查杀引擎 | 查杀结果 | 查杀时间 | 查杀版本 |
---|---|---|---|
McAfee | 20191113 | 6.0.6.653 | |
CrowdStrike | 20190702 | 1.0 | |
Alibaba | 20190527 | 0.3.0.5 | |
Baidu | 20190318 | 1.0.0.2 | |
Avast | 20191115 | 18.4.3895.0 | |
Tencent | 20191115 | 1.0.0.1 | |
Kingsoft | 20191115 | 2013.8.14.323 |
Time & API | Arguments | Status | Return | Repeated |
---|---|---|---|---|
1620963014.45075 GetComputerNameA |
computer_name:
OSKAR-PC
|
success | 1 | 0 |
section | .ndata |
suspicious_features | POST method with no referer header | suspicious_request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_TotalProcessStart&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB | ||||||
suspicious_features | POST method with no referer header | suspicious_request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_AutoAcceptOfferAccepted&OfferId=10002&OfferOrder=1&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB | ||||||
suspicious_features | POST method with no referer header | suspicious_request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_AutoAcceptOfferAccepted&OfferId=10000&OfferOrder=2&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB | ||||||
suspicious_features | POST method with no referer header | suspicious_request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_AddonDownloadStart&OfferId=10002&AddonId=10044&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB | ||||||
suspicious_features | POST method with no referer header | suspicious_request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_AddonDownloadStart&OfferId=10000&AddonId=10000&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB | ||||||
suspicious_features | POST method with no referer header | suspicious_request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_ProgressBarDisplayed&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB | ||||||
suspicious_features | POST method with no referer header | suspicious_request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_Player_validation&isPlayerInstalled=0&beginUpgrade=0&existingPlayerVersion=0&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB | ||||||
suspicious_features | POST method with no referer header | suspicious_request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_AddonDownloadFinished&OfferId=10000&AddonId=10000&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | GET http://www.freeridegames.com/spdo/feeds/sdmConfig?camp=CNET_@GAME_ID@_Free_InstallCore&serviceId=143&gameId=703350 |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_TotalProcessStart&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_AutoAcceptOfferAccepted&OfferId=10002&OfferOrder=1&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_AutoAcceptOfferAccepted&OfferId=10000&OfferOrder=2&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_AddonDownloadStart&OfferId=10002&AddonId=10044&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | HEAD http://dts1.freeridegames.com/FRG_site/SDM_Offer_Assets/GameFirst/All/Location_extractor_703350.exe |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_AddonDownloadStart&OfferId=10000&AddonId=10000&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | HEAD http://dts1.freeridegames.com/FRG_site/downloads/EXEtender_Default.exe |
request | GET http://dts1.freeridegames.com/FRG_site/SDM_Offer_Assets/GameFirst/All/Location_extractor_703350.exe |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_ProgressBarDisplayed&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | GET http://dts1.freeridegames.com/FRG_site/downloads/EXEtender_Default.exe |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_Player_validation&isPlayerInstalled=0&beginUpgrade=0&existingPlayerVersion=0&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_AddonDownloadFinished&OfferId=10000&AddonId=10000&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_TotalProcessStart&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_AutoAcceptOfferAccepted&OfferId=10002&OfferOrder=1&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_AutoAcceptOfferAccepted&OfferId=10000&OfferOrder=2&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_AddonDownloadStart&OfferId=10002&AddonId=10044&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_AddonDownloadStart&OfferId=10000&AddonId=10000&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_ProgressBarDisplayed&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_Player_validation&isPlayerInstalled=0&beginUpgrade=0&existingPlayerVersion=0&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
request | POST http://www.freeridegames.com/opTools/clientTracking.jsp?trackEvent=SDM_AddonDownloadFinished&OfferId=10000&AddonId=10000&sdmVersion=01.02.00.33&muid=30300030ADD1ADD2ADD33B4138C699FFE8F31000AB3B7B12C268C7715883755600067EDB |
description | Free Ride Games.exe tried to sleep 167 seconds, actually delayed analysis time by 167 seconds |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Google\Chrome\User Data\Default\Cookies |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Google\Chrome\User Data\Default\local_cookies-journal |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Google\Chrome\User Data\Default\local_cookies |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Google\Chrome\User Data\Default\cookies-wal |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Google\Chrome\User Data\Default\local_cookies-wal |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Google\Chrome\User Data\Default\cookies-journal |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Temp\SDM143\ExentCtlInstaller.dll |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Temp\SDM143\Location_extractor_703350.exe |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Temp\SDM143\cmhelper.exe |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Temp\SDM143\EXEtender_Default.exe |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Temp\SDM143\resourceDll.dll |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Temp\SDM143\Free Ride Games.exe |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Temp\nsq65AB.tmp\System.dll |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Temp\SDM143\Splasher.dll |
DrWeb | Adware.GameVance.274 |
Time & API | Arguments | Status | Return | Repeated |
---|---|---|---|---|
1620963018.63875 GetAdaptersAddresses |
flags:
0
family: 0 |
failed | 111 | 0 |