查杀引擎 | 查杀结果 | 查杀时间 | 查杀版本 |
---|---|---|---|
McAfee | Artemis!91F0710D99AA | 20201208 | 6.0.6.653 |
Alibaba | 20190527 | 0.3.0.5 | |
Baidu | 20190318 | 1.0.0.2 | |
Avast | Win32:PUP-gen [PUP] | 20201208 | 20.10.5736.0 |
Tencent | 20201208 | 1.0.0.1 | |
Kingsoft | 20201208 | 2017.9.26.565 | |
CrowdStrike | 20190702 | 1.0 |
pdb_path | D:\Sources\app-littleinstaller\bin\Release\LittleInstaller.pdb |
resource name | AFX_DIALOG_LAYOUT |
resource name | None |
request | GET http://trk.slimwareutilities.com/ulc.php?ev=InstallerInvoked&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiYjg2MDg5MGUtOTkyZi00Y2YyLWI5NzEtNjJmYjU1YWY3MGY4IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=89E184E9-CB62-4A80-819B-03F7DBBFE062&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2&msBclVersion=4.0.0 |
request | GET http://apps-api.slimwareutilities.com/install/du/6.1/x64/DriverUpdate-setup.msi.bz2?machineId=89E184E9-CB62-4A80-819B-03F7DBBFE062 |
request | GET http://trk.slimwareutilities.com/ulc.php?ev=InstallerAccepted&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiYjg2MDg5MGUtOTkyZi00Y2YyLWI5NzEtNjJmYjU1YWY3MGY4IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=89E184E9-CB62-4A80-819B-03F7DBBFE062&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2 |
request | GET http://x.ss2.us/x.cer |
request | GET http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab |
request | GET http://cdn.slimcleaner.com/downloads/silentdownloader/SlimCleanerPlus-Downloader.exe.bz2 |
request | GET http://trk.slimwareutilities.com/ulc.php?ev=Error&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiYjg2MDg5MGUtOTkyZi00Y2YyLWI5NzEtNjJmYjU1YWY3MGY4IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=89E184E9-CB62-4A80-819B-03F7DBBFE062&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2&errorType=windowsDesktopError&errorCode=80190194&action=installing |
request | GET https://download.driverupdate.net/5.8.20/x64/DriverUpdate-setup.msi.bz2 |
name | None | language | LANG_JAPANESE | offset | 0x00096890 | filetype | Rich Text Format data, version 1, ANSI | sublanguage | SUBLANG_DEFAULT | size | 0x00000c72 | ||||||||||||||||||
name | None | language | LANG_JAPANESE | offset | 0x00096890 | filetype | Rich Text Format data, version 1, ANSI | sublanguage | SUBLANG_DEFAULT | size | 0x00000c72 | ||||||||||||||||||
name | None | language | LANG_JAPANESE | offset | 0x00096890 | filetype | Rich Text Format data, version 1, ANSI | sublanguage | SUBLANG_DEFAULT | size | 0x00000c72 | ||||||||||||||||||
name | None | language | LANG_JAPANESE | offset | 0x00096890 | filetype | Rich Text Format data, version 1, ANSI | sublanguage | SUBLANG_DEFAULT | size | 0x00000c72 | ||||||||||||||||||
name | None | language | LANG_JAPANESE | offset | 0x00096890 | filetype | Rich Text Format data, version 1, ANSI | sublanguage | SUBLANG_DEFAULT | size | 0x00000c72 |
file | C:\Users\Administrator.Oskar-PC\AppData\Local\Temp\swu5668.tmp.msi |
buffer | Buffer with sha1: 6d1f54051d3049ac073da13d0400d2be095f5927 |
buffer | Buffer with sha1: e90654980cbd2d956d4a4c75c41059daf840adfa |
host | 172.217.24.14 |
registry | HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\317A2AD07F2B335EF5A1C34E4B57E8B7D8F1FCA6\Blob |
registry | HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\AD7E1C28B064EF8F6003402014C3D0E3370EB58A\Blob |
McAfee | Artemis!91F0710D99AA |
Cylance | Unsafe |
SUPERAntiSpyware | PUP.Bundler/Variant |
Sangfor | Malware |
K7AntiVirus | Adware ( 0051fb711 ) |
K7GW | Adware ( 0051fb711 ) |
Cyren | W32/SlimWare.E.gen!Eldorado |
Avast | Win32:PUP-gen [PUP] |
DrWeb | Program.Unwanted.4975 |
McAfee-GW-Edition | BehavesLike.Win32.Slimware.jh |
Sophos | Generic ML PUA (PUA) |
Antiy-AVL | GrayWare/Win32.Slimware |
Gridinsoft | PUP.SlimWare.sd!c |
Microsoft | Program:Win32/Wacapew.C!ml |
GData | Win32.Application.DriverUpdater.D |
Cynet | Malicious (score: 100) |
VBA32 | Adware.FakeDriverUpdate.gen |
Malwarebytes | PUP.Optional.DriverUpdate |
ESET-NOD32 | a variant of Win32/Slimware.A potentially unwanted |
eGambit | Unsafe.AI_Score_98% |
Fortinet | Riskware/Slimware |
AVG | Win32:PUP-gen [PUP] |
MaxSecure | Adware.not-a-virus.WIN32.driverupdater.d_194534 |
No hosts contacted.
Source | Source Port | Destination | Destination Port |
---|---|---|---|
192.168.56.101 | 49189 | 124.225.105.97 www.download.windowsupdate.com | 80 |
192.168.56.101 | 49177 | 3.215.109.160 trk.slimwareutilities.com | 80 |
192.168.56.101 | 49179 | 34.194.20.225 trk.slimwareutilities.com | 80 |
192.168.56.101 | 49178 | 52.44.44.47 apps-api.slimwareutilities.com | 80 |
192.168.56.101 | 49186 | 52.85.56.163 x.ss2.us | 80 |
192.168.56.101 | 49200 | 54.192.147.10 cdn.slimcleaner.com | 80 |
192.168.56.101 | 49201 | 54.192.147.10 cdn.slimcleaner.com | 80 |
192.168.56.101 | 49202 | 54.192.147.10 cdn.slimcleaner.com | 80 |
192.168.56.101 | 49203 | 54.192.147.10 cdn.slimcleaner.com | 80 |
192.168.56.101 | 49204 | 54.192.147.10 cdn.slimcleaner.com | 80 |
192.168.56.101 | 49182 | 54.192.147.126 download.driverupdate.net | 443 |
192.168.56.101 | 49194 | 54.192.147.126 download.driverupdate.net | 443 |
Source | Source Port | Destination | Destination Port |
---|---|---|---|
192.168.56.101 | 50534 | 114.114.114.114 | 53 |
192.168.56.101 | 50849 | 114.114.114.114 | 53 |
192.168.56.101 | 51808 | 114.114.114.114 | 53 |
192.168.56.101 | 53237 | 114.114.114.114 | 53 |
192.168.56.101 | 55368 | 114.114.114.114 | 53 |
192.168.56.101 | 56539 | 114.114.114.114 | 53 |
192.168.56.101 | 57756 | 114.114.114.114 | 53 |
192.168.56.101 | 57874 | 114.114.114.114 | 53 |
192.168.56.101 | 58367 | 114.114.114.114 | 53 |
192.168.56.101 | 60221 | 114.114.114.114 | 53 |
192.168.56.101 | 61680 | 114.114.114.114 | 53 |
192.168.56.101 | 62318 | 114.114.114.114 | 53 |
192.168.56.101 | 63429 | 114.114.114.114 | 53 |
192.168.56.101 | 137 | 192.168.56.255 | 137 |
192.168.56.101 | 138 | 192.168.56.255 | 138 |
192.168.56.101 | 123 | 20.189.79.72 time.windows.com | 123 |
192.168.56.101 | 49713 | 224.0.0.252 | 5355 |
192.168.56.101 | 50433 | 224.0.0.252 | 5355 |
192.168.56.101 | 50568 | 224.0.0.252 | 5355 |
192.168.56.101 | 51378 | 224.0.0.252 | 5355 |
URI | Data |
---|---|
http://apps-api.slimwareutilities.com/install/du/6.1/x64/DriverUpdate-setup.msi.bz2?machineId=89E184E9-CB62-4A80-819B-03F7DBBFE062 | GET /install/du/6.1/x64/DriverUpdate-setup.msi.bz2?machineId=89E184E9-CB62-4A80-819B-03F7DBBFE062 HTTP/1.1 Connection: Keep-Alive User-Agent: DriverUpdate Installer/2.24.6.37 (os:windows; ver:6.1; arc:AMD64) Host: apps-api.slimwareutilities.com Cookie: AWSALBCORS=rCma3bQ1dThs/TU37AcC1vLZCNabBEjkUF7p7clEdm9MYVXuggpsVmzszePNXcFuSh/3MdUGU/5YxNAFmuY7W0OogkOIMlWE3Ej/C0lNPHHwyy+GN8swPSIBOkwz; AWSALB=rCma3bQ1dThs/TU37AcC1vLZCNabBEjkUF7p7clEdm9MYVXuggpsVmzszePNXcFuSh/3MdUGU/5YxNAFmuY7W0OogkOIMlWE3Ej/C0lNPHHwyy+GN8swPSIBOkwz |
http://cdn.slimcleaner.com/downloads/silentdownloader/SlimCleanerPlus-Downloader.exe.bz2 | GET /downloads/silentdownloader/SlimCleanerPlus-Downloader.exe.bz2 HTTP/1.1 Connection: Keep-Alive User-Agent: DriverUpdate Installer/2.24.6.37 (os:windows; ver:6.1; arc:AMD64) Host: cdn.slimcleaner.com |
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab | GET /msdownload/update/v3/static/trustedr/en/authrootstl.cab HTTP/1.1 Cache-Control: max-age = 3600 Connection: Keep-Alive Accept: */* If-Modified-Since: Wed, 03 Mar 2021 06:32:16 GMT If-None-Match: "0d8f4f3f6fd71:0" User-Agent: Microsoft-CryptoAPI/6.1 Host: www.download.windowsupdate.com |
http://x.ss2.us/x.cer | GET /x.cer HTTP/1.1 Connection: Keep-Alive Accept: */* User-Agent: Microsoft-CryptoAPI/6.1 Host: x.ss2.us |
http://apps-api.slimwareutilities.com/install/du/6.1/x64/DriverUpdate-setup.msi.bz2?machineId=89E184E9-CB62-4A80-819B-03F7DBBFE062 | GET /install/du/6.1/x64/DriverUpdate-setup.msi.bz2?machineId=89E184E9-CB62-4A80-819B-03F7DBBFE062 HTTP/1.1 Connection: Keep-Alive User-Agent: DriverUpdate Installer/2.24.6.37 (os:windows; ver:6.1; arc:AMD64) Host: apps-api.slimwareutilities.com |
http://trk.slimwareutilities.com/ulc.php?ev=InstallerAccepted&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiYjg2MDg5MGUtOTkyZi00Y2YyLWI5NzEtNjJmYjU1YWY3MGY4IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=89E184E9-CB62-4A80-819B-03F7DBBFE062&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2 | GET /ulc.php?ev=InstallerAccepted&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiYjg2MDg5MGUtOTkyZi00Y2YyLWI5NzEtNjJmYjU1YWY3MGY4IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=89E184E9-CB62-4A80-819B-03F7DBBFE062&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2 HTTP/1.1 Connection: Keep-Alive User-Agent: DriverUpdate Installer/2.24.6.37 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com |
http://trk.slimwareutilities.com/ulc.php?ev=InstallerInvoked&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiYjg2MDg5MGUtOTkyZi00Y2YyLWI5NzEtNjJmYjU1YWY3MGY4IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=89E184E9-CB62-4A80-819B-03F7DBBFE062&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2&msBclVersion=4.0.0 | GET /ulc.php?ev=InstallerInvoked&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiYjg2MDg5MGUtOTkyZi00Y2YyLWI5NzEtNjJmYjU1YWY3MGY4IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=89E184E9-CB62-4A80-819B-03F7DBBFE062&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2&msBclVersion=4.0.0 HTTP/1.1 Connection: Keep-Alive User-Agent: DriverUpdate Installer/2.24.6.37 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com |
http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab | GET /msdownload/update/v3/static/trustedr/en/authrootstl.cab HTTP/1.1 Cache-Control: max-age = 900 Connection: Keep-Alive Accept: */* If-Modified-Since: Mon, 19 Apr 2021 20:17:25 GMT If-None-Match: "80f8835935d71:0" User-Agent: Microsoft-CryptoAPI/6.1 Host: www.download.windowsupdate.com |
http://trk.slimwareutilities.com/ulc.php?ev=Error&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiYjg2MDg5MGUtOTkyZi00Y2YyLWI5NzEtNjJmYjU1YWY3MGY4IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=89E184E9-CB62-4A80-819B-03F7DBBFE062&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2&errorType=windowsDesktopError&errorCode=80190194&action=installing | GET /ulc.php?ev=Error&upl=YTo4OntzOjk6InVsX3N0dWJpZCI7czozNjoiYjg2MDg5MGUtOTkyZi00Y2YyLWI5NzEtNjJmYjU1YWY3MGY4IjtzOjEwOiJ1bF9jb2JyYW5kIjtzOjM6IlNXMiI7czo3OiJwcm9kdWN0IjtzOjM6IlNXMiI7czoxMToiYnJvd3NlclR5cGUiO3M6NDoiRWRnZSI7czoxNDoiYnJvd3NlclZlcnNpb24iO3M6NjoiMTIuMjQ2IjtzOjE1OiJicm93c2VyTGFuZ3VhZ2UiO3M6MDoiIjtzOjEwOiJwbGF0Zm9ybU9TIjtzOjc6IldpbmRvd3MiO3M6MTc6InBsYXRmb3JtT1NWZXJzaW9uIjtzOjQ6IjEwLjAiO30%3D&machineId=89E184E9-CB62-4A80-819B-03F7DBBFE062&platformOS=Windows&platformOSVersion=6.1&installer=LI0&installerVersion=2.24.6.37&product=SW2&errorType=windowsDesktopError&errorCode=80190194&action=installing HTTP/1.1 Connection: Keep-Alive User-Agent: DriverUpdate Installer/2.24.6.37 (os:windows; ver:6.1; arc:AMD64) Host: trk.slimwareutilities.com |
No ICMP traffic performed.
No IRC requests performed.
No Suricata Alerts
No Suricata TLS
No Snort Alerts