VTI SCORE: 100/100
Dynamic Analysis Report |
Classification: Ransomware, Wiper, Trojan |
34gfwhqjjgtuiudu.exe
Windows Exe (x86-32)
Created at 2019-10-04T07:39:00
Remarks
(0x200001d): The maximum number of extracted files was exceeded. Some files may be missing in the report.
(0x200001b): The maximum number of file reputation requests per analysis (150) was exceeded.
This is a filtered view
This list contains only the embedded files, downloaded files, and dropped files
Filters: |
There are no files for this filter
There are no files in this analysis
Filename | Category | Type | Severity | Actions |
---|
C:\Users\5p5NrGJn0jS HALPmcxz\Desktop\34gfwhqjjgtuiudu.exe | Sample File | Binary |
Blacklisted
|
...
|
»
File Reputation Information
»
Severity |
Blacklisted
|
First Seen | 2019-10-04 09:08 (UTC+2) |
Last Seen | 2019-10-04 09:22 (UTC+2) |
Names | Win32.Trojan.Fuery |
Families | Fuery |
Classification | Trojan |
PE Information
»
Image Base | 0x400000 |
Entry Point | 0x42000a |
Size Of Code | 0xd600 |
Size Of Initialized Data | 0xba00 |
File Type | FileType.executable |
Subsystem | Subsystem.windows_gui |
Machine Type | MachineType.i386 |
Compile Timestamp | 2019-10-04 04:44:49+00:00 |
Version Information (7)
»
Assembly Version | 1.0.0.0 |
FileDescription | |
FileVersion | 1.0.0.0 |
InternalName | - |
LegalCopyright | |
OriginalFilename | - |
ProductVersion | 1.0.0.0 |
Sections (5)
»
Name | Virtual Address | Virtual Size | Raw Data Size | Raw Data Offset | Flags | Entropy |
---|---|---|---|---|---|---|
k (P~t | 0x402000 | 0xb0a8 | 0xb200 | 0x400 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE | 8.0 |
.text | 0x40e000 | 0xd3b8 | 0xd400 | 0xb600 | IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ | 4.69 |
.rsrc | 0x41c000 | 0x4a8 | 0x600 | 0x18a00 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ | 3.64 |
.reloc | 0x41e000 | 0xc | 0x200 | 0x19000 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_DISCARDABLE, IMAGE_SCN_MEM_READ | 0.08 |
- | 0x420000 | 0x10 | 0x200 | 0x19200 | IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ | 0.1 |
Imports (1)
»
mscoree.dll (1)
»
API Name | Ordinal | IAT Address | Thunk RVA | Thunk Offset | Hint |
---|---|---|---|---|---|
_CorExeMain | 0x0 | 0x420000 | 0xe8b0 | 0xbeb0 | 0x0 |
C:\MSOCache\All Users\{90140000-0016-0409-1000-0000000FF1CE}-C\ExcelMUI.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0016-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0018-0409-1000-0000000FF1CE}-C\PowerPointMUI.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0018-0409-1000-0000000FF1CE}-C\PowerPointMUI.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0018-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0018-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-001A-0409-1000-0000000FF1CE}-C\OutlookMUI.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-001A-0409-1000-0000000FF1CE}-C\OutlookMUI.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-001A-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-001A-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-002C-0409-1000-0000000FF1CE}-C\Proofing.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-002C-0409-1000-0000000FF1CE}-C\Proofing.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-002C-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-002C-0409-1000-0000000FF1CE}-C\Proof.es\Proof.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-002C-0409-1000-0000000FF1CE}-C\Proof.es\Proof.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-002C-0409-1000-0000000FF1CE}-C\Proof.fr\Proof.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-002C-0409-1000-0000000FF1CE}-C\Proof.fr\Proof.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0043-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0043-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0054-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0054-0409-1000-0000000FF1CE}-C\VisioMUI.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0054-0409-1000-0000000FF1CE}-C\VisioMUI.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-00A1-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-00A1-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-00B4-0409-1000-0000000FF1CE}-C\ProjectMUI.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-00B4-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-00BA-0409-1000-0000000FF1CE}-C\GrooveMUI.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0115-0409-1000-0000000FF1CE}-C\branding.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0115-0409-1000-0000000FF1CE}-C\branding.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0115-0409-1000-0000000FF1CE}-C\OfficeMUISet.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0115-0409-1000-0000000FF1CE}-C\OfficeMUISet.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0115-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0115-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0117-0409-1000-0000000FF1CE}-C\Access.en-us\branding.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{90140000-0117-0409-1000-0000000FF1CE}-C\Access.en-us\branding.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{91140000-0011-0000-1000-0000000FF1CE}-C\Office32WW.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{91140000-0011-0000-1000-0000000FF1CE}-C\ProPlusrWW.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{91140000-003B-0000-1000-0000000FF1CE}-C\Office32WW.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{91140000-0057-0000-1000-0000000FF1CE}-C\Office32WW.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{91140000-0057-0000-1000-0000000FF1CE}-C\Office32WW.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\MSOCache\All Users\{91140000-0057-0000-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\EQUATION\eqnedt32.exe.manifest.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\GRPHFLT\MS.CGM.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\GRPHFLT\MS.CGM.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\GRPHFLT\MS.JPG.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\GRPHFLT\MS.JPG.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\GRPHFLT\MS.PNG.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\Alphabet.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\Alphabet.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\Content.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipscat.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipscat.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipschs.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipscht.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipscsy.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsdan.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsdeu.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsen.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsesp.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsfin.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipshrv.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsita.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsjpn.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipskor.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipskor.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsnor.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsnor.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsplk.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsptb.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsrus.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsrus.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipssrb.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipssrl.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipssrl.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipssve.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\boxed-correct.avi.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\boxed-correct.avi.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\boxed-delete.avi.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\boxed-join.avi.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\boxed-split.avi.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\correct.avi.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\delete.avi.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\delete.avi.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\split.avi.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\split.avi.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\auxpad.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\auxpad.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\numbers.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\oskmenu.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\oskmenu.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\osknumpad.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\osknumpad.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\oskpred.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\symbols.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\symbols.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\web.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\web.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\auxpad\auxbase.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\keypad\keypadbase.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\keypad\keypadbase.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\keypad\kor-kor.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\keypad\kor-kor.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\base.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\base_altgr.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\base_ca.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\base_heb.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\base_heb.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\base_jpn.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\base_kor.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\base_kor.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\base_rtl.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\ko-kr.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\zh-changjei.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\zh-dayi.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\zh-dayi.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\zh-phonetic.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\zh-phonetic.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\oskmenu\oskmenubase.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\osknumpad\osknumpadbase.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\oskpred\oskpredbase.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\symbols\ea-sym.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\symbols\ea-sym.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\symbols\ja-jp-sym.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\symbols\ja-jp-sym.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\symbols\symbase.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\web\webbase.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\web\webbase.xml.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\OFFICE14\1033\README.HTM.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\EQUATION\_readme.txt | Dropped File | Text |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\Access.en-us\AccessMUI.XML.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\Access.en-us\AccessMUISet.XML.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\Access.en-us\SETUP.XML.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Blue_Gradient.jpg.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Blue_Gradient.jpg.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Garden.htm.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Garden.jpg.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\GreenBubbles.jpg.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\HandPrints.jpg.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Monet.jpg.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Notebook.jpg.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\OrangeCircles.jpg.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Peacock.htm.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Pretty_Peacock.jpg.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Psychedelic.jpg.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Roses.jpg.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Shades of Blue.htm.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Small_News.jpg.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Soft Blue.htm.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\Shared\DvdStyles\4to3Squareframe_Buttongraphic.png.mike | Dropped File | Stream |
Unknown
|
...
|
»
C:\Program Files\DVD Maker\Shared\DvdStyles\Sports\SportsNotesBackground_PAL.wmv.mike | Modified File | Stream |
Not Queried
|
...
|
»
C:\Users\5p5NrGJn0jS HALPmcxz\AppData\Roaming\{7BC215DC-ADE3-41CE-9940-63296E9C3DD5}\c48c75d7__.bat | Dropped File | Batch |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-0016-0409-1000-0000000FF1CE}-C\ExcelMUI.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-0016-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-0019-0409-1000-0000000FF1CE}-C\PublisherMUI.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-0019-0409-1000-0000000FF1CE}-C\PublisherMUI.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-002C-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-0043-0409-1000-0000000FF1CE}-C\Office32MUI.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-0043-0409-1000-0000000FF1CE}-C\Office32MUI.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-0054-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-00B4-0409-1000-0000000FF1CE}-C\ProjectMUI.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-00B4-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-00BA-0409-1000-0000000FF1CE}-C\GrooveMUI.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-00BA-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-00BA-0409-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-0115-0409-1000-0000000FF1CE}-C\Microsoft.VC90.CRT.manifest.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-0115-0409-1000-0000000FF1CE}-C\Microsoft.VC90.CRT.manifest.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{90140000-0117-0409-1000-0000000FF1CE}-C\Access.en-us\AccessMUI.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{91140000-0011-0000-1000-0000000FF1CE}-C\Office32WW.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{91140000-0011-0000-1000-0000000FF1CE}-C\ProPlusrWW.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{91140000-003B-0000-1000-0000000FF1CE}-C\Office32WW.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{91140000-003B-0000-1000-0000000FF1CE}-C\PrjProrWW.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{91140000-003B-0000-1000-0000000FF1CE}-C\PrjProrWW.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\MSOCache\All Users\{91140000-0057-0000-1000-0000000FF1CE}-C\Setup.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\GRPHFLT\MS.PNG.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\Content.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\FlickAnimation.avi.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\FlickAnimation.avi.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipschs.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipscsy.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsdan.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsdeu.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsen.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsesp.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsfin.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsfra.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipshrv.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsita.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsjpn.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsnld.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsnld.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsplk.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsptb.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsptg.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsptg.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipsrom.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipssrb.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipssve.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\boxed-delete.avi.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\boxed-join.avi.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\boxed-split.avi.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\correct.avi.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\join.avi.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\en-US\join.avi.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\keypad.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\numbers.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\oskpred.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\auxpad\auxbase.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\keypad\ea.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\baseAltGr_rtl.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\baseAltGr_rtl.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\base_altgr.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\base_ca.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\base_jpn.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\ja-jp.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\ja-jp.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\ko-kr.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\main\zh-changjei.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\numbers\numbase.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\oskmenu\oskmenubase.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\osknumpad\osknumpadbase.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\fsdefinitions\oskpred\oskpredbase.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\Access.en-us\SETUP.XML.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Garden.htm.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\ink\ipscht.xml.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Garden.jpg.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Green Bubbles.htm.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Hand Prints.htm.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Orange Circles.htm.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Peacock.jpg.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Pine_Lumber.jpg.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Roses.htm.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\Sand_Paper.jpg.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\ShadesOfBlue.jpg.mike | Dropped File | Stream |
Not Queried
|
...
|
»
C:\Program Files\Common Files\Microsoft Shared\Stationery\SoftBlue.jpg.mike | Dropped File | Stream |
Not Queried
|
...
|
»