top title background image
flash

SecuriteInfo.com.not-a-virus.HEUR.AdWare.Win32.Convagent.gen.29670.14571.exe

Status: finished
Submission Time: 2024-09-28 22:24:18 +02:00
Suspicious
Ransomware

Comments

Tags

  • AdwareInstallCore
  • exe

Details

  • Analysis ID:
    1521531
  • API (Web) ID:
    1521531
  • Analysis Started:
    2024-09-28 22:24:18 +02:00
  • Analysis Finished:
    2024-09-28 22:28:14 +02:00
  • MD5:
    b1382f20fc2ac8ee00bc5d35cfe2a883
  • SHA1:
    92dbed9a976191f17357082391fd69c38847875e
  • SHA256:
    abecc0256e95bbe633bd3139e6baf60b95db22b8271878f3f35ae3c412ff557d
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
suspicious
Score: 29
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

URLs

Name Detection
http://www.innosetup.com/
http://www.jrsoftware.org/ishelp/index.php?topic=setupcmdline
http://www.remobjects.com/psU
Click to see the 2 hidden entries
http://www.remobjects.com/ps
http://www.jrsoftware.org/ishelp/index.php?topic=setupcmdlineSetupU

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Temp\is-O2DFQ.tmp\SecuriteInfo.com.not-a-virus.HEUR.AdWare.Win32.Convagent.gen.29670.14571.tmp
PE32 executable (GUI) Intel 80386, for MS Windows
#