查杀引擎 | 查杀结果 | 查杀时间 | 查杀版本 |
---|---|---|---|
McAfee | Artemis!4BF059F95E96 | 20201203 | 6.0.6.653 |
Alibaba | 20190527 | 0.3.0.5 | |
Baidu | 20190318 | 1.0.0.2 | |
Avast | Win32:PUP-gen [PUP] | 20201203 | 20.10.5736.0 |
Tencent | 20201203 | 1.0.0.1 | |
Kingsoft | 20201203 | 2017.9.26.565 | |
CrowdStrike | 20190702 | 1.0 |
pdb_path | D:\Sources\app-littleinstaller\bin\Release\LittleInstaller.pdb |
resource name | AFX_DIALOG_LAYOUT |
resource name | None |
request | GET http://trk.slimwareutilities.com/ulc.php?ev=InstallerAccepted&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiZDQxMjMxY2YtZjkwZC00OTViLTk2MjYtZWE2MTE0ZDg4MDExIjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=DFEE189E-9C00-4D3B-9709-8C999637281D&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2 |
request | GET http://trk.slimwareutilities.com/ulc.php?ev=InstallerInvoked&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiZDQxMjMxY2YtZjkwZC00OTViLTk2MjYtZWE2MTE0ZDg4MDExIjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=DFEE189E-9C00-4D3B-9709-8C999637281D&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2&msBclVersion=4.0.0 |
request | GET http://apps-api.slimwareutilities.com/install/du/6.1/x64/DriverUpdate-setup.msi.bz2?machineId=DFEE189E-9C00-4D3B-9709-8C999637281D |
request | GET http://x.ss2.us/x.cer |
request | GET http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab |
request | GET http://cdn.slimcleaner.com/downloads/silentdownloader/SlimCleanerPlus-Downloader.exe.bz2 |
request | GET http://trk.slimwareutilities.com/ulc.php?ev=Error&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiZDQxMjMxY2YtZjkwZC00OTViLTk2MjYtZWE2MTE0ZDg4MDExIjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=DFEE189E-9C00-4D3B-9709-8C999637281D&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2&errorType=windowsDesktopError&errorCode=80190194&action=installing |
request | GET https://download.driverupdate.net/5.8.20/x64/DriverUpdate-setup.msi.bz2 |
name | None | language | LANG_JAPANESE | offset | 0x00096890 | filetype | Rich Text Format data, version 1, ANSI | sublanguage | SUBLANG_DEFAULT | size | 0x00000c72 | ||||||||||||||||||
name | None | language | LANG_JAPANESE | offset | 0x00096890 | filetype | Rich Text Format data, version 1, ANSI | sublanguage | SUBLANG_DEFAULT | size | 0x00000c72 | ||||||||||||||||||
name | None | language | LANG_JAPANESE | offset | 0x00096890 | filetype | Rich Text Format data, version 1, ANSI | sublanguage | SUBLANG_DEFAULT | size | 0x00000c72 | ||||||||||||||||||
name | None | language | LANG_JAPANESE | offset | 0x00096890 | filetype | Rich Text Format data, version 1, ANSI | sublanguage | SUBLANG_DEFAULT | size | 0x00000c72 | ||||||||||||||||||
name | None | language | LANG_JAPANESE | offset | 0x00096890 | filetype | Rich Text Format data, version 1, ANSI | sublanguage | SUBLANG_DEFAULT | size | 0x00000c72 |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Temp\swu6740.tmp.msi |
buffer | Buffer with sha1: 6d1f54051d3049ac073da13d0400d2be095f5927 |
buffer | Buffer with sha1: e90654980cbd2d956d4a4c75c41059daf840adfa |
host | 172.217.24.14 |
registry | HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\317A2AD07F2B335EF5A1C34E4B57E8B7D8F1FCA6\Blob |
registry | HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\AD7E1C28B064EF8F6003402014C3D0E3370EB58A\Blob |
McAfee | Artemis!4BF059F95E96 |
SUPERAntiSpyware | PUP.Bundler/Variant |
K7AntiVirus | Adware ( 0051fb711 ) |
K7GW | Adware ( 0051fb711 ) |
Cyren | W32/SlimWare.E.gen!Eldorado |
Avast | Win32:PUP-gen [PUP] |
Cynet | Malicious (score: 100) |
DrWeb | Program.Unwanted.4975 |
McAfee-GW-Edition | BehavesLike.Win32.Slimware.jh |
MaxSecure | Adware.not-a-virus.WIN32.driverupdater.d_194534 |
Sophos | Generic ML PUA (PUA) |
Antiy-AVL | GrayWare/Win32.Slimware |
Gridinsoft | PUP.SlimWare.sd!c |
ViRobot | Adware.Slimware.703984.J |
GData | Win32.Application.DriverUpdater.D |
VBA32 | Adware.FakeDriverUpdate.gen |
Malwarebytes | PUP.Optional.DriverUpdate |
ESET-NOD32 | a variant of Win32/Slimware.A potentially unwanted |
eGambit | Unsafe.AI_Score_98% |
Fortinet | Riskware/Slimware |
AVG | Win32:PUP-gen [PUP] |
dead_host | 172.217.24.14:443 |
dead_host | 172.217.160.78:443 |
No hosts contacted.
Source | Source Port | Destination | Destination Port |
---|---|---|---|
192.168.56.101 | 49187 | 119.96.211.1 www.download.windowsupdate.com | 80 |
192.168.56.101 | 49178 | 3.215.109.160 trk.slimwareutilities.com | 80 |
192.168.56.101 | 49179 | 34.227.55.118 apps-api.slimwareutilities.com | 80 |
192.168.56.101 | 49177 | 52.207.195.86 trk.slimwareutilities.com | 80 |
192.168.56.101 | 49184 | 52.85.56.163 x.ss2.us | 80 |
192.168.56.101 | 49181 | 54.192.147.40 download.driverupdate.net | 443 |
192.168.56.101 | 49191 | 54.192.147.40 download.driverupdate.net | 443 |
192.168.56.101 | 49196 | 54.192.147.75 cdn.slimcleaner.com | 80 |
192.168.56.101 | 49197 | 54.192.147.75 cdn.slimcleaner.com | 80 |
192.168.56.101 | 49198 | 54.192.147.75 cdn.slimcleaner.com | 80 |
192.168.56.101 | 49199 | 54.192.147.75 cdn.slimcleaner.com | 80 |
192.168.56.101 | 49200 | 54.192.147.75 cdn.slimcleaner.com | 80 |
Source | Source Port | Destination | Destination Port |
---|---|---|---|
192.168.56.101 | 49713 | 114.114.114.114 | 53 |
192.168.56.101 | 50002 | 114.114.114.114 | 53 |
192.168.56.101 | 50534 | 114.114.114.114 | 53 |
192.168.56.101 | 53210 | 114.114.114.114 | 53 |
192.168.56.101 | 53380 | 114.114.114.114 | 53 |
192.168.56.101 | 53500 | 114.114.114.114 | 53 |
192.168.56.101 | 57756 | 114.114.114.114 | 53 |
192.168.56.101 | 59789 | 114.114.114.114 | 53 |
192.168.56.101 | 60088 | 114.114.114.114 | 53 |
192.168.56.101 | 61680 | 114.114.114.114 | 53 |
192.168.56.101 | 62318 | 114.114.114.114 | 53 |
192.168.56.101 | 62912 | 114.114.114.114 | 53 |
192.168.56.101 | 63497 | 114.114.114.114 | 53 |
192.168.56.101 | 137 | 192.168.56.255 | 137 |
192.168.56.101 | 138 | 192.168.56.255 | 138 |
192.168.56.101 | 123 | 20.189.79.72 time.windows.com | 123 |
192.168.56.101 | 49710 | 224.0.0.252 | 5355 |
192.168.56.101 | 50320 | 224.0.0.252 | 5355 |
192.168.56.101 | 50433 | 224.0.0.252 | 5355 |
192.168.56.101 | 50568 | 224.0.0.252 | 5355 |
URI | Data |
---|---|
http://cdn.slimcleaner.com/downloads/silentdownloader/SlimCleanerPlus-Downloader.exe.bz2 | GET /downloads/silentdownloader/SlimCleanerPlus-Downloader.exe.bz2 HTTP/1.1 Connection: Keep-Alive User-Agent: DriverUpdate Installer/2.24.6.37 (os:windows; ver:6.1; arc:AMD64) Host: cdn.slimcleaner.com |
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab | GET /msdownload/update/v3/static/trustedr/en/authrootstl.cab HTTP/1.1 Cache-Control: max-age = 3600 Connection: Keep-Alive Accept: */* If-Modified-Since: Wed, 03 Mar 2021 06:32:16 GMT If-None-Match: "0d8f4f3f6fd71:0" User-Agent: Microsoft-CryptoAPI/6.1 Host: www.download.windowsupdate.com |
http://trk.slimwareutilities.com/ulc.php?ev=InstallerInvoked&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiZDQxMjMxY2YtZjkwZC00OTViLTk2MjYtZWE2MTE0ZDg4MDExIjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=DFEE189E-9C00-4D3B-9709-8C999637281D&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2&msBclVersion=4.0.0 | GET /ulc.php?ev=InstallerInvoked&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiZDQxMjMxY2YtZjkwZC00OTViLTk2MjYtZWE2MTE0ZDg4MDExIjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=DFEE189E-9C00-4D3B-9709-8C999637281D&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2&msBclVersion=4.0.0 HTTP/1.1 Connection: Keep-Alive User-Agent: DriverUpdate Installer/2.24.6.37 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com |
http://trk.slimwareutilities.com/ulc.php?ev=Error&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiZDQxMjMxY2YtZjkwZC00OTViLTk2MjYtZWE2MTE0ZDg4MDExIjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=DFEE189E-9C00-4D3B-9709-8C999637281D&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2&errorType=windowsDesktopError&errorCode=80190194&action=installing | GET /ulc.php?ev=Error&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiZDQxMjMxY2YtZjkwZC00OTViLTk2MjYtZWE2MTE0ZDg4MDExIjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=DFEE189E-9C00-4D3B-9709-8C999637281D&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2&errorType=windowsDesktopError&errorCode=80190194&action=installing HTTP/1.1 Connection: Keep-Alive User-Agent: DriverUpdate Installer/2.24.6.37 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com |
http://x.ss2.us/x.cer | GET /x.cer HTTP/1.1 Connection: Keep-Alive Accept: */* User-Agent: Microsoft-CryptoAPI/6.1 Host: x.ss2.us |
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab | GET /msdownload/update/v3/static/trustedr/en/authrootstl.cab HTTP/1.1 Cache-Control: max-age = 900 Connection: Keep-Alive Accept: */* If-Modified-Since: Mon, 19 Apr 2021 20:17:25 GMT If-None-Match: "80f8835935d71:0" User-Agent: Microsoft-CryptoAPI/6.1 Host: www.download.windowsupdate.com |
http://apps-api.slimwareutilities.com/install/du/6.1/x64/DriverUpdate-setup.msi.bz2?machineId=DFEE189E-9C00-4D3B-9709-8C999637281D | GET /install/du/6.1/x64/DriverUpdate-setup.msi.bz2?machineId=DFEE189E-9C00-4D3B-9709-8C999637281D HTTP/1.1 Connection: Keep-Alive User-Agent: DriverUpdate Installer/2.24.6.37 (os:windows; ver:6.1; arc:AMD64) Host: apps-api.slimwareutilities.com |
http://trk.slimwareutilities.com/ulc.php?ev=InstallerAccepted&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiZDQxMjMxY2YtZjkwZC00OTViLTk2MjYtZWE2MTE0ZDg4MDExIjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=DFEE189E-9C00-4D3B-9709-8C999637281D&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2 | GET /ulc.php?ev=InstallerAccepted&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiZDQxMjMxY2YtZjkwZC00OTViLTk2MjYtZWE2MTE0ZDg4MDExIjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=DFEE189E-9C00-4D3B-9709-8C999637281D&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2 HTTP/1.1 Connection: Keep-Alive User-Agent: DriverUpdate Installer/2.24.6.37 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com |
http://apps-api.slimwareutilities.com/install/du/6.1/x64/DriverUpdate-setup.msi.bz2?machineId=DFEE189E-9C00-4D3B-9709-8C999637281D | GET /install/du/6.1/x64/DriverUpdate-setup.msi.bz2?machineId=DFEE189E-9C00-4D3B-9709-8C999637281D HTTP/1.1 Connection: Keep-Alive User-Agent: DriverUpdate Installer/2.24.6.37 (os:windows; ver:6.1; arc:AMD64) Host: apps-api.slimwareutilities.com Cookie: AWSALBCORS=s0lV02OKMaqOOQgBmsqoJmjz6o0kAIKw2DxSXLgfD6lb9/0ZT74aoYozGGaRnL2Pl8GIzumDRqEM1BOmEIcio8IXN6tn3f197lGJm38I9fmOPCo1qkaEp5E2+hDI; AWSALB=s0lV02OKMaqOOQgBmsqoJmjz6o0kAIKw2DxSXLgfD6lb9/0ZT74aoYozGGaRnL2Pl8GIzumDRqEM1BOmEIcio8IXN6tn3f197lGJm38I9fmOPCo1qkaEp5E2+hDI |
No ICMP traffic performed.
No IRC requests performed.
No Suricata Alerts
No Suricata TLS
No Snort Alerts