1f0a6c92c237cbf344dedc841259f1da6b2d8742fcafb6926f746a48bbe0919f (SHA256)
%APPDATA%roamingmicrosoftwindowsstart menuprogramsstartup8gfg.exe
Created at 2019-01-04 14:38:00
Notifications (2/2)
The maximum number of reputation file hash requests (20 per analysis) was exceeded. As a result, the reputation status could not be queried for all file hashes. In order to get the reputation status for all file hashes, please increase the 'Max File Hash Requests' setting in the system configurations.
The operating system was rebooted during the analysis.
Severity | Category | Operation | Classification | |
---|---|---|---|---|
5/5
|
YARA | YARA match | Worm | |
|
||||
|
||||
|
||||
4/5
|
OS | Disables a crucial system service | - | |
|
||||
2/5
|
File System | Known suspicious file | Trojan | |
|
||||
1/5
|
Persistence | Installs system startup script or application | - | |
|
||||
1/5
|
Process | Creates process with hidden window | - | |
|
||||
|