|
4/5
|
OS
|
Disables a crucial system tool
|
-
|
|
-
Disables the Task Manager.
|
|
-
Disables the Registry Editor.
|
|
4/5
|
File System
|
Renames user files
|
Ransomware
|
|
-
Renames multiple user files. This is an indicator for an encryption attempt.
|
|
4/5
|
File System
|
Modifies content of user files
|
Ransomware
|
|
-
Modifies the content of multiple user files. This is an indicator for an encryption attempt.
|
|
3/5
|
Browser
|
Reads data related to browser cookies
|
-
|
|
-
Reads Cookies for "Mozilla Firefox".
|
|
-
Accesses Cookies for "Mozilla Firefox".
|
|
3/5
|
Browser
|
Reads data related to saved browser credentials
|
-
|
|
-
Reads saved credentials for "Mozilla Firefox".
|
|
-
Reads the master key for "Mozilla Firefox".
|
|
2/5
|
Anti Analysis
|
Delays execution
|
-
|
|
-
One thread sleeps more than 5 minutes.
|
|
2/5
|
Browser
|
Reads data related to browsing history
|
-
|
|
-
Reads browsing history and related data, such as bookmarks, for "Mozilla Firefox".
|
|
2/5
|
File System
|
Known suspicious file
|
Trojan
|
|
-
File "C:\Users\CIiHmnxMn6Ps\Desktop\T1.exe" is a known suspicious file.
|
|
2/5
|
Network
|
Associated with known malicious/suspicious URLs
|
-
|
|
-
URL "finndev.net" is known as malicious URL.
|
|
1/5
|
Anti Analysis
|
Resolves APIs dynamically
|
-
|
|
-
Resolves an unusually high number of APIs.
|
|
1/5
|
Process
|
Creates system object
|
-
|
|
|
|
1/5
|
Network
|
Performs DNS request
|
-
|
|
-
Resolves host name "mail.gmx.net".
|
|
-
Resolves host name "finndev.net".
|
|
1/5
|
Process
|
Creates process with hidden window
|
-
|
|
-
The process "wmic.exe" starts with hidden window.
|
|
-
The process "cmd.exe" starts with hidden window.
|
|
1/5
|
Persistence
|
Installs system startup script or application
|
-
|
|
-
Adds "C:\Users\CIiHmnxMn6Ps\Desktop\T1.exe" to Windows startup via registry.
|
|
-
Adds "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\start menu\programs\startup\desktop.ini" to Windows startup folder.
|
|
-
Adds "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\start menu\programs\startup\send to onenote.lnk" to Windows startup folder.
|
|
-
Adds "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\start menu\programs\startup\send to onenote.lnk.happy" to Windows startup folder.
|
|
1/5
|
Masquerade
|
Changes folder appearance
|
Riskware
|
|
-
Folder "c:\program files (x86)" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\internet explorer\quick launch" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\internet explorer\quick launch\user pinned\taskbar" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\accountpictures" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\libraries" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\recent" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\sendto" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\start menu" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\start menu\programs" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\start menu\programs\accessibility" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\start menu\programs\accessories" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\start menu\programs\administrative tools" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\start menu\programs\maintenance" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\start menu\programs\startup" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\start menu\programs\system tools" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\appdata\roaming\microsoft\windows\start menu\programs\windows powershell" has a changed appearance.
|
|
-
Folder "c:\users\ciihmnxmn6ps\desktop" has a changed appearance.
|
|
1/5
|
File System
|
Modifies application directory
|
-
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\readme.htm".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\esl\aiodlite.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\1494870c-9912-c184-4cc9-b401-a53f4d8de290.pdf".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\a3dutils.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrobroker.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrofx32.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\ace.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrord32.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrord32.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrord32info.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrord32res.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrosup64.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrotextextractor.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\adelrcp.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\adobe.reader.dependencies.manifest".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\adobecollabsync.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\adobelinguistic.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\adoberfp.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\adobexmp.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\agm.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\agmgpuoptin.ini".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\ahclient.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\aide.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\arh.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\axe8sharedexpat.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\axsle.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\bib.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\bibutils.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\ccme_asym.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\ccme_base.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\ccme_base_non_fips.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\ccme_ecc.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\click on 'change' to select default pdf handler.pdf".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\cooltype.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\cryptocme.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\cryptocme.sig".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\directink.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\eula.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\extendscript.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\icudt40.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\icucnv40.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\logsession.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\jp2klib.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\onix32.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\logtransport2.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\pdfprevhndlr.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\pdfsigqformalrep.pdf".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\pe.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\pmd.cer".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\reader_sl.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\rt3d.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\rtc.der".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\sccore.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\sqlite.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\viewerps.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\welcome.pdf".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\wow_helper.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\appcenter_r.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\collectsignatures.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\combine_r_rhp.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\certificates_r.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\comments.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\cpdf_full.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\cpdf_rhp.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\edit_r_exp_rhp.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\edit_r_full.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\compare_r_rhp.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\edit_r_rhp.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\epdf_full.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\epdf_rhp.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\home.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\measure.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\moretools.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\fillsign.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\pages_r_rhp.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\protect_r_rhp.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\optimizepdf_r_rhp.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\scan_r_rhp.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\stamp.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\trackedsend.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\viewer.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\redact_r_rhp.aapp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\cef_100_percent.pak".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\cef_200_percent.pak".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\cef_extensions.pak".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\cef.pak".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\chrome_elf.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\copying.lgplv2.1.txt".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\d3dcompiler_43.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\d3dcompiler_47.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\icudt.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\icudtl.dat".
|
|
-
Modifies "c:\program files (x86)\adobe\ncstatements.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\readme.htm.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\esl\aiodlite.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\a3dutils.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrobroker.exe.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\ace.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrofx32.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrord32.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrord32.exe.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrord32info.exe.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrord32res.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrotextextractor.exe.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\adelrcp.exe.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrosup64.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\adobe.reader.dependencies.manifest.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\adobelinguistic.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\adoberfp.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\adobexmp.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\agm.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\agmgpuoptin.ini.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\ahclient.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\aide.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\arh.exe.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\axe8sharedexpat.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\axsle.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\bib.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\bibutils.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\ccme_asym.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\ccme_base.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\ccme_ecc.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\click on 'change' to select default pdf handler.pdf.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\cooltype.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\cryptocme.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\cryptocme.sig.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\directink.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\eula.exe.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\extendscript.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\icucnv40.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\icudt40.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\logsession.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\logtransport2.exe.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\onix32.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\pdfprevhndlr.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\pdfsigqformalrep.pdf.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\pe.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\pmd.cer.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\reader_sl.exe.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\rt3d.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\sccore.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\rtc.der.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\sqlite.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\viewerps.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\welcome.pdf.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\appcenter_r.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\certificates_r.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\wow_helper.exe.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\collectsignatures.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\combine_r_rhp.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\comments.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\cpdf_full.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\cpdf_rhp.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\compare_r_rhp.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\edit_r_full.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\edit_r_rhp.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\epdf_full.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\edit_r_exp_rhp.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\epdf_rhp.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\fillsign.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\home.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\moretools.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\measure.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\pages_r_rhp.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\protect_r_rhp.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\optimizepdf_r_rhp.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\scan_r_rhp.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\stamp.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\redact_r_rhp.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\trackedsend.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acroapp\enu\viewer.aapp.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\cef_100_percent.pak.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\cef_200_percent.pak.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\cef_extensions.pak.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\cef.pak.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\chrome_elf.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\copying.lgplv2.1.txt.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\d3dcompiler_43.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\d3dcompiler_47.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\icudt.dll.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\icudtl.dat.happy".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\libcef.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\libegl.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\libglesv2.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\license.txt".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\natives_blob.bin".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\rdrcef.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\rdrservicesupdater.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\snapshot_blob.bin".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\locales\en-us.pak".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\widevinecdmadapter.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\air\nppdf32.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\browser\wcchromeextn\manifest.json".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\browser\wcchromeextn\wcchromenativemessaginghost.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\idtemplates\enu\adobeid.pdf".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\idtemplates\enu\defaultid.pdf".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\browser\nppdf32.dll".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\javascripts\jsbytecodewin.bin".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\legal\enu\license.html".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\legal\enu\eula.ini".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\accessibility.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\locale\en_us\stopwords.enu".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\acroform.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\annots.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\checkers.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\digsig.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\dropboxstorage.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\dva.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\ebook.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\escript.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\ia32.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\makeaccessible.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\multimedia.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\pddom.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\ppklite.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\readoutloud.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\reflow.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\saveasrtf.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\search.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\sendmail.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\spelling.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\storageconnectors.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\updater.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\weblink.api".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\acroform\adobepdf.xdc".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\acroform\pmp\adobepdf417.pmp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\acroform\pmp\datamatrix.pmp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\acroform\pmp\qrcode.pmp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\annotations\stamps\words.pdf".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\annotations\stamps\enu\signhere.pdf".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\annotations\stamps\enu\dynamic.pdf".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\annotations\stamps\enu\standardbusiness.pdf".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\multimedia\mpp\flash.mpp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\multimedia\mpp\mcimpp.mpp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\multimedia\mpp\windowsmedia.mpp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\multimedia\mpp\quicktime.mpp".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\pi_brokers\32bitmapibroker.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins\pi_brokers\64bitmapibroker.exe".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins3d\3difr.x3d".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins3d\drvdx9.x3d".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins3d\2d.x3d".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins3d\drvsoft.x3d".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins3d\prcr.x3d".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins3d\tesselate.x3d".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\plug_ins3d\prc\myriadcad.otf".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\add_reviewer.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\br.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\create_form.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\distribute_form.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\bl.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\email_initiator.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\ended_review_or_form.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\end_review.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\forms_distributed.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\email_all.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\forms_received.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\form_responses.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\info.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\main.css".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\forms_super.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\pdf.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\reviewers.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\reviews_joined.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\reviews_sent.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\open_original_form.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\reviews_super.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\review_browser.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\review_same_reviewers.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\review_shared.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\rss.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\server_issue.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\review_email.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\server_lg.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\server_ok.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\stop_collection_data.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\submission_history.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\tl.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\tr.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\trash.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\turnoffnotificationintray.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\turnonnotificationinacrobat.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\turnonnotificationintray.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\warning.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\tracker\turnoffnotificationinacrobat.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\uithemes\darktheme.acrotheme".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\uithemes\lighttheme.acrotheme".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\base_uris.js".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\init.js".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\index.html".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\variant.js".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\plugins.js".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\css\main-cef-mac.css".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\version.js".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\css\main-cef-ui-theme.css".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\css\main-cef-win.css".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\css\main-cef-win8.css".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\css\main-cef.css".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\css\main-high-contrast.css".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\a12_spinner.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\a12_spinner_2x.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\a12_spinner_int.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\a12_spinner_int_2x.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\css\main.css".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\adc_logo.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\adobe_spinner_mini.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\adobe_spinner.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\apple-touch-icon-144x144-precomposed.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\apple-touch-icon-114x114-precomposed.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\apple-touch-icon-72x72-precomposed.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\ccloud.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\apple-touch-icon-57x57-precomposed.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\close_x.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\ccloud_retina.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\core_icons.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\core_icons_retina.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\favicon.ico".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\dd_arrow_small.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\illustrations.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\illustrations_retina.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\japanese_over.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\ind_prog.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\large_trefoil.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\large_trefoil_2x.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\logo_retina.png".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\progress-indeterminate.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\progress_spinner.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\progress_spinner2x.gif".
|
|
-
Modifies "c:\program files (x86)\adobe\acrobat reader dc\reader\webresources\resource0\static\images\progress_spinner_dark.gif".
|
|
1/5
|
File System
|
Creates an unusually large number of files
|
-
|
|
-
Creates an unusually large number of files.
|
|
1/5
|
Static
|
Unparsable sections in file
|
-
|
|
-
Static analyzer was unable to completely parse the analyzed file: C:\Users\CIiHmnxMn6Ps\Desktop\T1.exe.
|
|
1/5
|
Network
|
Connects to remote host
|
-
|
|
-
Outgoing TCP connection to host "212.227.17.190:587".
|
|
-
Outgoing TCP connection to host "91.134.128.42:443".
|
|
-
Outgoing TCP connection to host "212.227.17.168:587".
|