VTI SCORE: 100/100
Dynamic Analysis Report |
Classification: Ransomware, Wiper, Trojan |
01214479e87889f36b49eb689eab53ad00b41b98f1ee9dd4033bbf71f2fe634c.bin.exe
Windows Exe (x86-32)
Created at 2019-10-14T18:13:00
This is a filtered view
This list contains only the embedded files, downloaded files, and dropped files
Filters: |
There are no files for this filter
There are no files in this analysis
Filename | Category | Type | Severity | Actions |
---|
C:\Users\FD1HVy\Desktop\01214479e87889f36b49eb689eab53ad00b41b98f1ee9dd4033bbf71f2fe634c.bin.exe | Sample File | Binary |
Malicious
|
...
|
»
File Reputation Information
»
Severity |
Blacklisted
|
First Seen | 2019-10-14 01:14 (UTC+2) |
Last Seen | 2019-10-14 03:30 (UTC+2) |
Names | ByteCode-MSIL.Trojan.Filecoder |
Families | Filecoder |
Classification | Trojan |
PE Information
»
Image Base | 0x400000 |
Entry Point | 0x42826a |
Size Of Code | 0x26400 |
Size Of Initialized Data | 0x800 |
File Type | FileType.executable |
Subsystem | Subsystem.windows_gui |
Machine Type | MachineType.i386 |
Compile Timestamp | 2046-11-27 06:36:51+00:00 |
Version Information (11)
»
Assembly Version | 1.0.0.0 |
Comments | - |
CompanyName | - |
FileDescription | - |
FileVersion | 1.0.0.0 |
InternalName | dishwasher.exe |
LegalCopyright | - |
LegalTrademarks | - |
OriginalFilename | dishwasher.exe |
ProductName | - |
ProductVersion | 1.0.0.0 |
Sections (3)
»
Name | Virtual Address | Virtual Size | Raw Data Size | Raw Data Offset | Flags | Entropy |
---|---|---|---|---|---|---|
.text | 0x402000 | 0x26270 | 0x26400 | 0x200 | IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ | 7.92 |
.rsrc | 0x42a000 | 0x574 | 0x600 | 0x26600 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ | 3.94 |
.reloc | 0x42c000 | 0xc | 0x200 | 0x26c00 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_DISCARDABLE, IMAGE_SCN_MEM_READ | 0.1 |
Imports (1)
»
mscoree.dll (1)
»
API Name | Ordinal | IAT Address | Thunk RVA | Thunk Offset | Hint |
---|---|---|---|---|---|
_CorExeMain | 0x0 | 0x402000 | 0x28240 | 0x26440 | 0x0 |
Memory Dumps (9)
»
Name | Process ID | Start VA | End VA | Dump Reason | PE Rebuild | Bitness | Entry Points | AV | YARA | Actions |
---|---|---|---|---|---|---|---|---|---|---|
buffer | 1 | 0x00FEB000 | 0x00FEBFFF | First Execution | - | 32-bit | 0x00FEB000 |
![]() |
![]() |
...
|
buffer | 1 | 0x01016000 | 0x01016FFF | First Execution | - | 32-bit | 0x01016012 |
![]() |
![]() |
...
|
buffer | 1 | 0x05150000 | 0x0515FFFF | Content Changed | - | 32-bit | 0x051500C8 |
![]() |
![]() |
...
|
buffer | 1 | 0x00FFA000 | 0x00FFAFFF | First Execution | - | 32-bit | 0x00FFA024 |
![]() |
![]() |
...
|
buffer | 1 | 0x05150000 | 0x0515FFFF | Content Changed | - | 32-bit | 0x05151000 |
![]() |
![]() |
...
|
buffer | 1 | 0x05150000 | 0x0515FFFF | Content Changed | - | 32-bit | 0x0515167E |
![]() |
![]() |
...
|
buffer | 1 | 0x05150000 | 0x0515FFFF | Content Changed | - | 32-bit | 0x0515020C |
![]() |
![]() |
...
|
buffer | 1 | 0x00FEB000 | 0x00FEBFFF | Content Changed | - | 32-bit | 0x00FEB054 |
![]() |
![]() |
...
|
buffer | 1 | 0x01016000 | 0x01016FFF | Content Changed | - | 32-bit | 0x01016032 |
![]() |
![]() |
...
|
Local AV Matches (1)
»
Threat Name | Severity |
---|---|
Trojan.GenericKD.32582157 |
Malicious
|
C:\Users\FD1HVy\Desktop\bwlyDIwwabzYwCpzPHh_.xlsx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\CI9I-acTWbs.jpg.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\desktop.ini.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\e1f_RJNpV6_MiJ5.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\eWIEDFZDzS 2RypBkj.bmp.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\GUySXP2qZ1xps1g1I7.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\jdPk-.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\JEId1bblR-08.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\Jml1aO5.rtf.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\kJa97tiink4XE.xlsx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\Kjmvo6.mp4.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\nJz shH.rtf.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\o2KSIKZn.jpg.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\PAacBHjjz.png.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\SmnoxjaXdJh8dQDqCNt.png.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\tjOyrRoGtKApun-.mp4.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\Ufit1JgSOFk.bmp.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\v78ht.png.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\ys s1.bmp.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\_Kw80mGkT8D0HP.ppt.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\lbY-OmU80OwRenr3Vng-\3BVKYLUxX.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\lbY-OmU80OwRenr3Vng-\Dgff2g4LNiW LoN6Le.pptx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\lbY-OmU80OwRenr3Vng-\gftnLbF4.jpg.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\lbY-OmU80OwRenr3Vng-\kVmHiwVwIHgDli.mp4.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\lbY-OmU80OwRenr3Vng-\o__zATrpvS6.docx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Desktop\lbY-OmU80OwRenr3Vng-\uKXxHuqm.mp4.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\0Ka MiQoR.xls.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\1iTM6Ci7G pZYBPr.docx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\3rwJN.xlsx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\44qv.pptx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\4IhExl8OfxL BY81q8.pptx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\C7gqCvxxy.pptx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\desktop.ini.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\dTAP_YzCVuaeeF.xls.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\gMjuKIRw_tMIX7.xlsx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\GskkqLlyhU0.xlsx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\KBOmPs.xlsx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\kU8s.docx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\MTjFRTNlfBxhORjdYQ5D.pptx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\nTw6.xls.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\nUwQz2xpmQLmgDIeD9F7.docx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\sJ_L1u.xlsx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\TNHd.docx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\tp3wzfU0ep-Rmpld.docx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\xY0WA5kGpzbl4.pptx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\zbFCMUIg746kS.docx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\-EHy7agz5E _aHlm.ppt.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\r2vYyfxZuh-n.pptx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\uxq-pc34pY0ch.csv.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\XY 0WaBTWatTFiZct.xls.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\78fG1YwEAH.xls.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\i6q5F6f.pptx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\tGEndwTb0DAC52.csv.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\Z05dDoJ6.rtf.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\zDrbkO7-cpTV e.pptx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\D0fouxn5KM2CAu84_GKn\DsKmP-M HK8fTZkM\2DtZ4-SAWaw.xls.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\D0fouxn5KM2CAu84_GKn\DsKmP-M HK8fTZkM\Mm7dSd18RP8f7wW0PZKk.xlsx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\D0fouxn5KM2CAu84_GKn\kUUl 2WV4TCIZ8\kTG4MKtPEe_Q4m0q14.pptx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\D0fouxn5KM2CAu84_GKn\kUUl 2WV4TCIZ8\M-DZmbnSXLHU8.xls.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\D0fouxn5KM2CAu84_GKn\kUUl 2WV4TCIZ8\ur EwBTDRD8ZVOR.doc.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\D0fouxn5KM2CAu84_GKn\kUUl 2WV4TCIZ8\yT2CVRGLqDa wX.xls.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\D0fouxn5KM2CAu84_GKn\kUUl 2WV4TCIZ8\qt1yQ2AMVDC\GxeO0UITH-Aq9.ppt.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\D0fouxn5KM2CAu84_GKn\kUUl 2WV4TCIZ8\qt1yQ2AMVDC\kbZLU NP-Q3a7 Ex.docx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\D0fouxn5KM2CAu84_GKn\kUUl 2WV4TCIZ8\qt1yQ2AMVDC\NKfk49aqWKTIQGe.rtf.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\D0fouxn5KM2CAu84_GKn\kUUl 2WV4TCIZ8\qt1yQ2AMVDC\XuFj.xls.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\D0fouxn5KM2CAu84_GKn\kUUl 2WV4TCIZ8\qt1yQ2AMVDC\ZP6Hc3riL3yYAZBZr1S.ppt.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\D0fouxn5KM2CAu84_GKn\kUUl 2WV4TCIZ8\tS6L\G7if_CFKhH8ELzqxX.docx.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\D0fouxn5KM2CAu84_GKn\kUUl 2WV4TCIZ8\tS6L\ZNSmigygeobXQ1.xls.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\XpmNlsWA\ccc4aEC6Y owkgZ.pdf.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\H1yCe_Iv5e4H3ERhIS2u\T9ds0OVTtC4CYU\XpmNlsWA\wuUUNpvw3 X_jSv Ub.csv.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\My Shapes\desktop.ini.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Documents\My Shapes\_private\folder.ico.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\0KVqpa0nbCfWdRkwV.jpg.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\33_Fvwv84NRjfuO-2n.jpg.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\3DNqhx w mbfm.png.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\4az0 1YT.png.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\8IpTnpQB9FKjEWsfQB.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\8xjVd1pt5Gc7lK.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\9B8B9bSywV1C.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\azUG3wD-usBw.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\b4OM1fT.bmp.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\BYzJgVh-uy.jpg.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\c7WqW5x4-6Y.jpg.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\c7_Iq8D1mdpgaeg.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\cdK2bzf.jpg.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\CyoxqScrcx8DHYJXw.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\desktop.ini.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\Dvfd Qvrtf.bmp.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\F05JRfLq7bDP7mHyWG.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\hDyWsSCmpvVXYMt-A.bmp.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\hvK6F7xLNgRidiP.jpg.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\I5AZL RPXetnCKwalMoc.bmp.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\iP2yNC.bmp.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\IXL IdX637x 9.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\jOq8POV9x_BC3as.png.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\k7W9Jw.bmp.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\k8DzdyHimZUlVkeF2ErJ.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\LMoXSE3xMlo.png.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\nEcrrcam3wKUl1.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\nGfXCZi.png.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\oYQAT.jpg.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\Q-ZAJrfaCmQb3uCw7eA.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\QZKpAZd3O.png.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\rvCxCn.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\suU-rBjPn V0.png.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\TiqeDlEBDK38xn8r.png.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\VOjS.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\VZi5B8.png.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\YlIzQGieIPHsoYs_OJF.bmp.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\yltzv1xew.gif.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\yNRbW_u ySl1DE.png.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\Camera Roll\desktop.ini.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Pictures\Saved Pictures\desktop.ini.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Favorites\Bing.url.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Favorites\desktop.ini.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Favorites\Links\desktop.ini.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\Music\desktop.ini.clean | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\FD1HVy\AppData\Local\Temp\dump.keys | Dropped File | Text |
Unknown
|
...
|
»
c:\users\fd1hvy\appdata\local\temp\bg.jpg | Dropped File | Image |
Unknown
|
...
|
»