![]() "Securit圜heck.exe" opened "C:\Users\%USERNAME%\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BPL0BFI3\meversion" with delete access "Securit圜heck.exe" opened "C:\Users\%USERNAME%\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KNHT6272\k.htm" with delete access "Securit圜heck.exe" opened "%LOCALAPPDATA%\Microsoft\Windows\Temporary Internet Files\Content.IE5\KNHT6272\indexv2.php" with delete access "" opened "%TEMP%\Securit圜heck\Securit圜heck.exe" with delete access "%TEMP%\Securit圜heck\Securit圜heck.exe" marked "C:\Users\%USERNAME%\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ADO3AVS6\" for deletion "%TEMP%\Securit圜heck\Securit圜heck.exe" marked "C:\Users\%USERNAME%\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KNHT6272\2017022715465019764.jpg" for deletion "%TEMP%\Securit圜heck\Securit圜heck.exe" marked "C:\Users\%USERNAME%\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BPL0BFI3\jslibraries" for deletion "%TEMP%\Securit圜heck\Securit圜heck.exe" marked "C:\Users\%USERNAME%\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BPL0BFI3\bs-components.css" for deletion "%TEMP%\Securit圜heck\Securit圜heck.exe" marked "C:\Users\%USERNAME%\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QRW5BOH4\lu_hot_word.png" for deletion "%TEMP%\Securit圜heck\Securit圜heck.exe" marked "C:\Users\%USERNAME%\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QIJSVQWS\2017022714175786396.jpg" for deletion "%TEMP%\Securit圜heck\Securit圜heck.exe" marked "C:\Users\%USERNAME%\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BPL0BFI3\meversion" for deletion "%TEMP%\Securit圜heck\Securit圜heck.exe" marked "C:\Users\%USERNAME%\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KNHT6272\k.htm" for deletion "%TEMP%\Securit圜heck\Securit圜heck.exe" marked "%LOCALAPPDATA%\Microsoft\Windows\Temporary Internet Files\Content.IE5\KNHT6272\indexv2.php" for deletion Heuristic match: "Securit圜heck by glax24 & Severnyj v.1.4.0.52 "Ĭontains ability to download files from the internet " (Indicator: "sandboxie"), "" (Indicator: "virtualbox"), "" (Indicator: "qemu"), "" (Indicator: "vmware"), "" (Indicator: "vmware"), "" (Indicator: "vmware"), "" (Indicator: "vmware"), "" (Indicator: "vbox"), "" (Indicator: "virtualbox") Last version available when Windows update is enabled throught the Internet."/>Ĭontains ability to reboot/shutdown the operating system Last version available when Windows update is enabled throught the Internet."/> "ossible re-activation of Windows will be needed."/> References security related windows services Found malicious artifacts related to "52.178.133.36" (ASN:, Owner: ).
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |