File name:

1 (145)

Full analysis: https://app.any.run/tasks/a6f9fb07-58f8-4a98-a025-a6c3f615ccee
Verdict: Malicious activity
Analysis date: March 24, 2025, 14:08:11
OS: Windows 10 Professional (build: 19045, 64 bit)
Indicators:
MIME: application/vnd.microsoft.portable-executable
File info: PE32 executable (GUI) Intel 80386, for MS Windows, 3 sections
MD5:

3BB973D90B3C591B485BB444AC048050

SHA1:

0DC9B82ED132A4886A02793597A9512A39847B3C

SHA256:

F86B62A10A5DDC60BCA4E36A2DFC284A57FD20E5DEF2E5CEC2E4B38BB1E98AE9

SSDEEP:

6144:2NEgI7IJADmLA5cHXjSp9qSx5trqlp8GBV/0yeXdSk/8SwjwpyAvEh9RSJZQsx1S:2ypMRLA50XeFrM+aVMyeXdxx4nxmDsR

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    No malicious indicators.
  • SUSPICIOUS

    • Starts itself from another location

      • 1 (145).exe (PID: 7412)
      • Unicorn-52386.exe (PID: 7576)
      • Unicorn-14965.exe (PID: 7848)
      • Unicorn-3268.exe (PID: 7868)
      • Unicorn-21546.exe (PID: 2384)
      • Unicorn-39920.exe (PID: 7364)
      • Unicorn-46050.exe (PID: 7360)
      • Unicorn-18016.exe (PID: 7384)
      • Unicorn-64270.exe (PID: 7320)
      • Unicorn-64825.exe (PID: 5332)
      • Unicorn-60113.exe (PID: 5380)
      • Unicorn-47149.exe (PID: 1764)
      • Unicorn-40512.exe (PID: 7172)
      • Unicorn-53279.exe (PID: 7204)
      • Unicorn-29818.exe (PID: 2236)
      • Unicorn-35608.exe (PID: 4976)
      • Unicorn-38946.exe (PID: 6768)
      • Unicorn-41368.exe (PID: 1324)
      • Unicorn-42838.exe (PID: 3240)
      • Unicorn-42838.exe (PID: 6388)
      • Unicorn-50741.exe (PID: 6372)
      • Unicorn-62496.exe (PID: 6476)
      • Unicorn-65296.exe (PID: 660)
      • Unicorn-42838.exe (PID: 4452)
      • Unicorn-31140.exe (PID: 5720)
      • Unicorn-5571.exe (PID: 7188)
      • Unicorn-5571.exe (PID: 7176)
      • Unicorn-61826.exe (PID: 5972)
      • Unicorn-22055.exe (PID: 7472)
      • Unicorn-46045.exe (PID: 5364)
      • Unicorn-28962.exe (PID: 7336)
      • Unicorn-27299.exe (PID: 4108)
      • Unicorn-51006.exe (PID: 6184)
      • Unicorn-5417.exe (PID: 7812)
      • Unicorn-22055.exe (PID: 7640)
      • Unicorn-36673.exe (PID: 5552)
      • Unicorn-17072.exe (PID: 7776)
      • Unicorn-17840.exe (PID: 7956)
      • Unicorn-28775.exe (PID: 8140)
      • Unicorn-17840.exe (PID: 7960)
      • Unicorn-17840.exe (PID: 7940)
      • Unicorn-60648.exe (PID: 7768)
      • Unicorn-17840.exe (PID: 7932)
      • Unicorn-60648.exe (PID: 8028)
      • Unicorn-1333.exe (PID: 7808)
      • Unicorn-1333.exe (PID: 7996)
      • Unicorn-21754.exe (PID: 7736)
      • Unicorn-31575.exe (PID: 7620)
      • Unicorn-33357.exe (PID: 8124)
      • Unicorn-8156.exe (PID: 7276)
      • Unicorn-21754.exe (PID: 7740)
      • Unicorn-60046.exe (PID: 5280)
      • Unicorn-60046.exe (PID: 4180)
      • Unicorn-14664.exe (PID: 5868)
      • Unicorn-52625.exe (PID: 7908)
      • Unicorn-56154.exe (PID: 8080)
      • Unicorn-16583.exe (PID: 8112)
      • Unicorn-59662.exe (PID: 8116)
      • Unicorn-14664.exe (PID: 7892)
      • Unicorn-11208.exe (PID: 6652)
      • Unicorn-44478.exe (PID: 5968)
      • Unicorn-50508.exe (PID: 5984)
      • Unicorn-2485.exe (PID: 4220)
      • Unicorn-12417.exe (PID: 5384)
      • Unicorn-40586.exe (PID: 5328)
      • Unicorn-61313.exe (PID: 1012)
      • Unicorn-50508.exe (PID: 4068)
      • Unicorn-64113.exe (PID: 1096)
      • Unicorn-30642.exe (PID: 2772)
      • Unicorn-20720.exe (PID: 6512)
      • Unicorn-4960.exe (PID: 6872)
      • Unicorn-40586.exe (PID: 5360)
      • Unicorn-25681.exe (PID: 2040)
      • Unicorn-4768.exe (PID: 7836)
      • Unicorn-45246.exe (PID: 7676)
      • Unicorn-53606.exe (PID: 8180)
      • Unicorn-57690.exe (PID: 8168)
      • Unicorn-62329.exe (PID: 7248)
      • Unicorn-32610.exe (PID: 8276)
      • Unicorn-52136.exe (PID: 8316)
      • Unicorn-32610.exe (PID: 8268)
      • Unicorn-32610.exe (PID: 8208)
      • Unicorn-28526.exe (PID: 8244)
      • Unicorn-20358.exe (PID: 1168)
      • Unicorn-32610.exe (PID: 8224)
      • Unicorn-20358.exe (PID: 8200)
      • Unicorn-32610.exe (PID: 8216)
      • Unicorn-9620.exe (PID: 8400)
      • Unicorn-20358.exe (PID: 2980)
      • Unicorn-28526.exe (PID: 8240)
      • Unicorn-26340.exe (PID: 8536)
      • Unicorn-32610.exe (PID: 8232)
      • Unicorn-20740.exe (PID: 8500)
      • Unicorn-34316.exe (PID: 8324)
      • Unicorn-20358.exe (PID: 2644)
      • Unicorn-29221.exe (PID: 8416)
      • Unicorn-40076.exe (PID: 8476)
      • Unicorn-23355.exe (PID: 8408)
      • Unicorn-37275.exe (PID: 8428)
      • Unicorn-38592.exe (PID: 8448)
      • Unicorn-33378.exe (PID: 8620)
      • Unicorn-37806.exe (PID: 8468)
      • Unicorn-52328.exe (PID: 8456)
      • Unicorn-1857.exe (PID: 8704)
      • Unicorn-37467.exe (PID: 8780)
      • Unicorn-13917.exe (PID: 8656)
      • Unicorn-34530.exe (PID: 8740)
      • Unicorn-21702.exe (PID: 8840)
      • Unicorn-55313.exe (PID: 8880)
      • Unicorn-19847.exe (PID: 8892)
      • Unicorn-49912.exe (PID: 8860)
      • Unicorn-59781.exe (PID: 8732)
      • Unicorn-62734.exe (PID: 8812)
      • Unicorn-43046.exe (PID: 8928)
      • Unicorn-17399.exe (PID: 8972)
      • Unicorn-59382.exe (PID: 8956)
      • Unicorn-7036.exe (PID: 8980)
      • Unicorn-56450.exe (PID: 9004)
      • Unicorn-6050.exe (PID: 9020)
      • Unicorn-36798.exe (PID: 9084)
      • Unicorn-6080.exe (PID: 9052)
      • Unicorn-62371.exe (PID: 9092)
      • Unicorn-27478.exe (PID: 9036)
      • Unicorn-15225.exe (PID: 9068)
      • Unicorn-53326.exe (PID: 9168)
      • Unicorn-4125.exe (PID: 9180)
      • Unicorn-36227.exe (PID: 9152)
      • Unicorn-45651.exe (PID: 3896)
      • Unicorn-36990.exe (PID: 9140)
      • Unicorn-36968.exe (PID: 7312)
      • Unicorn-26391.exe (PID: 9232)
      • Unicorn-25785.exe (PID: 9212)
      • Unicorn-27476.exe (PID: 9272)
      • Unicorn-49413.exe (PID: 9296)
      • Unicorn-24857.exe (PID: 9392)
      • Unicorn-50010.exe (PID: 9412)
      • Unicorn-36606.exe (PID: 9248)
      • Unicorn-14576.exe (PID: 9536)
      • Unicorn-45542.exe (PID: 9500)
      • Unicorn-2463.exe (PID: 9516)
      • Unicorn-61686.exe (PID: 9484)
      • Unicorn-44648.exe (PID: 9544)
      • Unicorn-54286.exe (PID: 9584)
      • Unicorn-13829.exe (PID: 9568)
      • Unicorn-50394.exe (PID: 9604)
      • Unicorn-60269.exe (PID: 9656)
      • Unicorn-26274.exe (PID: 9696)
      • Unicorn-31702.exe (PID: 9728)
      • Unicorn-52869.exe (PID: 9828)
      • Unicorn-27426.exe (PID: 9764)
      • Unicorn-60600.exe (PID: 9620)
      • Unicorn-8659.exe (PID: 9856)
      • Unicorn-40616.exe (PID: 9812)
    • Executable content was dropped or overwritten

      • 1 (145).exe (PID: 7412)
      • Unicorn-52386.exe (PID: 7576)
      • Unicorn-3268.exe (PID: 7868)
      • Unicorn-14965.exe (PID: 7848)
      • Unicorn-21546.exe (PID: 2384)
      • Unicorn-64270.exe (PID: 7320)
      • Unicorn-18016.exe (PID: 7384)
      • Unicorn-60113.exe (PID: 5380)
      • Unicorn-40512.exe (PID: 7172)
      • Unicorn-39920.exe (PID: 7364)
      • Unicorn-64825.exe (PID: 5332)
      • Unicorn-29818.exe (PID: 2236)
      • Unicorn-35608.exe (PID: 4976)
      • Unicorn-38946.exe (PID: 6768)
      • Unicorn-42838.exe (PID: 3240)
      • Unicorn-51006.exe (PID: 6184)
      • Unicorn-62496.exe (PID: 6476)
      • Unicorn-47149.exe (PID: 1764)
      • Unicorn-42838.exe (PID: 4452)
      • Unicorn-5571.exe (PID: 7188)
      • Unicorn-61826.exe (PID: 5972)
      • Unicorn-22055.exe (PID: 7472)
      • Unicorn-46045.exe (PID: 5364)
      • Unicorn-28962.exe (PID: 7336)
      • Unicorn-27299.exe (PID: 4108)
      • Unicorn-1333.exe (PID: 7808)
      • Unicorn-5417.exe (PID: 7812)
      • Unicorn-1333.exe (PID: 7996)
      • Unicorn-36673.exe (PID: 5552)
      • Unicorn-41368.exe (PID: 1324)
      • Unicorn-42838.exe (PID: 6388)
      • Unicorn-60648.exe (PID: 8028)
      • Unicorn-17840.exe (PID: 7940)
      • Unicorn-33357.exe (PID: 8124)
      • Unicorn-65296.exe (PID: 660)
      • Unicorn-31140.exe (PID: 5720)
      • Unicorn-50741.exe (PID: 6372)
      • Unicorn-14664.exe (PID: 5868)
      • Unicorn-60046.exe (PID: 5280)
      • Unicorn-60046.exe (PID: 4180)
      • Unicorn-5571.exe (PID: 7176)
      • Unicorn-53279.exe (PID: 7204)
      • Unicorn-52625.exe (PID: 7908)
      • Unicorn-56154.exe (PID: 8080)
      • Unicorn-59662.exe (PID: 8116)
      • Unicorn-46050.exe (PID: 7360)
      • Unicorn-16583.exe (PID: 8112)
      • Unicorn-2485.exe (PID: 4220)
      • Unicorn-14664.exe (PID: 7892)
      • Unicorn-11208.exe (PID: 6652)
      • Unicorn-12417.exe (PID: 5384)
      • Unicorn-44478.exe (PID: 5968)
      • Unicorn-50508.exe (PID: 5984)
      • Unicorn-30642.exe (PID: 2772)
      • Unicorn-50508.exe (PID: 4068)
      • Unicorn-40586.exe (PID: 5328)
      • Unicorn-61313.exe (PID: 1012)
      • Unicorn-17072.exe (PID: 7776)
      • Unicorn-64113.exe (PID: 1096)
      • Unicorn-22055.exe (PID: 7640)
      • Unicorn-20720.exe (PID: 6512)
      • Unicorn-25681.exe (PID: 2040)
      • Unicorn-40586.exe (PID: 5360)
      • Unicorn-4768.exe (PID: 7836)
      • Unicorn-45246.exe (PID: 7676)
      • Unicorn-4960.exe (PID: 6872)
      • Unicorn-57690.exe (PID: 8168)
      • Unicorn-53606.exe (PID: 8180)
      • Unicorn-62329.exe (PID: 7248)
      • Unicorn-28526.exe (PID: 8244)
      • Unicorn-52136.exe (PID: 8316)
      • Unicorn-32610.exe (PID: 8276)
      • Unicorn-32610.exe (PID: 8208)
      • Unicorn-32610.exe (PID: 8268)
      • Unicorn-20358.exe (PID: 8200)
      • Unicorn-32610.exe (PID: 8224)
      • Unicorn-32610.exe (PID: 8216)
      • Unicorn-21754.exe (PID: 7736)
      • Unicorn-17840.exe (PID: 7932)
      • Unicorn-28526.exe (PID: 8240)
      • Unicorn-32610.exe (PID: 8232)
      • Unicorn-21754.exe (PID: 7740)
      • Unicorn-26340.exe (PID: 8536)
      • Unicorn-9620.exe (PID: 8400)
      • Unicorn-20740.exe (PID: 8500)
      • Unicorn-40076.exe (PID: 8476)
      • Unicorn-60648.exe (PID: 7768)
      • Unicorn-20358.exe (PID: 2644)
      • Unicorn-34316.exe (PID: 8324)
      • Unicorn-17840.exe (PID: 7960)
      • Unicorn-8156.exe (PID: 7276)
      • Unicorn-31575.exe (PID: 7620)
      • Unicorn-23355.exe (PID: 8408)
      • Unicorn-29221.exe (PID: 8416)
      • Unicorn-37806.exe (PID: 8468)
      • Unicorn-52328.exe (PID: 8456)
      • Unicorn-38592.exe (PID: 8448)
      • Unicorn-33378.exe (PID: 8620)
      • Unicorn-17840.exe (PID: 7956)
      • Unicorn-1857.exe (PID: 8704)
      • Unicorn-35084.exe (PID: 8648)
      • Unicorn-34530.exe (PID: 8740)
      • Unicorn-37467.exe (PID: 8780)
      • Unicorn-13917.exe (PID: 8656)
      • Unicorn-55313.exe (PID: 8880)
      • Unicorn-49912.exe (PID: 8860)
      • Unicorn-19847.exe (PID: 8892)
      • Unicorn-59781.exe (PID: 8732)
      • Unicorn-62734.exe (PID: 8812)
      • Unicorn-43046.exe (PID: 8928)
      • Unicorn-17399.exe (PID: 8972)
      • Unicorn-21702.exe (PID: 8840)
      • Unicorn-7036.exe (PID: 8980)
      • Unicorn-56450.exe (PID: 9004)
      • Unicorn-59382.exe (PID: 8956)
      • Unicorn-6050.exe (PID: 9020)
      • Unicorn-36798.exe (PID: 9084)
      • Unicorn-6080.exe (PID: 9052)
      • Unicorn-62371.exe (PID: 9092)
      • Unicorn-27478.exe (PID: 9036)
      • Unicorn-15225.exe (PID: 9068)
      • Unicorn-53326.exe (PID: 9168)
      • Unicorn-4125.exe (PID: 9180)
      • Unicorn-36227.exe (PID: 9152)
      • Unicorn-45651.exe (PID: 3896)
      • Unicorn-36968.exe (PID: 7312)
      • Unicorn-25785.exe (PID: 9212)
      • Unicorn-16740.exe (PID: 9240)
      • Unicorn-26391.exe (PID: 9232)
      • Unicorn-36606.exe (PID: 9248)
      • Unicorn-27476.exe (PID: 9272)
      • Unicorn-24857.exe (PID: 9392)
      • Unicorn-50010.exe (PID: 9412)
      • Unicorn-49413.exe (PID: 9296)
      • Unicorn-61686.exe (PID: 9484)
      • Unicorn-45542.exe (PID: 9500)
      • Unicorn-2463.exe (PID: 9516)
      • Unicorn-14576.exe (PID: 9536)
      • Unicorn-13829.exe (PID: 9568)
      • Unicorn-54286.exe (PID: 9584)
      • Unicorn-50394.exe (PID: 9604)
      • Unicorn-60600.exe (PID: 9620)
      • Unicorn-44648.exe (PID: 9544)
      • Unicorn-26274.exe (PID: 9696)
      • Unicorn-31702.exe (PID: 9728)
      • Unicorn-52869.exe (PID: 9828)
      • Unicorn-27426.exe (PID: 9764)
      • Unicorn-40616.exe (PID: 9812)
      • Unicorn-60269.exe (PID: 9656)
      • Unicorn-8659.exe (PID: 9856)
      • Unicorn-28775.exe (PID: 8140)
      • Unicorn-20358.exe (PID: 1168)
      • Unicorn-42138.exe (PID: 10128)
      • Unicorn-62558.exe (PID: 10180)
      • Unicorn-12973.exe (PID: 10312)
      • Unicorn-9465.exe (PID: 5212)
      • Unicorn-30440.exe (PID: 10136)
      • Unicorn-13357.exe (PID: 10204)
      • Unicorn-1468.exe (PID: 10272)
      • Unicorn-9465.exe (PID: 6228)
      • Unicorn-5381.exe (PID: 7652)
      • Unicorn-17368.exe (PID: 7488)
      • Unicorn-17634.exe (PID: 5576)
      • Unicorn-40913.exe (PID: 10080)
      • Unicorn-29886.exe (PID: 10116)
      • Unicorn-36990.exe (PID: 9140)
      • Unicorn-46030.exe (PID: 10372)
      • Unicorn-43460.exe (PID: 10460)
      • Unicorn-27124.exe (PID: 10400)
      • Unicorn-51821.exe (PID: 10628)
      • Unicorn-35292.exe (PID: 10432)
      • Unicorn-47737.exe (PID: 10608)
      • Unicorn-26762.exe (PID: 10516)
      • Unicorn-34930.exe (PID: 10544)
      • Unicorn-59242.exe (PID: 10416)
      • Unicorn-1873.exe (PID: 10448)
      • Unicorn-43460.exe (PID: 10468)
      • Unicorn-43098.exe (PID: 10580)
      • Unicorn-43098.exe (PID: 10572)
      • Unicorn-12973.exe (PID: 10320)
      • Unicorn-17996.exe (PID: 10356)
      • Unicorn-50477.exe (PID: 10300)
      • Unicorn-46990.exe (PID: 10408)
      • Unicorn-51245.exe (PID: 10688)
      • Unicorn-7611.exe (PID: 10704)
      • Unicorn-13741.exe (PID: 10712)
      • Unicorn-46533.exe (PID: 10812)
      • Unicorn-30230.exe (PID: 10788)
      • Unicorn-18407.exe (PID: 10888)
      • Unicorn-2428.exe (PID: 10728)
      • Unicorn-44752.exe (PID: 10796)
      • Unicorn-50882.exe (PID: 10804)
      • Unicorn-25995.exe (PID: 10916)
      • Unicorn-2376.exe (PID: 10924)
      • Unicorn-22294.exe (PID: 10736)
      • Unicorn-37668.exe (PID: 10856)
      • Unicorn-22102.exe (PID: 10652)
      • Unicorn-8187.exe (PID: 10644)
      • Unicorn-20358.exe (PID: 2980)
      • Unicorn-46533.exe (PID: 10820)
      • Unicorn-26954.exe (PID: 10992)
      • Unicorn-51458.exe (PID: 11020)
      • Unicorn-10425.exe (PID: 11036)
      • Unicorn-7088.exe (PID: 10984)
      • Unicorn-29759.exe (PID: 11348)
      • Unicorn-18594.exe (PID: 11044)
      • Unicorn-18786.exe (PID: 11168)
      • Unicorn-51650.exe (PID: 11116)
      • Unicorn-31230.exe (PID: 11096)
      • Unicorn-24768.exe (PID: 8604)
      • Unicorn-26251.exe (PID: 8572)
      • Unicorn-13916.exe (PID: 10936)
      • Unicorn-20047.exe (PID: 10952)
      • Unicorn-54648.exe (PID: 11220)
      • Unicorn-56289.exe (PID: 11148)
      • Unicorn-11364.exe (PID: 11072)
      • Unicorn-64457.exe (PID: 11160)
      • Unicorn-53357.exe (PID: 11308)
      • Unicorn-22678.exe (PID: 10524)
      • Unicorn-36466.exe (PID: 8592)
      • Unicorn-53165.exe (PID: 11244)
      • Unicorn-30844.exe (PID: 11380)
      • Unicorn-11000.exe (PID: 4164)
      • Unicorn-7493.exe (PID: 11252)
      • Unicorn-15662.exe (PID: 11260)
      • Unicorn-56310.exe (PID: 11404)
      • Unicorn-56045.exe (PID: 11396)
      • Unicorn-13092.exe (PID: 11532)
      • Unicorn-44250.exe (PID: 11472)
      • Unicorn-15469.exe (PID: 11508)
      • Unicorn-20514.exe (PID: 11564)
      • Unicorn-45402.exe (PID: 11592)
      • Unicorn-16046.exe (PID: 11644)
      • Unicorn-37404.exe (PID: 11704)
      • Unicorn-22551.exe (PID: 11652)
      • Unicorn-40934.exe (PID: 11684)
      • Unicorn-11583.exe (PID: 11556)
      • Unicorn-49678.exe (PID: 11828)
      • Unicorn-57633.exe (PID: 11624)
      • Unicorn-27787.exe (PID: 11732)
      • Unicorn-13305.exe (PID: 11772)
      • Unicorn-22220.exe (PID: 11756)
      • Unicorn-37275.exe (PID: 8428)
      • Unicorn-61930.exe (PID: 11836)
      • Unicorn-49678.exe (PID: 11820)
      • Unicorn-25174.exe (PID: 11796)
  • INFO

    • Checks supported languages

      • 1 (145).exe (PID: 7412)
      • Unicorn-52386.exe (PID: 7576)
      • Unicorn-14965.exe (PID: 7848)
      • Unicorn-3268.exe (PID: 7868)
      • Unicorn-18016.exe (PID: 7384)
      • Unicorn-39920.exe (PID: 7364)
      • Unicorn-46050.exe (PID: 7360)
      • Unicorn-64270.exe (PID: 7320)
      • Unicorn-53279.exe (PID: 7204)
      • Unicorn-47149.exe (PID: 1764)
      • Unicorn-42838.exe (PID: 4452)
      • Unicorn-50741.exe (PID: 6372)
      • Unicorn-42838.exe (PID: 3240)
      • Unicorn-46045.exe (PID: 5364)
      • Unicorn-28962.exe (PID: 7336)
      • Unicorn-5571.exe (PID: 7188)
      • Unicorn-61826.exe (PID: 5972)
      • Unicorn-5417.exe (PID: 7812)
      • Unicorn-21754.exe (PID: 7736)
      • Unicorn-60648.exe (PID: 7768)
      • Unicorn-33357.exe (PID: 8124)
      • Unicorn-21754.exe (PID: 7740)
      • Unicorn-17840.exe (PID: 7960)
      • Unicorn-60046.exe (PID: 5280)
      • Unicorn-14664.exe (PID: 5868)
      • Unicorn-56154.exe (PID: 8080)
      • Unicorn-52625.exe (PID: 7908)
      • Unicorn-61313.exe (PID: 1012)
      • Unicorn-30642.exe (PID: 2772)
      • Unicorn-20720.exe (PID: 6512)
      • Unicorn-40586.exe (PID: 5360)
      • Unicorn-4768.exe (PID: 7836)
      • Unicorn-32610.exe (PID: 8232)
      • Unicorn-32610.exe (PID: 8224)
      • Unicorn-28526.exe (PID: 8244)
      • Unicorn-32610.exe (PID: 8216)
      • Unicorn-32610.exe (PID: 8276)
      • Unicorn-52136.exe (PID: 8316)
      • Unicorn-20358.exe (PID: 2980)
      • Unicorn-32610.exe (PID: 8268)
      • Unicorn-9620.exe (PID: 8400)
      • Unicorn-20740.exe (PID: 8500)
      • Unicorn-38592.exe (PID: 8448)
      • Unicorn-26340.exe (PID: 8536)
      • Unicorn-52328.exe (PID: 8456)
      • Unicorn-34530.exe (PID: 8740)
      • Unicorn-62734.exe (PID: 8812)
      • Unicorn-19847.exe (PID: 8892)
      • Unicorn-7036.exe (PID: 8980)
      • Unicorn-56450.exe (PID: 9004)
      • Unicorn-6080.exe (PID: 9052)
      • Unicorn-15225.exe (PID: 9068)
      • Unicorn-53326.exe (PID: 9168)
      • Unicorn-45651.exe (PID: 3896)
      • Unicorn-16740.exe (PID: 9240)
      • Unicorn-49413.exe (PID: 9296)
      • Unicorn-36990.exe (PID: 9140)
      • Unicorn-50010.exe (PID: 9412)
      • Unicorn-50394.exe (PID: 9604)
      • Unicorn-24857.exe (PID: 9392)
      • Unicorn-12359.exe (PID: 9664)
      • Unicorn-31702.exe (PID: 9728)
      • Unicorn-27426.exe (PID: 9764)
      • Unicorn-52869.exe (PID: 9828)
      • Unicorn-60600.exe (PID: 9620)
      • Unicorn-42138.exe (PID: 10128)
      • Unicorn-17634.exe (PID: 5576)
      • Unicorn-17368.exe (PID: 7488)
      • Unicorn-5381.exe (PID: 7652)
      • Unicorn-50477.exe (PID: 10300)
      • Unicorn-17996.exe (PID: 10356)
      • Unicorn-46030.exe (PID: 10372)
      • Unicorn-35292.exe (PID: 10432)
      • Unicorn-43460.exe (PID: 10460)
      • Unicorn-46990.exe (PID: 10408)
      • Unicorn-59242.exe (PID: 10416)
      • Unicorn-51821.exe (PID: 10628)
      • Unicorn-8187.exe (PID: 10644)
      • Unicorn-26762.exe (PID: 10516)
      • Unicorn-44752.exe (PID: 10796)
      • Unicorn-18407.exe (PID: 10888)
      • Unicorn-22294.exe (PID: 10736)
      • Unicorn-37668.exe (PID: 10856)
      • Unicorn-46533.exe (PID: 10812)
      • Unicorn-51458.exe (PID: 11020)
      • Unicorn-10425.exe (PID: 11036)
      • Unicorn-56289.exe (PID: 11148)
      • Unicorn-24022.exe (PID: 11188)
      • Unicorn-53165.exe (PID: 11244)
      • Unicorn-7493.exe (PID: 11252)
      • Unicorn-53357.exe (PID: 11308)
      • Unicorn-56045.exe (PID: 11396)
      • Unicorn-26251.exe (PID: 8572)
      • Unicorn-24768.exe (PID: 8604)
      • Unicorn-29759.exe (PID: 11348)
      • Unicorn-11583.exe (PID: 11556)
      • Unicorn-45402.exe (PID: 11592)
      • Unicorn-15469.exe (PID: 11508)
      • Unicorn-13092.exe (PID: 11532)
      • Unicorn-16046.exe (PID: 11644)
      • Unicorn-22220.exe (PID: 11756)
      • Unicorn-37404.exe (PID: 11704)
      • Unicorn-25174.exe (PID: 11796)
      • Unicorn-57633.exe (PID: 11624)
      • Unicorn-49678.exe (PID: 11828)
      • Unicorn-45786.exe (PID: 11876)
      • Unicorn-26326.exe (PID: 11904)
      • Unicorn-46746.exe (PID: 11920)
      • Unicorn-2184.exe (PID: 11976)
      • Unicorn-9797.exe (PID: 11968)
      • Unicorn-59190.exe (PID: 12020)
      • Unicorn-47493.exe (PID: 12040)
      • Unicorn-10160.exe (PID: 12092)
      • Unicorn-50830.exe (PID: 11952)
      • Unicorn-51193.exe (PID: 12188)
      • Unicorn-41508.exe (PID: 12196)
      • Unicorn-3426.exe (PID: 12268)
      • Unicorn-34180.exe (PID: 2064)
      • Unicorn-46465.exe (PID: 5164)
      • Unicorn-18279.exe (PID: 12424)
      • Unicorn-29214.exe (PID: 12408)
      • Unicorn-60987.exe (PID: 4008)
      • Unicorn-50781.exe (PID: 11620)
      • Unicorn-8103.exe (PID: 12392)
      • Unicorn-14216.exe (PID: 12684)
      • Unicorn-27429.exe (PID: 12756)
      • Unicorn-10516.exe (PID: 12572)
      • Unicorn-18419.exe (PID: 12604)
      • Unicorn-9622.exe (PID: 13032)
      • Unicorn-15560.exe (PID: 12984)
      • Unicorn-49769.exe (PID: 13128)
      • Unicorn-13594.exe (PID: 13360)
      • Unicorn-51284.exe (PID: 13416)
      • Unicorn-36099.exe (PID: 13564)
      • Unicorn-36099.exe (PID: 13532)
      • Unicorn-53919.exe (PID: 13572)
      • Unicorn-36291.exe (PID: 13696)
      • Unicorn-24754.exe (PID: 13768)
      • Unicorn-44076.exe (PID: 13844)
      • Unicorn-27124.exe (PID: 10400)
    • The sample compiled with chinese language support

      • 1 (145).exe (PID: 7412)
      • Unicorn-27426.exe (PID: 9764)
      • Unicorn-40616.exe (PID: 9812)
      • Unicorn-30844.exe (PID: 11380)
      • Unicorn-43098.exe (PID: 10572)
      • Unicorn-8187.exe (PID: 10644)
      • Unicorn-8659.exe (PID: 9856)
      • Unicorn-33357.exe (PID: 8124)
      • Unicorn-32610.exe (PID: 8276)
      • Unicorn-32610.exe (PID: 8208)
      • Unicorn-32610.exe (PID: 8268)
      • Unicorn-42838.exe (PID: 6388)
      • Unicorn-32610.exe (PID: 8216)
      • Unicorn-15662.exe (PID: 11260)
      • Unicorn-21754.exe (PID: 7736)
      • Unicorn-21754.exe (PID: 7740)
      • Unicorn-47149.exe (PID: 1764)
      • Unicorn-20358.exe (PID: 8200)
      • Unicorn-26340.exe (PID: 8536)
      • Unicorn-56310.exe (PID: 11404)
      • Unicorn-17840.exe (PID: 7932)
      • Unicorn-13741.exe (PID: 10712)
      • Unicorn-17840.exe (PID: 7940)
      • Unicorn-60648.exe (PID: 8028)
      • Unicorn-9620.exe (PID: 8400)
      • Unicorn-34930.exe (PID: 10544)
      • Unicorn-32610.exe (PID: 8224)
      • Unicorn-20358.exe (PID: 1168)
      • Unicorn-50741.exe (PID: 6372)
      • Unicorn-31140.exe (PID: 5720)
      • Unicorn-23355.exe (PID: 8408)
      • Unicorn-37806.exe (PID: 8468)
      • Unicorn-46533.exe (PID: 10820)
      • Unicorn-62496.exe (PID: 6476)
      • Unicorn-56045.exe (PID: 11396)
      • Unicorn-38592.exe (PID: 8448)
      • Unicorn-52386.exe (PID: 7576)
      • Unicorn-7611.exe (PID: 10704)
      • Unicorn-32610.exe (PID: 8232)
      • Unicorn-8156.exe (PID: 7276)
      • Unicorn-17840.exe (PID: 7960)
      • Unicorn-31575.exe (PID: 7620)
      • Unicorn-2428.exe (PID: 10728)
      • Unicorn-65296.exe (PID: 660)
      • Unicorn-60046.exe (PID: 5280)
      • Unicorn-13092.exe (PID: 11532)
      • Unicorn-3268.exe (PID: 7868)
      • Unicorn-13917.exe (PID: 8656)
      • Unicorn-44752.exe (PID: 10796)
      • Unicorn-17840.exe (PID: 7956)
      • Unicorn-53279.exe (PID: 7204)
      • Unicorn-33378.exe (PID: 8620)
      • Unicorn-40512.exe (PID: 7172)
      • Unicorn-18407.exe (PID: 10888)
      • Unicorn-39920.exe (PID: 7364)
      • Unicorn-46533.exe (PID: 10812)
      • Unicorn-25995.exe (PID: 10916)
      • Unicorn-60046.exe (PID: 4180)
      • Unicorn-5571.exe (PID: 7188)
      • Unicorn-62734.exe (PID: 8812)
      • Unicorn-37467.exe (PID: 8780)
      • Unicorn-59781.exe (PID: 8732)
      • Unicorn-28526.exe (PID: 8244)
      • Unicorn-49912.exe (PID: 8860)
      • Unicorn-19847.exe (PID: 8892)
      • Unicorn-18016.exe (PID: 7384)
      • Unicorn-14664.exe (PID: 7892)
      • Unicorn-37668.exe (PID: 10856)
      • Unicorn-50882.exe (PID: 10804)
      • Unicorn-1857.exe (PID: 8704)
      • Unicorn-44250.exe (PID: 11472)
      • Unicorn-35084.exe (PID: 8648)
      • Unicorn-56154.exe (PID: 8080)
      • Unicorn-5571.exe (PID: 7176)
      • Unicorn-29818.exe (PID: 2236)
      • Unicorn-59382.exe (PID: 8956)
      • Unicorn-20358.exe (PID: 2980)
      • Unicorn-61826.exe (PID: 5972)
      • Unicorn-17399.exe (PID: 8972)
      • Unicorn-46050.exe (PID: 7360)
      • Unicorn-59662.exe (PID: 8116)
      • Unicorn-64270.exe (PID: 7320)
      • Unicorn-13916.exe (PID: 10936)
      • Unicorn-20047.exe (PID: 10952)
      • Unicorn-40913.exe (PID: 10080)
      • Unicorn-22294.exe (PID: 10736)
      • Unicorn-2376.exe (PID: 10924)
      • Unicorn-43046.exe (PID: 8928)
      • Unicorn-28775.exe (PID: 8140)
      • Unicorn-29221.exe (PID: 8416)
      • Unicorn-27478.exe (PID: 9036)
      • Unicorn-20514.exe (PID: 11564)
      • Unicorn-16583.exe (PID: 8112)
      • Unicorn-46045.exe (PID: 5364)
      • Unicorn-28962.exe (PID: 7336)
      • Unicorn-26954.exe (PID: 10992)
      • Unicorn-6080.exe (PID: 9052)
      • Unicorn-42138.exe (PID: 10128)
      • Unicorn-11208.exe (PID: 6652)
      • Unicorn-30440.exe (PID: 10136)
      • Unicorn-21702.exe (PID: 8840)
      • Unicorn-15469.exe (PID: 11508)
      • Unicorn-7036.exe (PID: 8980)
      • Unicorn-56450.exe (PID: 9004)
      • Unicorn-2485.exe (PID: 4220)
      • Unicorn-35608.exe (PID: 4976)
      • Unicorn-25785.exe (PID: 9212)
      • Unicorn-50508.exe (PID: 5984)
      • Unicorn-44478.exe (PID: 5968)
      • Unicorn-26391.exe (PID: 9232)
      • Unicorn-50010.exe (PID: 9412)
      • Unicorn-10425.exe (PID: 11036)
      • Unicorn-5381.exe (PID: 7652)
      • Unicorn-56289.exe (PID: 11148)
      • Unicorn-21546.exe (PID: 2384)
      • Unicorn-40586.exe (PID: 5328)
      • Unicorn-14965.exe (PID: 7848)
      • Unicorn-45402.exe (PID: 11592)
      • Unicorn-4125.exe (PID: 9180)
      • Unicorn-13357.exe (PID: 10204)
      • Unicorn-51458.exe (PID: 11020)
      • Unicorn-54648.exe (PID: 11220)
      • Unicorn-50508.exe (PID: 4068)
      • Unicorn-14576.exe (PID: 9536)
      • Unicorn-64457.exe (PID: 11160)
      • Unicorn-20720.exe (PID: 6512)
      • Unicorn-17634.exe (PID: 5576)
      • Unicorn-45542.exe (PID: 9500)
      • Unicorn-64825.exe (PID: 5332)
      • Unicorn-25681.exe (PID: 2040)
      • Unicorn-2463.exe (PID: 9516)
      • Unicorn-11364.exe (PID: 11072)
      • Unicorn-50477.exe (PID: 10300)
      • Unicorn-41368.exe (PID: 1324)
      • Unicorn-61313.exe (PID: 1012)
      • Unicorn-9465.exe (PID: 6228)
      • Unicorn-64113.exe (PID: 1096)
      • Unicorn-38946.exe (PID: 6768)
      • Unicorn-17368.exe (PID: 7488)
      • Unicorn-18786.exe (PID: 11168)
      • Unicorn-51006.exe (PID: 6184)
      • Unicorn-31230.exe (PID: 11096)
      • Unicorn-52625.exe (PID: 7908)
      • Unicorn-54286.exe (PID: 9584)
      • Unicorn-60600.exe (PID: 9620)
      • Unicorn-4768.exe (PID: 7836)
      • Unicorn-45246.exe (PID: 7676)
      • Unicorn-13829.exe (PID: 9568)
      • Unicorn-4960.exe (PID: 6872)
      • Unicorn-42838.exe (PID: 4452)
      • Unicorn-43460.exe (PID: 10460)
      • Unicorn-51650.exe (PID: 11116)
      • Unicorn-27124.exe (PID: 10400)
      • Unicorn-44648.exe (PID: 9544)
      • Unicorn-46030.exe (PID: 10372)
      • Unicorn-29759.exe (PID: 11348)
      • Unicorn-5417.exe (PID: 7812)
      • Unicorn-57690.exe (PID: 8168)
      • Unicorn-26251.exe (PID: 8572)
      • Unicorn-16046.exe (PID: 11644)
      • Unicorn-22551.exe (PID: 11652)
      • Unicorn-37404.exe (PID: 11704)
      • Unicorn-59242.exe (PID: 10416)
      • Unicorn-53606.exe (PID: 8180)
      • Unicorn-11000.exe (PID: 4164)
      • Unicorn-62329.exe (PID: 7248)
      • Unicorn-60269.exe (PID: 9656)
      • Unicorn-24768.exe (PID: 8604)
      • Unicorn-46990.exe (PID: 10408)
      • Unicorn-22055.exe (PID: 7472)
      • Unicorn-7493.exe (PID: 11252)
      • Unicorn-53357.exe (PID: 11308)
      • Unicorn-36466.exe (PID: 8592)
      • Unicorn-43460.exe (PID: 10468)
      • Unicorn-26274.exe (PID: 9696)
      • Unicorn-42838.exe (PID: 3240)
      • Unicorn-22678.exe (PID: 10524)
      • Unicorn-47737.exe (PID: 10608)
      • Unicorn-31702.exe (PID: 9728)
      • Unicorn-51821.exe (PID: 10628)
      • Unicorn-43098.exe (PID: 10580)
      • Unicorn-52869.exe (PID: 9828)
      • Unicorn-22102.exe (PID: 10652)
      • Unicorn-1333.exe (PID: 7996)
      • Unicorn-1333.exe (PID: 7808)
      • Unicorn-12973.exe (PID: 10320)
      • Unicorn-40934.exe (PID: 11684)
      • Unicorn-20358.exe (PID: 2644)
      • Unicorn-40076.exe (PID: 8476)
      • Unicorn-11583.exe (PID: 11556)
      • Unicorn-20740.exe (PID: 8500)
      • Unicorn-52328.exe (PID: 8456)
      • Unicorn-49678.exe (PID: 11828)
      • Unicorn-14664.exe (PID: 5868)
      • Unicorn-60113.exe (PID: 5380)
      • Unicorn-6050.exe (PID: 9020)
      • Unicorn-36798.exe (PID: 9084)
      • Unicorn-29886.exe (PID: 10116)
      • Unicorn-57633.exe (PID: 11624)
      • Unicorn-28526.exe (PID: 8240)
      • Unicorn-34530.exe (PID: 8740)
      • Unicorn-27787.exe (PID: 11732)
      • Unicorn-36227.exe (PID: 9152)
      • Unicorn-18594.exe (PID: 11044)
      • Unicorn-45651.exe (PID: 3896)
      • Unicorn-16740.exe (PID: 9240)
      • Unicorn-30642.exe (PID: 2772)
      • Unicorn-7088.exe (PID: 10984)
      • Unicorn-36606.exe (PID: 9248)
      • Unicorn-50394.exe (PID: 9604)
      • Unicorn-49678.exe (PID: 11820)
      • Unicorn-36673.exe (PID: 5552)
    • Reads the computer name

      • Unicorn-52386.exe (PID: 7576)
      • 1 (145).exe (PID: 7412)
      • Unicorn-14965.exe (PID: 7848)
      • Unicorn-3268.exe (PID: 7868)
      • Unicorn-18016.exe (PID: 7384)
      • Unicorn-39920.exe (PID: 7364)
      • Unicorn-47149.exe (PID: 1764)
      • Unicorn-42816.exe (PID: 1660)
      • Unicorn-29818.exe (PID: 2236)
      • Unicorn-42838.exe (PID: 4452)
      • Unicorn-31140.exe (PID: 5720)
      • Unicorn-65296.exe (PID: 660)
      • Unicorn-22055.exe (PID: 7472)
      • Unicorn-22055.exe (PID: 7640)
      • Unicorn-27299.exe (PID: 4108)
      • Unicorn-1333.exe (PID: 7808)
      • Unicorn-1333.exe (PID: 7996)
      • Unicorn-17840.exe (PID: 7932)
      • Unicorn-17840.exe (PID: 7960)
      • Unicorn-33357.exe (PID: 8124)
      • Unicorn-28775.exe (PID: 8140)
      • Unicorn-60046.exe (PID: 5280)
      • Unicorn-52625.exe (PID: 7908)
      • Unicorn-16583.exe (PID: 8112)
      • Unicorn-50508.exe (PID: 5984)
      • Unicorn-25681.exe (PID: 2040)
      • Unicorn-57690.exe (PID: 8168)
      • Unicorn-12359.exe (PID: 9664)
      • Unicorn-32610.exe (PID: 8216)
      • Unicorn-28526.exe (PID: 8240)
      • Unicorn-9620.exe (PID: 8400)
      • Unicorn-28526.exe (PID: 8244)
      • Unicorn-29221.exe (PID: 8416)
      • Unicorn-20740.exe (PID: 8500)
      • Unicorn-34316.exe (PID: 8324)
      • Unicorn-38592.exe (PID: 8448)
      • Unicorn-35084.exe (PID: 8648)
      • Unicorn-17399.exe (PID: 8972)
      • Unicorn-6050.exe (PID: 9020)
      • Unicorn-62371.exe (PID: 9092)
      • Unicorn-45651.exe (PID: 3896)
      • Unicorn-25785.exe (PID: 9212)
      • Unicorn-26391.exe (PID: 9232)
      • Unicorn-4125.exe (PID: 9180)
      • Unicorn-24857.exe (PID: 9392)
      • Unicorn-36606.exe (PID: 9248)
      • Unicorn-27476.exe (PID: 9272)
      • Unicorn-13829.exe (PID: 9568)
      • Unicorn-60600.exe (PID: 9620)
      • Unicorn-40913.exe (PID: 10080)
    • Create files in a temporary directory

      • 1 (145).exe (PID: 7412)
      • Unicorn-14965.exe (PID: 7848)
      • Unicorn-18016.exe (PID: 7384)
      • Unicorn-60113.exe (PID: 5380)
      • Unicorn-40512.exe (PID: 7172)
      • Unicorn-39920.exe (PID: 7364)
      • Unicorn-52386.exe (PID: 7576)
      • Unicorn-21546.exe (PID: 2384)
      • Unicorn-64825.exe (PID: 5332)
      • Unicorn-29818.exe (PID: 2236)
      • Unicorn-51006.exe (PID: 6184)
      • Unicorn-62496.exe (PID: 6476)
      • Unicorn-47149.exe (PID: 1764)
      • Unicorn-42838.exe (PID: 4452)
      • Unicorn-61826.exe (PID: 5972)
      • Unicorn-22055.exe (PID: 7472)
      • Unicorn-38946.exe (PID: 6768)
      • Unicorn-36673.exe (PID: 5552)
      • Unicorn-35608.exe (PID: 4976)
      • Unicorn-5417.exe (PID: 7812)
      • Unicorn-42838.exe (PID: 3240)
      • Unicorn-17840.exe (PID: 7940)
      • Unicorn-60648.exe (PID: 8028)
      • Unicorn-1333.exe (PID: 7996)
      • Unicorn-3268.exe (PID: 7868)
      • Unicorn-65296.exe (PID: 660)
      • Unicorn-50741.exe (PID: 6372)
      • Unicorn-60046.exe (PID: 5280)
      • Unicorn-60046.exe (PID: 4180)
      • Unicorn-5571.exe (PID: 7188)
      • Unicorn-5571.exe (PID: 7176)
      • Unicorn-56154.exe (PID: 8080)
      • Unicorn-59662.exe (PID: 8116)
      • Unicorn-11208.exe (PID: 6652)
      • Unicorn-12417.exe (PID: 5384)
      • Unicorn-44478.exe (PID: 5968)
      • Unicorn-50508.exe (PID: 5984)
      • Unicorn-30642.exe (PID: 2772)
      • Unicorn-2485.exe (PID: 4220)
      • Unicorn-61313.exe (PID: 1012)
      • Unicorn-17072.exe (PID: 7776)
      • Unicorn-22055.exe (PID: 7640)
      • Unicorn-25681.exe (PID: 2040)
      • Unicorn-20720.exe (PID: 6512)
      • Unicorn-45246.exe (PID: 7676)
      • Unicorn-53606.exe (PID: 8180)
      • Unicorn-62329.exe (PID: 7248)
      • Unicorn-32610.exe (PID: 8276)
      • Unicorn-32610.exe (PID: 8268)
      • Unicorn-32610.exe (PID: 8216)
      • Unicorn-9620.exe (PID: 8400)
      • Unicorn-40076.exe (PID: 8476)
      • Unicorn-20358.exe (PID: 2644)
      • Unicorn-31140.exe (PID: 5720)
      • Unicorn-37275.exe (PID: 8428)
      • Unicorn-53279.exe (PID: 7204)
      • Unicorn-37806.exe (PID: 8468)
      • Unicorn-17840.exe (PID: 7956)
      • Unicorn-35084.exe (PID: 8648)
      • Unicorn-37467.exe (PID: 8780)
      • Unicorn-59781.exe (PID: 8732)
      • Unicorn-13917.exe (PID: 8656)
      • Unicorn-62734.exe (PID: 8812)
      • Unicorn-49912.exe (PID: 8860)
      • Unicorn-46050.exe (PID: 7360)
      • Unicorn-7036.exe (PID: 8980)
      • Unicorn-64270.exe (PID: 7320)
      • Unicorn-36798.exe (PID: 9084)
      • Unicorn-62371.exe (PID: 9092)
      • Unicorn-16583.exe (PID: 8112)
      • Unicorn-36227.exe (PID: 9152)
      • Unicorn-45651.exe (PID: 3896)
      • Unicorn-25785.exe (PID: 9212)
      • Unicorn-16740.exe (PID: 9240)
      • Unicorn-26391.exe (PID: 9232)
      • Unicorn-24857.exe (PID: 9392)
      • Unicorn-64113.exe (PID: 1096)
      • Unicorn-50010.exe (PID: 9412)
      • Unicorn-49413.exe (PID: 9296)
      • Unicorn-45542.exe (PID: 9500)
      • Unicorn-40586.exe (PID: 5360)
      • Unicorn-14576.exe (PID: 9536)
      • Unicorn-2463.exe (PID: 9516)
      • Unicorn-13829.exe (PID: 9568)
      • Unicorn-60600.exe (PID: 9620)
      • Unicorn-44648.exe (PID: 9544)
      • Unicorn-26274.exe (PID: 9696)
      • Unicorn-27426.exe (PID: 9764)
      • Unicorn-60269.exe (PID: 9656)
      • Unicorn-42838.exe (PID: 6388)
      • Unicorn-60648.exe (PID: 7768)
      • Unicorn-33357.exe (PID: 8124)
      • Unicorn-21754.exe (PID: 7736)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | DOS Executable Generic (100)

EXIF

EXE

MachineType: Intel 386 or later, and compatibles
TimeStamp: 2019:01:19 13:34:56+00:00
ImageFileCharacteristics: No relocs, Executable, No line numbers, No symbols, 32-bit
PEType: PE32
LinkerVersion: 6
CodeSize: 176128
InitializedDataSize: 299008
UninitializedDataSize: -
EntryPoint: 0x13d4
OSVersion: 4
ImageVersion: 1
SubsystemVersion: 4
Subsystem: Windows GUI
FileVersionNumber: 1.0.0.0
ProductVersionNumber: 1.0.0.0
FileFlagsMask: 0x003f
FileFlags: (none)
FileOS: Win32
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: Chinese (Simplified)
CharacterSet: Unicode
CompanyName: UEFI
ProductName: Kawaii-Unicorn
FileVersion: 1
ProductVersion: 1
InternalName: Kawaii-Unicorn
OriginalFileName: Kawaii-Unicorn.exe
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
482
Monitored processes
348
Malicious processes
52
Suspicious processes
69

Behavior graph

Click at the process to see the details
start 1 (145).exe sppextcomobj.exe no specs slui.exe no specs unicorn-52386.exe unicorn-14965.exe unicorn-3268.exe unicorn-21546.exe unicorn-18016.exe unicorn-39920.exe unicorn-46050.exe unicorn-64270.exe unicorn-64825.exe unicorn-47149.exe unicorn-53279.exe unicorn-60113.exe unicorn-40512.exe unicorn-42816.exe no specs unicorn-42816.exe no specs unicorn-29818.exe unicorn-35608.exe unicorn-38946.exe unicorn-41368.exe unicorn-42838.exe unicorn-42838.exe unicorn-42838.exe unicorn-31140.exe unicorn-51006.exe unicorn-50741.exe unicorn-65296.exe unicorn-62496.exe unicorn-5571.exe unicorn-5571.exe unicorn-61826.exe unicorn-46045.exe unicorn-28962.exe unicorn-27299.exe unicorn-22055.exe unicorn-22055.exe unicorn-36673.exe unicorn-17072.exe unicorn-5417.exe unicorn-1333.exe unicorn-1333.exe unicorn-21754.exe unicorn-21754.exe unicorn-60648.exe unicorn-60648.exe unicorn-28775.exe unicorn-31575.exe unicorn-17840.exe unicorn-17840.exe unicorn-17840.exe unicorn-33357.exe unicorn-17840.exe unicorn-8156.exe unicorn-60046.exe unicorn-60046.exe unicorn-14664.exe unicorn-14664.exe unicorn-56154.exe unicorn-52625.exe unicorn-59662.exe unicorn-16583.exe unicorn-2485.exe unicorn-11208.exe unicorn-44478.exe unicorn-12417.exe unicorn-30642.exe unicorn-50508.exe unicorn-50508.exe unicorn-20720.exe unicorn-40586.exe unicorn-40586.exe unicorn-64113.exe unicorn-61313.exe unicorn-25681.exe unicorn-45246.exe unicorn-4768.exe unicorn-57690.exe unicorn-53606.exe unicorn-62329.exe unicorn-4960.exe unicorn-20358.exe unicorn-20358.exe unicorn-20358.exe unicorn-20358.exe unicorn-32610.exe unicorn-32610.exe unicorn-32610.exe unicorn-32610.exe unicorn-28526.exe unicorn-28526.exe unicorn-32610.exe unicorn-32610.exe unicorn-52136.exe unicorn-34316.exe unicorn-9620.exe unicorn-23355.exe unicorn-29221.exe unicorn-37275.exe unicorn-38592.exe unicorn-52328.exe unicorn-37806.exe unicorn-40076.exe unicorn-20740.exe unicorn-26340.exe unicorn-33378.exe unicorn-35084.exe unicorn-13917.exe unicorn-1857.exe unicorn-59781.exe unicorn-34530.exe unicorn-37467.exe unicorn-62734.exe unicorn-21702.exe unicorn-49912.exe unicorn-55313.exe unicorn-19847.exe unicorn-43046.exe unicorn-59382.exe unicorn-17399.exe unicorn-7036.exe unicorn-56450.exe unicorn-6050.exe unicorn-27478.exe unicorn-6080.exe unicorn-15225.exe unicorn-36798.exe unicorn-62371.exe unicorn-36990.exe unicorn-36227.exe unicorn-53326.exe unicorn-4125.exe unicorn-25785.exe unicorn-45651.exe unicorn-36968.exe unicorn-26391.exe unicorn-16740.exe unicorn-36606.exe unicorn-27476.exe unicorn-49413.exe unicorn-24857.exe unicorn-50010.exe unicorn-61686.exe unicorn-45542.exe unicorn-2463.exe unicorn-14576.exe unicorn-44648.exe unicorn-13829.exe unicorn-54286.exe unicorn-50394.exe unicorn-60600.exe unicorn-60269.exe unicorn-12359.exe no specs unicorn-26274.exe unicorn-31702.exe unicorn-27426.exe unicorn-40616.exe unicorn-52869.exe unicorn-8659.exe unicorn-8121.exe no specs unicorn-40913.exe unicorn-29886.exe unicorn-42138.exe unicorn-30440.exe unicorn-62558.exe unicorn-13357.exe unicorn-9465.exe unicorn-9465.exe unicorn-5381.exe unicorn-17634.exe unicorn-17368.exe unicorn-1468.exe unicorn-50477.exe unicorn-12973.exe unicorn-12973.exe unicorn-17996.exe unicorn-46030.exe unicorn-27124.exe unicorn-46990.exe unicorn-59242.exe unicorn-35292.exe unicorn-1873.exe unicorn-43460.exe unicorn-43460.exe unicorn-26762.exe unicorn-22678.exe unicorn-34930.exe unicorn-43098.exe unicorn-43098.exe unicorn-47737.exe unicorn-51821.exe unicorn-8187.exe unicorn-22102.exe unicorn-51245.exe unicorn-7611.exe unicorn-13741.exe unicorn-2428.exe unicorn-22294.exe unicorn-30230.exe unicorn-44752.exe unicorn-50882.exe unicorn-46533.exe unicorn-46533.exe unicorn-37668.exe unicorn-18407.exe unicorn-25995.exe unicorn-2376.exe unicorn-13916.exe unicorn-20047.exe unicorn-7088.exe unicorn-26954.exe unicorn-51458.exe unicorn-10425.exe unicorn-18594.exe unicorn-11364.exe unicorn-31230.exe unicorn-51650.exe unicorn-56289.exe unicorn-64457.exe unicorn-18786.exe unicorn-24022.exe no specs unicorn-54648.exe unicorn-53165.exe unicorn-7493.exe unicorn-15662.exe unicorn-11000.exe unicorn-36466.exe unicorn-26251.exe unicorn-24768.exe unicorn-53357.exe unicorn-29759.exe unicorn-30844.exe unicorn-56045.exe unicorn-56310.exe unicorn-44250.exe unicorn-15469.exe unicorn-13092.exe unicorn-11583.exe unicorn-20514.exe unicorn-45402.exe unicorn-57633.exe unicorn-16046.exe unicorn-22551.exe unicorn-40934.exe unicorn-37404.exe unicorn-27787.exe unicorn-22220.exe unicorn-13305.exe unicorn-25174.exe unicorn-49678.exe unicorn-49678.exe unicorn-61930.exe unicorn-45786.exe no specs unicorn-26326.exe no specs unicorn-46746.exe no specs unicorn-42662.exe no specs unicorn-50830.exe no specs unicorn-9797.exe no specs unicorn-2184.exe no specs unicorn-34421.exe no specs unicorn-59190.exe no specs unicorn-47493.exe no specs unicorn-47493.exe no specs unicorn-18158.exe no specs unicorn-10160.exe no specs unicorn-58614.exe no specs unicorn-18651.exe no specs unicorn-13497.exe no specs unicorn-51193.exe no specs unicorn-51193.exe no specs unicorn-51193.exe no specs unicorn-41508.exe no specs unicorn-60844.exe no specs unicorn-3426.exe no specs unicorn-13640.exe no specs unicorn-34180.exe no specs unicorn-1258.exe no specs unicorn-50781.exe no specs unicorn-46465.exe no specs unicorn-60987.exe no specs unicorn-8103.exe no specs unicorn-29214.exe no specs unicorn-18279.exe no specs unicorn-46313.exe no specs unicorn-13448.exe no specs unicorn-64164.exe no specs unicorn-56188.exe no specs unicorn-10516.exe no specs unicorn-18685.exe no specs unicorn-18419.exe no specs unicorn-38913.exe no specs unicorn-9867.exe no specs unicorn-39882.exe no specs unicorn-14216.exe no specs unicorn-20007.exe no specs unicorn-56764.exe no specs unicorn-27429.exe no specs unicorn-60485.exe no specs unicorn-48788.exe no specs unicorn-19187.exe no specs unicorn-38595.exe no specs unicorn-44460.exe no specs unicorn-41387.exe no specs unicorn-40811.exe no specs unicorn-15560.exe no specs unicorn-32835.exe no specs unicorn-9622.exe no specs unicorn-27110.exe no specs unicorn-41336.exe no specs unicorn-49769.exe no specs unicorn-16329.exe no specs unicorn-13012.exe no specs unicorn-29349.exe no specs unicorn-50153.exe no specs unicorn-13594.exe no specs unicorn-38477.exe no specs unicorn-51284.exe no specs unicorn-51284.exe no specs unicorn-11734.exe no specs unicorn-18803.exe no specs unicorn-35139.exe no specs unicorn-36099.exe no specs unicorn-47035.exe no specs unicorn-36099.exe no specs unicorn-36099.exe no specs unicorn-36099.exe no specs unicorn-53919.exe no specs unicorn-41859.exe no specs unicorn-36291.exe no specs unicorn-36291.exe no specs unicorn-826.exe no specs unicorn-56712.exe no specs unicorn-24754.exe no specs unicorn-24754.exe no specs unicorn-11019.exe no specs unicorn-11019.exe no specs unicorn-11019.exe no specs unicorn-33306.exe no specs unicorn-35907.exe no specs unicorn-44076.exe no specs unicorn-48160.exe no specs unicorn-48160.exe no specs unicorn-48160.exe no specs unicorn-21978.exe no specs unicorn-30146.exe no specs unicorn-20495.exe no specs unicorn-40096.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
660C:\Users\admin\AppData\Local\Temp\Unicorn-65296.exeC:\Users\admin\AppData\Local\Temp\Unicorn-65296.exe
Unicorn-3268.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-65296.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1012C:\Users\admin\AppData\Local\Temp\Unicorn-61313.exeC:\Users\admin\AppData\Local\Temp\Unicorn-61313.exe
Unicorn-14965.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-61313.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1096C:\Users\admin\AppData\Local\Temp\Unicorn-64113.exeC:\Users\admin\AppData\Local\Temp\Unicorn-64113.exe
Unicorn-64825.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-64113.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1168C:\Users\admin\AppData\Local\Temp\Unicorn-20358.exeC:\Users\admin\AppData\Local\Temp\Unicorn-20358.exe
Unicorn-17840.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-20358.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1324C:\Users\admin\AppData\Local\Temp\Unicorn-41368.exeC:\Users\admin\AppData\Local\Temp\Unicorn-41368.exe
Unicorn-14965.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-41368.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1660C:\Users\admin\AppData\Local\Temp\Unicorn-42816.exeC:\Users\admin\AppData\Local\Temp\Unicorn-42816.exeUnicorn-18016.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-42816.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
1764C:\Users\admin\AppData\Local\Temp\Unicorn-47149.exeC:\Users\admin\AppData\Local\Temp\Unicorn-47149.exe
Unicorn-52386.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-47149.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
2040C:\Users\admin\AppData\Local\Temp\Unicorn-25681.exeC:\Users\admin\AppData\Local\Temp\Unicorn-25681.exe
Unicorn-51006.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-25681.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
2064C:\Users\admin\AppData\Local\Temp\Unicorn-34180.exeC:\Users\admin\AppData\Local\Temp\Unicorn-34180.exeUnicorn-38946.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-34180.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
2236C:\Users\admin\AppData\Local\Temp\Unicorn-29818.exeC:\Users\admin\AppData\Local\Temp\Unicorn-29818.exe
Unicorn-64270.exe
User:
admin
Company:
UEFI
Integrity Level:
MEDIUM
Version:
1.00
Modules
Images
c:\users\admin\appdata\local\temp\unicorn-29818.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\msvbvm60.dll
Total events
7 454
Read events
7 454
Write events
0
Delete events
0

Modification events

No data
Executable files
1 192
Suspicious files
0
Text files
0
Unknown types
0

Dropped files

PID
Process
Filename
Type
7576Unicorn-52386.exeC:\Users\admin\AppData\Local\Temp\Unicorn-18016.exeexecutable
MD5:499785634136C8B001E8752DAEC5EF01
SHA256:C6164993A1CDB30810EE0B27C94DCB9D914D258D995BAEBB89D91D5320D9D80F
7848Unicorn-14965.exeC:\Users\admin\AppData\Local\Temp\Unicorn-21546.exeexecutable
MD5:19EEC25D8391215DC2961F9C394DEC02
SHA256:95011337A90E4BDCD821EB0315D5057B0EAE1A9A7BCD1BE23E342D5F98BFB17B
74121 (145).exeC:\Users\admin\AppData\Local\Temp\Unicorn-52386.exeexecutable
MD5:AC42DB34D7993D07BB57DCBB54777CB5
SHA256:E7D4DE0D1162CF2EC7B92280CDAC5583A06BC46596166756780ED84F619BA885
7320Unicorn-64270.exeC:\Users\admin\AppData\Local\Temp\Unicorn-29818.exeexecutable
MD5:AB2D3D4BF60CF3A72803A986ABBB8D70
SHA256:142AE0C1281DFA0A2D5608ADEE05F3F2F2207EA3CC24D368FC71CAF44258F7D0
74121 (145).exeC:\Users\admin\AppData\Local\Temp\Unicorn-39920.exeexecutable
MD5:7AE1E3B67AFB1115DBE05B9A7DEA6850
SHA256:F20B7479CE9F3ACDD63880D7A3C0A2475ADF1FF0A13F8582C8CC37DFE0671736
2384Unicorn-21546.exeC:\Users\admin\AppData\Local\Temp\Unicorn-64270.exeexecutable
MD5:9BAC6AF99125D6CC6D000C8D90ED9D8F
SHA256:FCB4EBAFE66545898B1E0AD0036CE365B8D9206E2C30E1D67C5A511A3FBE27EC
7868Unicorn-3268.exeC:\Users\admin\AppData\Local\Temp\Unicorn-46050.exeexecutable
MD5:D0583545421E5F57B6254E4B8CC72C00
SHA256:5B00728F90AAF14C0494138F6A353996E12299CD02C05A583D6980CF0A05E510
74121 (145).exeC:\Users\admin\AppData\Local\Temp\Unicorn-3268.exeexecutable
MD5:FFA36606E007F802962BCA69C0FF5EDB
SHA256:FF64805485CB91499A6043C66CEB2F794E98BE6AF0CCFA0E4FE521D3426A8214
7576Unicorn-52386.exeC:\Users\admin\AppData\Local\Temp\Unicorn-47149.exeexecutable
MD5:CC9D71376A57AEBA695B9242EE06C6FE
SHA256:ACF42BAD8607004404C0E2BEF479F4CB26C33909FB40C497C4BC3C9A737EA2ED
5380Unicorn-60113.exeC:\Users\admin\AppData\Local\Temp\Unicorn-42838.exeexecutable
MD5:58037B8350555F603EEC8651183C15F1
SHA256:1AA53524E559D86484194FAA6BD35B509997A3A605F2226D659AA47F95BEAF90
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
5
TCP/UDP connections
22
DNS requests
15
Threats
0

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
GET
200
95.101.54.122:80
http://crl.microsoft.com/pki/crl/products/MicRooCerAut2011_2011_03_22.crl
unknown
whitelisted
6544
svchost.exe
GET
200
184.30.131.245:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
7664
backgroundTaskHost.exe
GET
200
2.23.77.188:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAUZZSZEml49Gjh0j13P68w%3D
unknown
whitelisted
8568
SIHClient.exe
GET
200
2.23.246.101:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Update%20Secure%20Server%20CA%202.1.crl
unknown
whitelisted
8568
SIHClient.exe
GET
200
2.23.246.101:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Product%20Root%20Certificate%20Authority%202018.crl
unknown
whitelisted
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
51.104.136.2:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
4
System
192.168.100.255:137
whitelisted
95.101.54.122:80
crl.microsoft.com
Akamai International B.V.
DE
whitelisted
4
System
192.168.100.255:138
whitelisted
4108
RUXIMICS.exe
4.231.128.59:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
3216
svchost.exe
40.113.110.67:443
client.wns.windows.com
MICROSOFT-CORP-MSN-AS-BLOCK
NL
whitelisted
6544
svchost.exe
20.190.159.131:443
login.live.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
6544
svchost.exe
184.30.131.245:80
ocsp.digicert.com
AKAMAI-AS
US
whitelisted
2104
svchost.exe
4.231.128.59:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
7664
backgroundTaskHost.exe
20.223.35.26:443
arc.msn.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted

DNS requests

Domain
IP
Reputation
settings-win.data.microsoft.com
  • 51.104.136.2
  • 4.231.128.59
whitelisted
crl.microsoft.com
  • 95.101.54.122
  • 95.101.54.128
whitelisted
client.wns.windows.com
  • 40.113.110.67
whitelisted
login.live.com
  • 20.190.159.131
  • 40.126.31.2
  • 20.190.159.68
  • 40.126.31.0
  • 40.126.31.128
  • 40.126.31.1
  • 20.190.159.130
  • 40.126.31.71
whitelisted
ocsp.digicert.com
  • 184.30.131.245
  • 2.23.77.188
whitelisted
arc.msn.com
  • 20.223.35.26
whitelisted
slscr.update.microsoft.com
  • 172.202.163.200
whitelisted
www.microsoft.com
  • 2.23.246.101
whitelisted
fe3cr.delivery.mp.microsoft.com
  • 52.165.164.15
whitelisted
activation-v2.sls.microsoft.com
  • 20.83.72.98
whitelisted

Threats

No threats detected
No debug info