256:39D579CD7A3A4114772B5F57EB2C4A5ADE617140A2490A02584BAA0FA0E9AAC1
5344Unicorn-55777.exeC:\Users\admin\AppData\Local\Temp\Unicorn-743.exeexecutable
MD5:734A77FE2DBAAE86323F6774CDAFFD4E
SHA256:41513048DC389E85FCBEE30A7C68072586F32AC3E6C5BF1880CF05DB559E0804
7148Unicorn-16001.exeC:\Users\admin\AppData\Local\Temp\Unicorn-50204.exeexecutable
MD5:B1C931D6A8A8FA979B4356A6A5BF83F0
SHA256:DB6B224A31D5FA664D1086B5A8CCFC2E327B64E481929DECEC3D0D6906188BE6
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
5
TCP/UDP connections
23
DNS requests
15
Threats
0

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
6544
svchost.exe
GET
200
184.30.131.245:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
GET
200
2.16.164.9:80
http://crl.microsoft.com/pki/crl/products/MicRooCerAut2011_2011_03_22.crl
unknown
whitelisted
6660
backgroundTaskHost.exe
GET
200
184.30.131.245:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAUZZSZEml49Gjh0j13P68w%3D
unknown
whitelisted
8168
SIHClient.exe
GET
200
2.23.246.101:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Product%20Root%20Certificate%20Authority%202018.crl
unknown
whitelisted
8168
SIHClient.exe
GET
200
2.23.246.101:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Update%20Secure%20Server%20CA%202.1.crl
unknown
whitelisted
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
4.231.128.59:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
4
System
192.168.100.255:137
whitelisted
4
System
192.168.100.255:138
whitelisted
2.16.164.9:80
crl.microsoft.com
Akamai International B.V.
NL
whitelisted
2104
svchost.exe
51.124.78.146:443
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
2112
svchost.exe
4.231.128.59:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
3216
svchost.exe
40.113.103.199:443
client.wns.windows.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
6544
svchost.exe
40.126.31.0:443
login.live.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
6544
svchost.exe
184.30.131.245:80
ocsp.digicert.com
AKAMAI-AS
US
whitelisted
6660
backgroundTaskHost.exe
20.103.156.88:443
arc.msn.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted

DNS requests

Domain
IP
Reputation
settings-win.data.microsoft.com
  • 4.231.128.59
  • 51.104.136.2
whitelisted
google.com
  • 142.250.186.142
whitelisted
crl.microsoft.com
  • 2.16.164.9
  • 2.16.164.106
  • 2.16.164.18
whitelisted
client.wns.windows.com
  • 40.113.103.199
whitelisted
login.live.com
  • 40.126.31.0
  • 20.190.159.128
  • 20.190.159.4
  • 20.190.159.68
  • 40.126.31.67
  • 40.126.31.1
  • 40.126.31.3
  • 40.126.31.131
whitelisted
ocsp.digicert.com
  • 184.30.131.245
whitelisted
arc.msn.com
  • 20.103.156.88
whitelisted
slscr.update.microsoft.com
  • 20.109.210.53
whitelisted
www.microsoft.com
  • 2.23.246.101
whitelisted
fe3cr.delivery.mp.microsoft.com
  • 20.242.39.171
whitelisted

Threats

No threats detected
No debug info