VTI SCORE: 100/100
Dynamic Analysis Report |
Classification: Ransomware, Dropper, Trojan |
CUsersGustavoDesktopAthena865.exe
Windows Exe (x86-32)
Created at 2019-09-28T04:39:00
Remarks
(0x200001e): The maximum size of extracted files was exceeded. Some files may be missing in the report.
(0x200001d): The maximum number of extracted files was exceeded. Some files may be missing in the report.
(0x200001b): The maximum number of file reputation requests per analysis (150) was exceeded.
This is a filtered view
This list contains only the embedded files, downloaded files, and dropped files
Filters: |
There are no files for this filter
There are no files in this analysis
Filename | Category | Type | Severity | Actions |
---|
C:\Users\5p5NrGJn0jS HALPmcxz\Desktop\CUsersGustavoDesktopAthena865.exe | Sample File | Binary |
Malicious
|
...
|
»
File Reputation Information
»
Severity |
Blacklisted
|
First Seen | 2019-09-28 04:42 (UTC+2) |
Last Seen | 2019-09-28 05:04 (UTC+2) |
Names | Win32.Trojan.Maoloa |
Families | Maoloa |
Classification | Trojan |
PE Information
»
Image Base | 0x400000 |
Entry Point | 0x4112c3 |
Size Of Code | 0x21600 |
Size Of Initialized Data | 0x28800 |
File Type | FileType.executable |
Subsystem | Subsystem.windows_gui |
Machine Type | MachineType.i386 |
Compile Timestamp | 2019-09-17 10:00:25+00:00 |
Sections (5)
»
Name | Virtual Address | Virtual Size | Raw Data Size | Raw Data Offset | Flags | Entropy |
---|---|---|---|---|---|---|
.text | 0x401000 | 0x21584 | 0x21600 | 0x400 | IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ | 6.67 |
.rdata | 0x423000 | 0xea44 | 0xec00 | 0x21a00 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ | 6.57 |
.data | 0x432000 | 0x17e58 | 0x2000 | 0x30600 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE | 4.01 |
.rsrc | 0x44a000 | 0x1e0 | 0x200 | 0x32600 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ | 4.71 |
.reloc | 0x44b000 | 0x1950 | 0x1a00 | 0x32800 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_DISCARDABLE, IMAGE_SCN_MEM_READ | 6.55 |
Imports (5)
»
KERNEL32.dll (114)
»
API Name | Ordinal | IAT Address | Thunk RVA | Thunk Offset | Hint |
---|---|---|---|---|---|
InitializeSListHead | 0x0 | 0x423040 | 0x30e44 | 0x2f844 | 0x2e7 |
InterlockedPopEntrySList | 0x0 | 0x423044 | 0x30e48 | 0x2f848 | 0x2f0 |
lstrcpyW | 0x0 | 0x423048 | 0x30e4c | 0x2f84c | 0x548 |
LocalFree | 0x0 | 0x42304c | 0x30e50 | 0x2f850 | 0x348 |
GetFileSizeEx | 0x0 | 0x423050 | 0x30e54 | 0x2f854 | 0x1f1 |
SetEndOfFile | 0x0 | 0x423054 | 0x30e58 | 0x2f858 | 0x453 |
GetLastError | 0x0 | 0x423058 | 0x30e5c | 0x2f85c | 0x202 |
SetFilePointerEx | 0x0 | 0x42305c | 0x30e60 | 0x2f860 | 0x467 |
MoveFileExW | 0x0 | 0x423060 | 0x30e64 | 0x2f864 | 0x360 |
GlobalAlloc | 0x0 | 0x423064 | 0x30e68 | 0x2f868 | 0x2b3 |
GlobalFree | 0x0 | 0x423068 | 0x30e6c | 0x2f86c | 0x2ba |
FindFirstFileW | 0x0 | 0x42306c | 0x30e70 | 0x2f870 | 0x139 |
FindFirstVolumeW | 0x0 | 0x423070 | 0x30e74 | 0x2f874 | 0x13f |
GetCommandLineW | 0x0 | 0x423074 | 0x30e78 | 0x2f878 | 0x187 |
FindNextFileW | 0x0 | 0x423078 | 0x30e7c | 0x2f87c | 0x145 |
GetCurrentProcess | 0x0 | 0x42307c | 0x30e80 | 0x2f880 | 0x1c0 |
WaitForMultipleObjects | 0x0 | 0x423080 | 0x30e84 | 0x2f884 | 0x4f7 |
GetEnvironmentVariableW | 0x0 | 0x423084 | 0x30e88 | 0x2f888 | 0x1dc |
FindClose | 0x0 | 0x423088 | 0x30e8c | 0x2f88c | 0x12e |
CreateMutexA | 0x0 | 0x42308c | 0x30e90 | 0x2f890 | 0x9b |
WaitForSingleObject | 0x0 | 0x423090 | 0x30e94 | 0x2f894 | 0x4f9 |
GetFileAttributesW | 0x0 | 0x423094 | 0x30e98 | 0x2f898 | 0x1ea |
ReleaseMutex | 0x0 | 0x423098 | 0x30e9c | 0x2f89c | 0x3fa |
lstrcatA | 0x0 | 0x42309c | 0x30ea0 | 0x2f8a0 | 0x53e |
SetFileAttributesW | 0x0 | 0x4230a0 | 0x30ea4 | 0x2f8a4 | 0x461 |
MapViewOfFile | 0x0 | 0x4230a4 | 0x30ea8 | 0x2f8a8 | 0x357 |
lstrcatW | 0x0 | 0x4230a8 | 0x30eac | 0x2f8ac | 0x53f |
GetSystemInfo | 0x0 | 0x4230ac | 0x30eb0 | 0x2f8b0 | 0x273 |
CreateThread | 0x0 | 0x4230b0 | 0x30eb4 | 0x2f8b4 | 0xb5 |
SetVolumeMountPointW | 0x0 | 0x4230b4 | 0x30eb8 | 0x2f8b8 | 0x4ab |
FindVolumeClose | 0x0 | 0x4230b8 | 0x30ebc | 0x2f8bc | 0x150 |
CreateProcessW | 0x0 | 0x4230bc | 0x30ec0 | 0x2f8c0 | 0xa8 |
CopyFileW | 0x0 | 0x4230c0 | 0x30ec4 | 0x2f8c4 | 0x75 |
GetVolumePathNamesForVolumeNameW | 0x0 | 0x4230c4 | 0x30ec8 | 0x2f8c8 | 0x2ad |
FindNextVolumeW | 0x0 | 0x4230c8 | 0x30ecc | 0x2f8cc | 0x14a |
lstrcmpiW | 0x0 | 0x4230cc | 0x30ed0 | 0x2f8d0 | 0x545 |
GetDriveTypeW | 0x0 | 0x4230d0 | 0x30ed4 | 0x2f8d4 | 0x1d3 |
GetExitCodeProcess | 0x0 | 0x4230d4 | 0x30ed8 | 0x2f8d8 | 0x1df |
EnterCriticalSection | 0x0 | 0x4230d8 | 0x30edc | 0x2f8dc | 0xee |
WriteFile | 0x0 | 0x4230dc | 0x30ee0 | 0x2f8e0 | 0x525 |
InitializeCriticalSectionAndSpinCount | 0x0 | 0x4230e0 | 0x30ee4 | 0x2f8e4 | 0x2e3 |
LeaveCriticalSection | 0x0 | 0x4230e4 | 0x30ee8 | 0x2f8e8 | 0x339 |
SetFilePointer | 0x0 | 0x4230e8 | 0x30eec | 0x2f8ec | 0x466 |
DeleteCriticalSection | 0x0 | 0x4230ec | 0x30ef0 | 0x2f8f0 | 0xd1 |
lstrcpynA | 0x0 | 0x4230f0 | 0x30ef4 | 0x2f8f4 | 0x54a |
GetComputerNameW | 0x0 | 0x4230f4 | 0x30ef8 | 0x2f8f8 | 0x18f |
GetSystemTime | 0x0 | 0x4230f8 | 0x30efc | 0x2f8fc | 0x277 |
DecodePointer | 0x0 | 0x4230fc | 0x30f00 | 0x2f900 | 0xca |
WriteConsoleW | 0x0 | 0x423100 | 0x30f04 | 0x2f904 | 0x524 |
GetConsoleMode | 0x0 | 0x423104 | 0x30f08 | 0x2f908 | 0x1ac |
InterlockedPushEntrySList | 0x0 | 0x423108 | 0x30f0c | 0x2f90c | 0x2f1 |
CreateFileMappingW | 0x0 | 0x42310c | 0x30f10 | 0x2f910 | 0x8c |
CloseHandle | 0x0 | 0x423110 | 0x30f14 | 0x2f914 | 0x52 |
InterlockedFlushSList | 0x0 | 0x423114 | 0x30f18 | 0x2f918 | 0x2ee |
UnmapViewOfFile | 0x0 | 0x423118 | 0x30f1c | 0x2f91c | 0x4d6 |
CreateFileW | 0x0 | 0x42311c | 0x30f20 | 0x2f920 | 0x8f |
lstrlenA | 0x0 | 0x423120 | 0x30f24 | 0x2f924 | 0x54d |
lstrcpynW | 0x0 | 0x423124 | 0x30f28 | 0x2f928 | 0x54b |
lstrlenW | 0x0 | 0x423128 | 0x30f2c | 0x2f92c | 0x54e |
ReadFile | 0x0 | 0x42312c | 0x30f30 | 0x2f930 | 0x3c0 |
QueryPerformanceCounter | 0x0 | 0x423130 | 0x30f34 | 0x2f934 | 0x3a7 |
GetLogicalDriveStringsW | 0x0 | 0x423134 | 0x30f38 | 0x2f938 | 0x208 |
Sleep | 0x0 | 0x423138 | 0x30f3c | 0x2f93c | 0x4b2 |
GetConsoleCP | 0x0 | 0x42313c | 0x30f40 | 0x2f940 | 0x19a |
FlushFileBuffers | 0x0 | 0x423140 | 0x30f44 | 0x2f944 | 0x157 |
GetProcessHeap | 0x0 | 0x423144 | 0x30f48 | 0x2f948 | 0x24a |
SetStdHandle | 0x0 | 0x423148 | 0x30f4c | 0x2f94c | 0x487 |
SetEnvironmentVariableA | 0x0 | 0x42314c | 0x30f50 | 0x2f950 | 0x456 |
FreeEnvironmentStringsW | 0x0 | 0x423150 | 0x30f54 | 0x2f954 | 0x161 |
GetCurrentProcessId | 0x0 | 0x423154 | 0x30f58 | 0x2f958 | 0x1c1 |
GetCurrentThreadId | 0x0 | 0x423158 | 0x30f5c | 0x2f95c | 0x1c5 |
GetSystemTimeAsFileTime | 0x0 | 0x42315c | 0x30f60 | 0x2f960 | 0x279 |
IsDebuggerPresent | 0x0 | 0x423160 | 0x30f64 | 0x2f964 | 0x300 |
UnhandledExceptionFilter | 0x0 | 0x423164 | 0x30f68 | 0x2f968 | 0x4d3 |
SetUnhandledExceptionFilter | 0x0 | 0x423168 | 0x30f6c | 0x2f96c | 0x4a5 |
GetStartupInfoW | 0x0 | 0x42316c | 0x30f70 | 0x2f970 | 0x263 |
IsProcessorFeaturePresent | 0x0 | 0x423170 | 0x30f74 | 0x2f974 | 0x304 |
GetModuleHandleW | 0x0 | 0x423174 | 0x30f78 | 0x2f978 | 0x218 |
TerminateProcess | 0x0 | 0x423178 | 0x30f7c | 0x2f97c | 0x4c0 |
RtlUnwind | 0x0 | 0x42317c | 0x30f80 | 0x2f980 | 0x418 |
SetLastError | 0x0 | 0x423180 | 0x30f84 | 0x2f984 | 0x473 |
TlsAlloc | 0x0 | 0x423184 | 0x30f88 | 0x2f988 | 0x4c5 |
TlsGetValue | 0x0 | 0x423188 | 0x30f8c | 0x2f98c | 0x4c7 |
TlsSetValue | 0x0 | 0x42318c | 0x30f90 | 0x2f990 | 0x4c8 |
TlsFree | 0x0 | 0x423190 | 0x30f94 | 0x2f994 | 0x4c6 |
FreeLibrary | 0x0 | 0x423194 | 0x30f98 | 0x2f998 | 0x162 |
GetProcAddress | 0x0 | 0x423198 | 0x30f9c | 0x2f99c | 0x245 |
LoadLibraryExW | 0x0 | 0x42319c | 0x30fa0 | 0x2f9a0 | 0x33e |
RaiseException | 0x0 | 0x4231a0 | 0x30fa4 | 0x2f9a4 | 0x3b1 |
GetModuleHandleExW | 0x0 | 0x4231a4 | 0x30fa8 | 0x2f9a8 | 0x217 |
GetStdHandle | 0x0 | 0x4231a8 | 0x30fac | 0x2f9ac | 0x264 |
GetModuleFileNameA | 0x0 | 0x4231ac | 0x30fb0 | 0x2f9b0 | 0x213 |
MultiByteToWideChar | 0x0 | 0x4231b0 | 0x30fb4 | 0x2f9b4 | 0x367 |
WideCharToMultiByte | 0x0 | 0x4231b4 | 0x30fb8 | 0x2f9b8 | 0x511 |
ExitProcess | 0x0 | 0x4231b8 | 0x30fbc | 0x2f9bc | 0x119 |
GetACP | 0x0 | 0x4231bc | 0x30fc0 | 0x2f9c0 | 0x168 |
HeapAlloc | 0x0 | 0x4231c0 | 0x30fc4 | 0x2f9c4 | 0x2cb |
HeapFree | 0x0 | 0x4231c4 | 0x30fc8 | 0x2f9c8 | 0x2cf |
GetFileType | 0x0 | 0x4231c8 | 0x30fcc | 0x2f9cc | 0x1f3 |
CompareStringW | 0x0 | 0x4231cc | 0x30fd0 | 0x2f9d0 | 0x64 |
LCMapStringW | 0x0 | 0x4231d0 | 0x30fd4 | 0x2f9d4 | 0x32d |
HeapReAlloc | 0x0 | 0x4231d4 | 0x30fd8 | 0x2f9d8 | 0x2d2 |
HeapSize | 0x0 | 0x4231d8 | 0x30fdc | 0x2f9dc | 0x2d4 |
GetStringTypeW | 0x0 | 0x4231dc | 0x30fe0 | 0x2f9e0 | 0x269 |
CreateProcessA | 0x0 | 0x4231e0 | 0x30fe4 | 0x2f9e4 | 0xa4 |
GetFileAttributesExW | 0x0 | 0x4231e4 | 0x30fe8 | 0x2f9e8 | 0x1e7 |
FindFirstFileExA | 0x0 | 0x4231e8 | 0x30fec | 0x2f9ec | 0x133 |
FindNextFileA | 0x0 | 0x4231ec | 0x30ff0 | 0x2f9f0 | 0x143 |
IsValidCodePage | 0x0 | 0x4231f0 | 0x30ff4 | 0x2f9f4 | 0x30a |
GetOEMCP | 0x0 | 0x4231f4 | 0x30ff8 | 0x2f9f8 | 0x237 |
GetCPInfo | 0x0 | 0x4231f8 | 0x30ffc | 0x2f9fc | 0x172 |
GetCommandLineA | 0x0 | 0x4231fc | 0x31000 | 0x2fa00 | 0x186 |
GetEnvironmentStringsW | 0x0 | 0x423200 | 0x31004 | 0x2fa04 | 0x1da |
VirtualQuery | 0x0 | 0x423204 | 0x31008 | 0x2fa08 | 0x4f1 |
USER32.dll (2)
»
API Name | Ordinal | IAT Address | Thunk RVA | Thunk Offset | Hint |
---|---|---|---|---|---|
wsprintfW | 0x0 | 0x42322c | 0x31030 | 0x2fa30 | 0x333 |
wsprintfA | 0x0 | 0x423230 | 0x31034 | 0x2fa34 | 0x332 |
ADVAPI32.dll (15)
»
API Name | Ordinal | IAT Address | Thunk RVA | Thunk Offset | Hint |
---|---|---|---|---|---|
RegCloseKey | 0x0 | 0x423000 | 0x30e04 | 0x2f804 | 0x230 |
RegSetValueExW | 0x0 | 0x423004 | 0x30e08 | 0x2f808 | 0x27e |
RegCreateKeyW | 0x0 | 0x423008 | 0x30e0c | 0x2f80c | 0x23c |
RegDeleteValueW | 0x0 | 0x42300c | 0x30e10 | 0x2f810 | 0x248 |
RegOpenKeyW | 0x0 | 0x423010 | 0x30e14 | 0x2f814 | 0x264 |
LookupPrivilegeValueW | 0x0 | 0x423014 | 0x30e18 | 0x2f818 | 0x197 |
AdjustTokenPrivileges | 0x0 | 0x423018 | 0x30e1c | 0x2f81c | 0x1f |
OpenProcessToken | 0x0 | 0x42301c | 0x30e20 | 0x2f820 | 0x1f7 |
AllocateAndInitializeSid | 0x0 | 0x423020 | 0x30e24 | 0x2f824 | 0x20 |
SetEntriesInAclW | 0x0 | 0x423024 | 0x30e28 | 0x2f828 | 0x2a6 |
SetNamedSecurityInfoW | 0x0 | 0x423028 | 0x30e2c | 0x2f82c | 0x2b1 |
FreeSid | 0x0 | 0x42302c | 0x30e30 | 0x2f830 | 0x120 |
CryptAcquireContextW | 0x0 | 0x423030 | 0x30e34 | 0x2f834 | 0xb1 |
CryptGenRandom | 0x0 | 0x423034 | 0x30e38 | 0x2f838 | 0xc1 |
CryptReleaseContext | 0x0 | 0x423038 | 0x30e3c | 0x2f83c | 0xcb |
SHELL32.dll (3)
»
API Name | Ordinal | IAT Address | Thunk RVA | Thunk Offset | Hint |
---|---|---|---|---|---|
SHChangeNotify | 0x0 | 0x42321c | 0x31020 | 0x2fa20 | 0x7f |
CommandLineToArgvW | 0x0 | 0x423220 | 0x31024 | 0x2fa24 | 0x6 |
ShellExecuteExW | 0x0 | 0x423224 | 0x31028 | 0x2fa28 | 0x121 |
MPR.dll (3)
»
API Name | Ordinal | IAT Address | Thunk RVA | Thunk Offset | Hint |
---|---|---|---|---|---|
WNetCloseEnum | 0x0 | 0x42320c | 0x31010 | 0x2fa10 | 0x10 |
WNetEnumResourceW | 0x0 | 0x423210 | 0x31014 | 0x2fa14 | 0x1c |
WNetOpenEnumW | 0x0 | 0x423214 | 0x31018 | 0x2fa18 | 0x3d |
Memory Dumps (2)
»
Name | Process ID | Start VA | End VA | Dump Reason | PE Rebuild | Bitness | Entry Points | AV | YARA | Actions |
---|---|---|---|---|---|---|---|---|---|---|
cusersgustavodesktopathena865.exe | 1 | 0x00120000 | 0x0016CFFF | Relevant Image | - | 32-bit | - |
![]() |
![]() |
...
|
cusersgustavodesktopathena865.exe | 1 | 0x00120000 | 0x0016CFFF | Final Dump | - | 32-bit | - |
![]() |
![]() |
...
|
Local AV Matches (1)
»
Threat Name | Severity |
---|---|
DeepScan:Generic.Ransom.GlobeImposter.C746B17C |
Malicious
|
C:\Program Files\Microsoft Office\Stationery\HOW TO BACK YOUR FILES.exe | Dropped File | Binary |
Malicious
|
...
|
»
PE Information
»
Image Base | 0x400000 |
Entry Point | 0x40108c |
Size Of Code | 0xa00 |
Size Of Initialized Data | 0x6200 |
File Type | FileType.executable |
Subsystem | Subsystem.windows_gui |
Machine Type | MachineType.i386 |
Compile Timestamp | 2019-09-06 13:00:52+00:00 |
Sections (5)
»
Name | Virtual Address | Virtual Size | Raw Data Size | Raw Data Offset | Flags | Entropy |
---|---|---|---|---|---|---|
.text | 0x401000 | 0x97a | 0xa00 | 0x400 | IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ | 6.19 |
.rdata | 0x402000 | 0x5a84 | 0x5c00 | 0xe00 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ | 7.86 |
.data | 0x408000 | 0x1fd | 0x200 | 0x6a00 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE | 2.08 |
.rsrc | 0x409000 | 0x1e0 | 0x200 | 0x6c00 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ | 4.7 |
.reloc | 0x40a000 | 0x128 | 0x200 | 0x6e00 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_DISCARDABLE, IMAGE_SCN_MEM_READ | 4.07 |
Imports (4)
»
KERNEL32.dll (14)
»
API Name | Ordinal | IAT Address | Thunk RVA | Thunk Offset | Hint |
---|---|---|---|---|---|
lstrlenW | 0x0 | 0x402000 | 0x77b0 | 0x65b0 | 0x54e |
lstrlenA | 0x0 | 0x402004 | 0x77b4 | 0x65b4 | 0x54d |
MultiByteToWideChar | 0x0 | 0x402008 | 0x77b8 | 0x65b8 | 0x367 |
lstrcatW | 0x0 | 0x40200c | 0x77bc | 0x65bc | 0x53f |
GlobalAlloc | 0x0 | 0x402010 | 0x77c0 | 0x65c0 | 0x2b3 |
GlobalFree | 0x0 | 0x402014 | 0x77c4 | 0x65c4 | 0x2ba |
lstrcpyW | 0x0 | 0x402018 | 0x77c8 | 0x65c8 | 0x548 |
HeapAlloc | 0x0 | 0x40201c | 0x77cc | 0x65cc | 0x2cb |
GetProcessHeap | 0x0 | 0x402020 | 0x77d0 | 0x65d0 | 0x24a |
HeapFree | 0x0 | 0x402024 | 0x77d4 | 0x65d4 | 0x2cf |
ExitProcess | 0x0 | 0x402028 | 0x77d8 | 0x65d8 | 0x119 |
GetModuleHandleA | 0x0 | 0x40202c | 0x77dc | 0x65dc | 0x215 |
GetStartupInfoA | 0x0 | 0x402030 | 0x77e0 | 0x65e0 | 0x262 |
GetCommandLineA | 0x0 | 0x402034 | 0x77e4 | 0x65e4 | 0x186 |
USER32.dll (13)
»
API Name | Ordinal | IAT Address | Thunk RVA | Thunk Offset | Hint |
---|---|---|---|---|---|
RegisterClassExW | 0x0 | 0x402058 | 0x7808 | 0x6608 | 0x24d |
GetSystemMetrics | 0x0 | 0x40205c | 0x780c | 0x660c | 0x17e |
CreateWindowExW | 0x0 | 0x402060 | 0x7810 | 0x6610 | 0x6e |
DefWindowProcW | 0x0 | 0x402064 | 0x7814 | 0x6614 | 0x9c |
GetMessageW | 0x0 | 0x402068 | 0x7818 | 0x6618 | 0x15d |
GetWindowLongW | 0x0 | 0x40206c | 0x781c | 0x661c | 0x196 |
UpdateWindow | 0x0 | 0x402070 | 0x7820 | 0x6620 | 0x311 |
PostQuitMessage | 0x0 | 0x402074 | 0x7824 | 0x6624 | 0x237 |
GetClientRect | 0x0 | 0x402078 | 0x7828 | 0x6628 | 0x114 |
DispatchMessageW | 0x0 | 0x40207c | 0x782c | 0x662c | 0xaf |
SetWindowLongW | 0x0 | 0x402080 | 0x7830 | 0x6630 | 0x2c4 |
TranslateMessage | 0x0 | 0x402084 | 0x7834 | 0x6634 | 0x2fc |
ShowWindow | 0x0 | 0x402088 | 0x7838 | 0x6638 | 0x2df |
ole32.dll (4)
»
API Name | Ordinal | IAT Address | Thunk RVA | Thunk Offset | Hint |
---|---|---|---|---|---|
OleSetContainedObject | 0x0 | 0x402090 | 0x7840 | 0x6640 | 0x146 |
OleUninitialize | 0x0 | 0x402094 | 0x7844 | 0x6644 | 0x149 |
OleInitialize | 0x0 | 0x402098 | 0x7848 | 0x6648 | 0x132 |
OleCreate | 0x0 | 0x40209c | 0x784c | 0x664c | 0x119 |
OLEAUT32.dll (6)
»
API Name | Ordinal | IAT Address | Thunk RVA | Thunk Offset | Hint |
---|---|---|---|---|---|
VariantInit | 0x8 | 0x40203c | 0x77ec | 0x65ec | - |
SysAllocString | 0x2 | 0x402040 | 0x77f0 | 0x65f0 | - |
SafeArrayCreate | 0xf | 0x402044 | 0x77f4 | 0x65f4 | - |
SafeArrayAccessData | 0x17 | 0x402048 | 0x77f8 | 0x65f8 | - |
VariantClear | 0x9 | 0x40204c | 0x77fc | 0x65fc | - |
SafeArrayDestroy | 0x10 | 0x402050 | 0x7800 | 0x6600 | - |
Local AV Matches (1)
»
Threat Name | Severity |
---|---|
Gen:Trojan.Heur.RP.buW@aOHYwkdi |
Malicious
|
c:\users\5p5nrgjn0js halpmcxz\ntuser.ini.athena865 | Modified File | Stream |
Unknown
|
...
|
»
c:\users\default\ntuser.dat.log.athena865 | Modified File | Stream |
Unknown
|
...
|
»
c:\users\default\ntuser.dat.log1.athena865 | Modified File | Stream |
Unknown
|
...
|
»
c:\users\default\ntuser.dat{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.tm.blf.athena865 | Modified File | Stream |
Unknown
|
...
|
»
c:\users\default\ntuser.dat{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.tmcontainer00000000000000000002.regtrans-ms.athena865 | Modified File | Stream |
Unknown
|
...
|
»
c:\users\default\ntuser.ini.athena865 | Modified File | Stream |
Unknown
|
...
|
»
c:\users\public\desktop.ini.athena865 | Modified File | Stream |
Unknown
|
...
|
»
C:\Program Files\desktop.ini.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\desktop.ini.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\System Volume Information\Syscache.hve.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\System Volume Information\Syscache.hve.LOG1.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\System Volume Information\tracking.log.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\$Recycle.Bin\S-1-5-21-3388679973-3930757225-3770151564-1000\desktop.ini.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\audiodepthconverter.ax.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\bod_r.TTF.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\directshowtap.ax.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\Eurosti.TTF.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\fieldswitch.ax.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\offset.ax.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\OmdBase.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\OmdProject.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\Pipeline.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\PipeTran.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\rtstreamsink.ax.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\rtstreamsource.ax.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\SecretST.TTF.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\soniccolorconverter.ax.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\sonicsptransform.ax.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\WMM2CLIP.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Internet Explorer\hmmapi.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Internet Explorer\ie8props.propdesc.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Internet Explorer\iecompat.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Internet Explorer\iedvtool.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Internet Explorer\ieinstal.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Internet Explorer\ielowutil.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Internet Explorer\iexplore.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Internet Explorer\jsdbgui.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Internet Explorer\jsdebuggeride.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Internet Explorer\JSProfilerCore.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Internet Explorer\jsprofilerui.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Internet Explorer\msdbg2.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Internet Explorer\sqmapi.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Defender\MpAsDesc.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Defender\MpClient.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Defender\MpCmdRun.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Defender\MpCommu.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Defender\MpEvMsg.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Defender\MpRTP.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Defender\MpSvc.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Defender\MSASCui.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Defender\MsMpCom.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Defender\MsMpLics.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Defender\MsMpRes.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Journal\InkSeg.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Journal\jnwdui.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Journal\jnwmon.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Journal\jnwppr.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Journal\Journal.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Journal\MSPVWCTL.DLL.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Journal\NBDoc.DLL.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Journal\NBMapTIP.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Journal\PDIALOG.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Mail\MSOERES.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Mail\oeimport.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Mail\wab.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Mail\wabfind.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Mail\wabimp.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Mail\WinMail.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Media Player\mpvis.DLL.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Media Player\wmlaunch.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Media Player\wmpconfig.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Media Player\WMPDMC.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Media Player\WMPDMCCore.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Media Player\wmplayer.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Media Player\WMPMediaSharing.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Media Player\wmpnetwk.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Media Player\wmpnscfg.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Media Player\wmpnssci.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Media Player\WMPNSSUI.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Media Player\wmprph.exe.Athena865 | Dropped File | Audio |
Unknown
|
...
|
»
C:\Program Files\Windows Media Player\wmpshare.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Media Player\WMPSideShowGadget.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Photo Viewer\ImagingDevices.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Photo Viewer\ImagingEngine.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Photo Viewer\PhotoAcq.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Photo Viewer\PhotoBase.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Photo Viewer\PhotoViewer.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Portable Devices\sqmapi.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Sidebar\sbdrop.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Sidebar\settings.ini.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Sidebar\sidebar.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Windows Sidebar\wlsrvc.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Internet Explorer\ExtExport.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Internet Explorer\ie8props.propdesc.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Internet Explorer\iedvtool.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Internet Explorer\ieinstal.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Internet Explorer\ielowutil.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Internet Explorer\ieproxy.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Internet Explorer\IEShims.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Internet Explorer\iexplore.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Internet Explorer\jsdebuggeride.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Internet Explorer\JSProfilerCore.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Internet Explorer\jsprofilerui.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Internet Explorer\msdbg2.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Internet Explorer\pdm.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Internet Explorer\sqmapi.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\AccessibleMarshal.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\breakpadinjector.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\crashreporter.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\crashreporter.ini.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\D3DCompiler_43.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\dependentlibs.list.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\firefox.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\freebl3.chk.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\freebl3.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\gkmedias.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\install.log.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\libEGL.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\libGLESv2.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\maintenanceservice.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\maintenanceservice_installer.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\mozjs.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\msvcp100.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\msvcr100.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\nss3.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\nssckbi.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\nssdbm3.chk.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\nssdbm3.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\omni.ja.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\platform.ini.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\plugin-hang-ui.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\precomplete.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\removed-files.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\softokn3.chk.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\softokn3.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\update-settings.ini.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\updater.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\webapp-uninstaller.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\webapprt-stub.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\xul.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Users\5p5NrGJn0jS HALPmcxz\Desktop\ids.txt | Dropped File | Text |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Maintenance Service\Uninstall.exe.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Mozilla Maintenance Service\updater.ini.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Windows Defender\MpAsDesc.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Windows Defender\MpClient.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files (x86)\Windows Defender\MsMpLics.dll.Athena865 | Dropped File | Stream |
Unknown
|
...
|
»
c:\users\default\ntuser.dat{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.tmcontainer00000000000000000001.regtrans-ms.athena865 | Modified File | Stream |
Not Queried
|
...
|
»
C:\Program Files\DVD Maker\DVDMaker.exe.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Internet Explorer\ieproxy.dll.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Internet Explorer\IEShims.dll.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Internet Explorer\pdm.dll.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Windows Defender\MpOAV.dll.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Windows Journal\JNTFiltr.dll.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Windows Journal\JNWDRV.dll.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Windows Mail\msoe.dll.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Windows Mail\wabmig.exe.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Windows Media Player\setup_wm.exe.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Windows Media Player\wmpenc.exe.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files (x86)\Internet Explorer\hmmapi.dll.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files (x86)\Internet Explorer\iecompat.dll.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files (x86)\Internet Explorer\jsdbgui.dll.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\application.ini.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\mozglue.dll.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files (x86)\Mozilla Firefox\updater.ini.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files (x86)\Windows Defender\MpOAV.dll.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files (x86)\Windows Mail\msoe.dll.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files (x86)\Windows Mail\MSOERES.dll.Athena865 | Dropped File | Stream |
Not Queried
|
...
|
»