| 查杀引擎 | 查杀结果 | 查杀时间 | 查杀版本 | 
|---|---|---|---|
| Baidu | 20190318 | 1.0.0.2 | |
| Alibaba | TrojanPSW:Win32/Azorult.021627f5 | 20190527 | 0.3.0.5 | 
| Tencent | Win32.Trojan-qqpass.Qqrob.Pdmb | 20210127 | 1.0.0.1 | 
| Kingsoft | 20210127 | 2017.9.26.565 | |
| McAfee | Artemis!B80D2586D6DF | 20210127 | 6.0.6.653 | 
| Avast | Win32:Trojan-gen | 20210126 | 21.1.5827.0 | 
| CrowdStrike | win/malicious_confidence_100% (W) | 20210106 | 1.0 | 
| Time & API | Arguments | Status | Return | Repeated | 
|---|---|---|---|---|
| 
    1619879804.689125 GetComputerNameW  | 
    
        
            computer_name:
            
                
                    OSKAR-PC
                
            
            
             | 
success | 1 | 0 | 
| 
    1619879804.689125 GetComputerNameW  | 
    
        
            computer_name:
            
                
                    OSKAR-PC
                
            
            
             | 
success | 1 | 0 | 
| registry | HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\MachineGuid | 
| Time & API | Arguments | Status | Return | Repeated | 
|---|---|---|---|---|
| 
    1619879805.220125 GetAdaptersAddresses  | 
    
        
            flags:
            
                
                    0
                
            
            
             family: 0  | 
failed | 111 | 0 | 
| entropy | 7.892912352625997 | section | {'size_of_data': '0x0005a400', 'virtual_address': '0x000c4000', 'entropy': 7.892912352625997, 'name': '.rsrc', 'virtual_size': '0x0005a2bc'} | description | A section with a high entropy has been found | |||||||||
| entropy | 0.31013745704467355 | description | Overall entropy of this PE file is high | |||||||||||
| process | b80d2586d6dfded6f69d630f1601c6be.exe | 
| buffer | Buffer with sha1: ef165759426cfb90844cd7d12a267e0576601895 | 
| host | 172.217.24.14 | |||
| host | 51.116.180.53 | |||