Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6403_us | March 17, 2023, 8:12 p.m. | March 17, 2023, 8:13 p.m. |
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,APgLpQbnGOFg
2160-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,APgLpQbnGOFg
2436
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,AaVQghYMoDvlcIkoDhwOzm
2252-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,AaVQghYMoDvlcIkoDhwOzm
2500
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,AFxNCNDhpJUjLGSUBdyJAlirW
1516-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,AFxNCNDhpJUjLGSUBdyJAlirW
2556
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,AbGiqsZapYXQEJBQNrWj
2356-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,AbGiqsZapYXQEJBQNrWj
2700
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,AcIMOdUMWKfNaHjlQaJhaKDTvv
2536-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,AcIMOdUMWKfNaHjlQaJhaKDTvv
2780
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,AjmdNJiPaRsRtAqadcjQnlCAvv
2680-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,AjmdNJiPaRsRtAqadcjQnlCAvv
2916
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,AmhroJJBvgsvk
2860-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,AmhroJJBvgsvk
3052
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,BdxxRGs
3008-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,BdxxRGs
1884
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,BgAFcJi
2140-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,BgAFcJi
2532
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,BlIVCeEMUhTYUniUkHlJscB
2312-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,BlIVCeEMUhTYUniUkHlJscB
2800
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,BleGyOkIaepldUi
2568-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,BleGyOkIaepldUi
2956
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,BoepXZDDjhOrSbcuQncJB
2908-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,BoepXZDDjhOrSbcuQncJB
2116
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,BpzeaEnGa
2988-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,BpzeaEnGa
2380
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,BwCjRp
2284-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,BwCjRp
2932
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,CFIstcx
2464-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,CFIstcx
2924
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,CJsqCnAMpj
2792-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,CJsqCnAMpj
2172
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,CNPpdSVcuSzviIZhvCWSTfhZ
2796-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,CNPpdSVcuSzviIZhvCWSTfhZ
1540
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,COOXnQoQSaTGSpWIAaSzo
2616-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,COOXnQoQSaTGSpWIAaSzo
2992
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,CSUruSgGDFRVUvVHcTu
2904-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,CSUruSgGDFRVUvVHcTu
2712
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,CTCQAClHYzuiPWfwqyQYV
2428-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,CTCQAClHYzuiPWfwqyQYV
660
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,CeHgsCxOuoDTDrP
3048-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,CeHgsCxOuoDTDrP
1280
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,CpbkGyHjPVYKKbevwuabtfos
2552-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,CpbkGyHjPVYKKbevwuabtfos
2512
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,DIczDdVVlD
840-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,DIczDdVVlD
2720
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,DXtcAMkZFB
2376-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,DXtcAMkZFB
3156
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,DahoeOjCy
2104-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,DahoeOjCy
3284
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,DdmfNyLzGBEZdhjuVaLnGLAC
3220-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,DdmfNyLzGBEZdhjuVaLnGLAC
3504
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,DllRegisterServer
3352-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,DllRegisterServer
3640-
regsvr32.exe C:\Windows\system32\regsvr32.exe "C:\Windows\system32\KiDvwXijhmlT\pVqWysWfxs.dll"
4688
-
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,EDirxlezljynQMb
3452-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,EDirxlezljynQMb
3732
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,EJrkYuGqWKJxcbkEWFxWuj
3584-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,EJrkYuGqWKJxcbkEWFxWuj
3764
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,EOCBExEDvmpuiTSdISaFTJpbnD
3724-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,EOCBExEDvmpuiTSdISaFTJpbnD
3952
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,ERdHSxbrluXBmlg
3904-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,ERdHSxbrluXBmlg
3108
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,EWqRXzEYZJPwDvIiOC
4040-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,EWqRXzEYZJPwDvIiOC
3236
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,EbquiojgkxAH
3144-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,EbquiojgkxAH
3680
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,EjCrzK
3340-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,EjCrzK
3576
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,FSJZHjqXtVCcouB
3160-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,FSJZHjqXtVCcouB
3852
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,FmgnZSs
3776-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,FmgnZSs
1172-
explorer.exe C:\Windows\Explorer.EXE
1236
-
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,FwGMzFvmlRhqfdgYj
3968-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,FwGMzFvmlRhqfdgYj
3348
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GEakZdngEgkQEMUw
800-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GEakZdngEgkQEMUw
3424
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GNoduqRICMxxYLScjzRR
3628-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GNoduqRICMxxYLScjzRR
3820
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GIucseXHMrRrXPFeKw
3304-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GIucseXHMrRrXPFeKw
3996
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GTdkEFQtZIyifVPtMw
3892-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GTdkEFQtZIyifVPtMw
3616
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GUUIOYFVBkCRKKGPM
3276-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GUUIOYFVBkCRKKGPM
3924
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GabGyY
3496-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GabGyY
3976
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GlmIPNFEUxGfzccoGbGvt
3932-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GlmIPNFEUxGfzccoGbGvt
3836
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GqxGeRkjCFW
3544-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GqxGeRkjCFW
4016
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GrnXAG
3392-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GrnXAG
3464
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GsRUyGCvRhXYbBNdoXgMoD
3208-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GsRUyGCvRhXYbBNdoXgMoD
3956
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GyQSbTrVGUQXgOfZOvlwGGJOZ
2264-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,GyQSbTrVGUQXgOfZOvlwGGJOZ
4104
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,HCaLEQxCPhokiggZc
1932-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,HCaLEQxCPhokiggZc
4224
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,HETlXz
3552-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,HETlXz
4324
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,HRQNzHLCNHYjXY
4256-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,HRQNzHLCNHYjXY
4528
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,HbOXELXYC
4408-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,HbOXELXYC
4640
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,ISKZiApGwwqfPxyvDE
4508-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,ISKZiApGwwqfPxyvDE
4804
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,IcSKMpKalYoTBtNC
4664-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,IcSKMpKalYoTBtNC
4916
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,IprhqRmUjfLjdAvaVSyh
4772-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,IprhqRmUjfLjdAvaVSyh
4956
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,IsZFDjJYWWGraQqQsCIojuoPI
4908-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,IsZFDjJYWWGraQqQsCIojuoPI
4120
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,ItCdjvWTgdRQjqKEojXISZB
5092 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,JEVIhwFBZItxqXVhyUDXDtvW
4204 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,JEhcfsFJLI
4372 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,JhsVgkWwuNGjkVJBv
4496 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,JiXLWADK
4712 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,JkvQVFXLk
4456 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,JqTVuEmdOv
4792 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,JuvMSMMEvEF
4312 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,KDwYBJCicCZzRoOZ
4748 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,KLAfQsdsaKGHSrQOYTMpVzgK
3500 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,KSnZqpvzTNl
4176 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,KWfbJvRFrOV
4404 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,KcugiBMUcgjkCqc
948 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trxV9376.dll,KidKIFrYdPHAre
4264
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
IP Address | Status | Action |
---|---|---|
164.124.101.2 | Active | Moloch |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
resource name | TZU |
cmdline | C:\Windows\system32\regsvr32.exe "C:\Windows\system32\KiDvwXijhmlT\pVqWysWfxs.dll" |
section | {u'size_of_data': u'0x0002b200', u'virtual_address': u'0x00065000', u'entropy': 7.772240674390569, u'name': u'.rsrc', u'virtual_size': u'0x0002b060'} | entropy | 7.77224067439 | description | A section with a high entropy has been found | |||||||||
entropy | 0.307760927743 | description | Overall entropy of this PE file is high |
process | regsvr32.exe |
process | rundll32.exe |
Elastic | malicious (high confidence) |
McAfee | Artemis!C901C8089C5E |
K7AntiVirus | Trojan ( 0059b58d1 ) |
K7GW | Trojan ( 0059b58d1 ) |
CrowdStrike | win/malicious_confidence_90% (W) |
Symantec | ML.Attribute.HighConfidence |
Paloalto | generic.ml |
Kaspersky | UDS:DangerousObject.Multi.Generic |
Avast | FileRepMalware [Misc] |
McAfee-GW-Edition | Artemis!Trojan |
Microsoft | Trojan:Win64/Emotet.PAV!MTB |
Rising | Trojan.Emotet!8.B95 (CLOUD) |
MaxSecure | Trojan.Malware.121218.susgen |
AVG | FileRepMalware [Misc] |
file | C:\Windows\System32\KiDvwXijhmlT\pVqWysWfxs.dll:Zone.Identifier |