| 查杀引擎 | 查杀结果 | 查杀时间 | 查杀版本 |
|---|---|---|---|
| McAfee | GenericRXHE-JX!3536EE9E70C2 | 20200708 | 6.0.6.653 |
| Alibaba | Trojan:Win32/Injector.cb79fba8 | 20190527 | 0.3.0.5 |
| Baidu | 20190318 | 1.0.0.2 | |
| Avast | Win32:Trojan-gen | 20200708 | 18.4.3895.0 |
| Tencent | Win32.Trojan.Inject.Auto | 20200708 | 1.0.0.1 |
| Kingsoft | 20200708 | 2013.8.14.323 | |
| CrowdStrike | win/malicious_confidence_60% (W) | 20190702 | 1.0 |
| Time & API | Arguments | Status | Return | Repeated |
|---|---|---|---|---|
|
1619351434.342125 GetComputerNameW |
computer_name:
OSKAR-PC
|
success | 1 | 0 |
|
1619351434.342125 GetComputerNameW |
computer_name:
OSKAR-PC
|
success | 1 | 0 |
| registry | HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\MachineGuid |
| section | CODE |
| section | DATA |
| section | BSS |
| name | RT_MANIFEST | language | LANG_ARABIC | offset | 0x00163970 | filetype | XML 1.0 document, ASCII text, with CRLF line terminators | sublanguage | SUBLANG_ARABIC_EGYPT | size | 0x000002f0 | ||||||||||||||||||
| file | C:\Users\Administrator.Oskar-PC\AppData\Local\Macromedia\StikyNot.exe |
| file | C:\Users\Administrator.Oskar-PC\AppData\Local\Macromedia\StikyNot.exe |
| host | 172.217.24.14 | |||
| reg_key | HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\Microsoft OneDrive | reg_value | C:\Users\Administrator.Oskar-PC\AppData\Local\Macromedia\StikyNot.exe | ||||||