Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | Jan. 24, 2024, 1:26 p.m. | Jan. 24, 2024, 1:27 p.m. |
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0?$CLockableFlexArray@VCStaticCritSec@@@@QEAA@$$QEAV0@@Z
2548-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0?$CLockableFlexArray@VCStaticCritSec@@@@QEAA@$$QEAV0@@Z
2960
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0?$CLockableFlexArray@VCStaticCritSec@@@@QEAA@AEAV0@@Z
2632-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0?$CLockableFlexArray@VCStaticCritSec@@@@QEAA@AEAV0@@Z
2952
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0?$CLockableFlexArray@VCStaticCritSec@@@@QEAA@XZ
2724-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0?$CLockableFlexArray@VCStaticCritSec@@@@QEAA@XZ
812
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0?$SZLess@PEBG@@QEAA@AEBU0@@Z
2812-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0?$SZLess@PEBG@@QEAA@AEBU0@@Z
192
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0?$SZLess@PEBG@@QEAA@XZ
2908-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0?$SZLess@PEBG@@QEAA@XZ
2256
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0C9XAce@@QEAA@AEBV0@@Z
1216-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0C9XAce@@QEAA@AEBV0@@Z
2268
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0C9XAce@@QEAA@KKKPEAG@Z
2188-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0C9XAce@@QEAA@KKKPEAG@Z
2684
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0C9XAce@@QEAA@XZ
2628-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0C9XAce@@QEAA@XZ
2868
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CAbstractQl1Parser@@QEAA@AEBV0@@Z
2988-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CAbstractQl1Parser@@QEAA@AEBV0@@Z
2588
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CAbstractQl1Parser@@QEAA@PEAVCGenLexSource@@@Z
1400-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CAbstractQl1Parser@@QEAA@PEAVCGenLexSource@@@Z
2856
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CArena@@QEAA@$$QEAV0@@Z
2452-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CArena@@QEAA@$$QEAV0@@Z
2112
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CArena@@QEAA@AEBV0@@Z
2772-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CArena@@QEAA@AEBV0@@Z
2652
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CArena@@QEAA@XZ
908-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CArena@@QEAA@XZ
3068
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CBaseAce@@QEAA@AEBV0@@Z
2660-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CBaseAce@@QEAA@AEBV0@@Z
2896
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CBaseAce@@QEAA@XZ
2776-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CBaseAce@@QEAA@XZ
3200
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CBasicUnloadInstruction@@IEAA@XZ
3180-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CBasicUnloadInstruction@@IEAA@XZ
3324
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CBasicUnloadInstruction@@QEAA@AEBV0@@Z
3356-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CBasicUnloadInstruction@@QEAA@AEBV0@@Z
3552
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CBasicUnloadInstruction@@QEAA@VCWbemInterval@@@Z
3528-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CBasicUnloadInstruction@@QEAA@VCWbemInterval@@@Z
3708
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CBuffer@@QEAA@AEBV0@@Z
3656-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CBuffer@@QEAA@AEBV0@@Z
3860
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CBuffer@@QEAA@PEAEKH@Z
3788-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CBuffer@@QEAA@PEAEKH@Z
3972
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CCheckedInCritSec@@QEAA@PEAVCCritSec@@@Z
3920-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CCheckedInCritSec@@QEAA@PEAVCCritSec@@@Z
3112
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CCircularQueue@@QEAA@XZ
4060-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CCircularQueue@@QEAA@XZ
3228
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CClientOpsNode@@QEAA@XZ
3352-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CClientOpsNode@@QEAA@XZ
3496
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CContainerControl@@QEAA@$$QEAV0@@Z
2384-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CContainerControl@@QEAA@$$QEAV0@@Z
3984
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CContainerControl@@QEAA@AEBV0@@Z
3832-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CContainerControl@@QEAA@AEBV0@@Z
4088
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CContainerControl@@QEAA@PEAUIUnknown@@@Z
2992-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CContainerControl@@QEAA@PEAUIUnknown@@@Z
3828
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CCritSec@@QEAA@XZ
3304-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CCritSec@@QEAA@XZ
3960
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CDMTFParser@@QEAA@PEBG@Z
3184-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CDMTFParser@@QEAA@PEBG@Z
2104
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CDatePart@@QEAA@XZ
3348-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CDatePart@@QEAA@XZ
2064
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CDateTimeParser@@IEAA@XZ
3124-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CDateTimeParser@@IEAA@XZ
4080
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CDateTimeParser@@QEAA@PEBG@Z
3580-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CDateTimeParser@@QEAA@PEBG@Z
3784
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CEnterWbemCriticalSection@@QEAA@PEAVCWbemCriticalSection@@K@Z
3472-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CEnterWbemCriticalSection@@QEAA@PEAVCWbemCriticalSection@@K@Z
4184
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CEventLog@@QEAA@AEBV0@@Z
4256-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CEventLog@@QEAA@AEBV0@@Z
4368
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CEventLog@@QEAA@PEBGAEBU_GUID@@K@Z
4360-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CEventLog@@QEAA@PEBGAEBU_GUID@@K@Z
4604
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CEventLogRecord@@QEAA@AEAV0@@Z
4540-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CEventLogRecord@@QEAA@AEAV0@@Z
4712
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CEventLogRecord@@QEAA@GAEBU_EVENT_DESCRIPTOR@@VCInsertionString@@111111111@Z
4680-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CEventLogRecord@@QEAA@GAEBU_EVENT_DESCRIPTOR@@VCInsertionString@@111111111@Z
4956
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CExecQueue@@QEAA@AEAV0@@Z
4836-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CExecQueue@@QEAA@AEAV0@@Z
4252
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CExecQueue@@QEAA@XZ
4932-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CExecQueue@@QEAA@XZ
4100
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CExecRequest@@QEAA@AEBV0@@Z
5068-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CExecRequest@@QEAA@AEBV0@@Z
3292
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CExecRequest@@QEAA@XZ
3460-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CExecRequest@@QEAA@XZ
4640
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CFlexArray@@QEAA@AEAV0@@Z
4520-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CFlexArray@@QEAA@AEAV0@@Z
4756
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CFlexArray@@QEAA@HH@Z
4600-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CFlexArray@@QEAA@HH@Z
3516
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CFlexQueue@@QEAA@H@Z
4984-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CFlexQueue@@QEAA@H@Z
4236
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CHaltable@@QEAA@AEBV0@@Z
3308-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CHaltable@@QEAA@AEBV0@@Z
3232
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CHaltable@@QEAA@XZ
4656-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CHaltable@@QEAA@XZ
5008
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CHex@@QEAA@J@Z
4112-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CHex@@QEAA@J@Z
232
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CIdentitySecurity@@QEAA@AEBV0@@Z
4440-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CIdentitySecurity@@QEAA@AEBV0@@Z
4988
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CIdentitySecurity@@QEAA@_N@Z
4920-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CIdentitySecurity@@QEAA@_N@Z
5072
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CIdentityTest@@QEAA@AEBV0@@Z
4864-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CIdentityTest@@QEAA@AEBV0@@Z
4372
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CIdentityTest@@QEAA@PEAVCTimerInstruction@@@Z
4108-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CIdentityTest@@QEAA@PEAVCTimerInstruction@@@Z
536
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInCritSec@@QEAA@PEAU_RTL_CRITICAL_SECTION@@@Z
1792-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInCritSec@@QEAA@PEAU_RTL_CRITICAL_SECTION@@@Z
4992
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInsertionString@@QEAA@$$QEAV0@@Z
3912-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInsertionString@@QEAA@$$QEAV0@@Z
4884
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInsertionString@@QEAA@AEBV0@@Z
1560-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInsertionString@@QEAA@AEBV0@@Z
5124
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInsertionString@@QEAA@J@Z
5184-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInsertionString@@QEAA@J@Z
5376
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInsertionString@@QEAA@PEBD@Z
5368-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInsertionString@@QEAA@PEBD@Z
5572
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInsertionString@@QEAA@PEBG@Z
5560-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInsertionString@@QEAA@PEBG@Z
5760
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInsertionString@@QEAA@VCHex@@@Z
5696-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInsertionString@@QEAA@VCHex@@@Z
5904
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInsertionString@@QEAA@XZ
5816-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInsertionString@@QEAA@XZ
6028
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInstructionQueue@@QEAA@XZ
5944-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInstructionQueue@@QEAA@XZ
6100
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInstructionTest@@QEAA@$$QEAV0@@Z
5140-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInstructionTest@@QEAA@$$QEAV0@@Z
5412
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInstructionTest@@QEAA@AEBV0@@Z
5408-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInstructionTest@@QEAA@AEBV0@@Z
5688
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInstructionTest@@QEAA@XZ
5656-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CInstructionTest@@QEAA@XZ
5792
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CLifeControl@@QEAA@$$QEAV0@@Z
5860-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CLifeControl@@QEAA@$$QEAV0@@Z
5492
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CLifeControl@@QEAA@AEBV0@@Z
5996-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CLifeControl@@QEAA@AEBV0@@Z
5424
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CLifeControl@@QEAA@XZ
6076-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CLifeControl@@QEAA@XZ
5724
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CLike@@QEAA@AEBV0@@Z
1780-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CLike@@QEAA@AEBV0@@Z
6080
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CLike@@QEAA@PEBGG@Z
6052-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CLike@@QEAA@PEBGG@Z
5188
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CLike@@QEAA@XZ
5600-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CLike@@QEAA@XZ
6092
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CLimitControl@@QEAA@AEBV0@@Z
5552 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\edca71eda8650a2c591c37c780b6a0c5.exe.dll,??0CMRCICompression@@QEAA@XZ
5232
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
IP Address | Status | Action |
---|---|---|
No hosts contacted. |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
section | _RDATA |
section | .text0 |
section | {u'size_of_data': u'0x00001600', u'virtual_address': u'0x0005f000', u'entropy': 7.612534918548779, u'name': u'.pdata', u'virtual_size': u'0x00001440'} | entropy | 7.61253491855 | description | A section with a high entropy has been found | |||||||||
section | {u'size_of_data': u'0x00151200', u'virtual_address': u'0x00062000', u'entropy': 7.182736047377162, u'name': u'.text0', u'virtual_size': u'0x001511f8'} | entropy | 7.18273604738 | description | A section with a high entropy has been found | |||||||||
entropy | 0.786295005807 | description | Overall entropy of this PE file is high |
Bkav | W64.AIDetectMalware |
Lionic | Trojan.Win32.Mint.a!c |
Cynet | Malicious (score: 100) |
CAT-QuickHeal | TrojanDownloader.Win64 |
Skyhigh | BehavesLike.Win64.Trojan.tc |
ALYac | Backdoor.Agent.status |
Cylance | unsafe |
VIPRE | Trojan.GenericKD.71282323 |
Sangfor | Downloader.Win64.Mint.Vtfm |
CrowdStrike | win/malicious_confidence_100% (W) |
BitDefender | Trojan.GenericKD.71282323 |
K7GW | Trojan ( 005b0ce31 ) |
K7AntiVirus | Trojan ( 005b0ce31 ) |
Arcabit | Trojan.Generic.D43FAE93 |
Symantec | Trojan Horse |
ESET-NOD32 | a variant of Win64/Agent.DIZ |
McAfee | Artemis!EDCA71EDA865 |
Avast | Win64:DropperX-gen [Drp] |
Kaspersky | Trojan-Downloader.Win64.Mint.ava |
Alibaba | TrojanDownloader:Win64/DropperX.92f32ac4 |
MicroWorld-eScan | Trojan.GenericKD.71282323 |
Rising | Downloader.Mint!8.15E62 (CLOUD) |
Emsisoft | Trojan.GenericKD.71282323 (B) |
F-Secure | Trojan.TR/Agent.tqvcs |
FireEye | Generic.mg.edca71eda8650a2c |
Sophos | Mal/Generic-S |
Ikarus | Trojan.Win64.Agent |
Webroot | W32.Trojan.Gen |
Detected | |
Avira | TR/Agent.tqvcs |
Antiy-AVL | Trojan[Downloader]/Win64.Mint |
Kingsoft | Win32.Troj.Unknown.a |
Xcitium | Malware@#dcmsrfxmrc5j |
Microsoft | Trojan:Win32/Phonzy.A!ml |
ViRobot | Trojan.Win.S.Agent.1764352 |
ZoneAlarm | Trojan-Downloader.Win64.Mint.ava |
GData | Win64.Trojan.Agent.VU8BS8 |
Varist | W64/ABRisk.XGQA-9302 |
AhnLab-V3 | Trojan/Win.LazarLoader.C5572843 |
DeepInstinct | MALICIOUS |
VBA32 | TrojanDownloader.Win64.Mint |
TrendMicro-HouseCall | TROJ_GEN.R002H0DAK24 |
Tencent | Malware.Win32.Gencirc.13fe361c |
MaxSecure | Trojan.Malware.300983.susgen |
Fortinet | W32/PossibleThreat |
AVG | Win64:DropperX-gen [Drp] |