Windows Analysis Report
sup.logical@gmail.com.exe

Overview

General Information

Sample name: sup.logical@gmail.com.exe
Analysis ID: 1541871
MD5: 8c26c5bb599b606cc549ceef0d9d2da3
SHA1: 86a373936df7e753f7284efc63bf8970e9a56870
SHA256: acc791703bc6e6ec9dcad7ef28ea5bcd1cf70f0a17412b28078daa66df5989d8
Infos:

Detection

TrojanRansom
Score: 96
Range: 0 - 100
Whitelisted: false
Confidence: 100%

Signatures

Multi AV Scanner detection for submitted file
Yara detected TrojanRansom
Connects to many different private IPs (likely to spread or exploit)
Connects to many different private IPs via SMB (likely to spread or exploit)
Contains functionality to compare user and computer (likely to detect sandboxes)
Infects executable files (exe, dll, sys, html)
Sigma detected: Invoke-Obfuscation CLIP+ Launcher
Sigma detected: Invoke-Obfuscation VAR+ Launcher
Sigma detected: Schtasks Creation Or Modification With SYSTEM Privileges
Tries to harvest and steal browser information (history, passwords, etc)
Uses schtasks.exe or at.exe to add and modify task schedules
Writes many files with high entropy
Abnormal high CPU Usage
Contains functionality to check if a debugger is running (IsDebuggerPresent)
Contains functionality to open a port and listen for incoming connection (possibly a backdoor)
Contains functionality to query CPU information (cpuid)
Contains functionality which may be used to detect a debugger (GetProcessHeap)
Creates a process in suspended mode (likely to inject code)
Detected potential crypto function
Found a high number of Window / User specific system calls (may be a loop to detect user behavior)
Found evasive API chain (date check)
May sleep (evasive loops) to hinder dynamic analysis
PE file contains sections with non-standard names
Queries the volume information (name, serial number etc) of a device
Sample execution stops while process was sleeping (likely an evasion)
Sample file is different than original file name gathered from version info
Sigma detected: PowerShell Module File Created By Non-PowerShell Process

Classification

AV Detection

barindex
Source: sup.logical@gmail.com.exe ReversingLabs: Detection: 47%

Exploits

barindex
Source: global traffic TCP traffic: 192.168.11.209:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.207:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.208:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.205:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.206:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.203:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.204:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.201:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.202:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.200:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.28:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.27:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.29:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.24:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.23:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.26:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.25:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.20:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.22:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.21:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.17:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.16:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.19:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.18:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.13:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.12:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.15:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.14:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.11:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.10:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.199:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.197:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.198:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.188:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.189:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.186:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.187:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.195:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.196:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.193:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.194:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.191:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.192:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.190:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.179:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.177:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.178:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.175:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.176:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.184:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.185:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.182:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.183:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.180:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.181:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.168:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.169:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.166:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.89:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.167:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.164:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.165:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.86:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.173:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.85:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.174:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.88:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.171:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.87:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.172:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.82:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.81:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.170:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.84:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.83:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.80:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.159:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.157:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.158:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.79:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.155:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.78:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.156:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.153:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.154:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.75:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.162:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.74:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.163:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.77:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.160:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.76:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.161:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.71:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.70:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.73:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.72:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.148:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.149:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.146:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.147:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.144:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.145:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.142:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.143:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.151:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.152:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.150:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.139:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.137:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.138:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.135:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.136:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.133:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.254:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.134:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.131:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.252:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.132:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.253:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.97:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.140:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.96:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.141:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.99:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.98:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.93:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.92:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.95:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.94:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.91:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.90:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.128:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.249:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.129:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.126:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.247:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.49:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.127:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.248:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.124:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.245:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.125:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.246:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.46:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.122:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.243:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.45:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.123:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.244:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.48:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.120:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.241:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.47:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.121:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.242:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.42:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.250:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.41:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.130:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.251:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.44:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.43:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.40:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.119:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.117:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.238:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.118:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.239:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.39:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.115:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.236:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.38:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.116:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.237:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.113:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.234:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.114:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.235:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.35:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.111:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.232:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.34:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.112:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.233:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.37:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.230:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.36:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.110:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.231:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.31:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.30:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.240:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.33:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.32:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.8:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.7:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.9:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.108:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.229:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.109:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.106:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.227:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.107:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.228:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.0:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.104:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.225:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.105:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.226:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.2:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.102:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.223:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.1:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.103:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.224:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.100:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.68:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.4:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.221:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.101:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.67:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.3:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.222:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.6:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.69:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.5:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.220:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.64:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.63:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.66:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.65:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.60:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.62:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.61:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.218:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.219:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.216:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.217:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.214:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.215:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.212:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.213:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.57:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.210:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.56:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.211:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.59:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.58:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.53:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.52:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.55:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.54:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.51:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.50:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.209:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.207:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.208:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.205:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.206:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.203:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.204:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.201:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.202:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.200:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.28:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.27:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.29:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.24:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.23:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.26:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.25:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.20:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.22:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.21:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.17:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.16:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.19:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.18:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.13:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.12:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.15:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.14:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.11:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.10:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.199:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.197:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.198:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.188:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.189:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.186:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.187:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.195:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.196:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.193:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.194:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.191:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.192:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.190:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.179:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.177:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.178:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.175:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.176:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.184:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.185:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.182:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.183:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.180:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.181:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.168:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.169:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.166:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.89:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.167:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.164:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.165:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.86:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.173:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.85:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.174:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.88:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.171:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.87:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.172:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.82:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.81:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.170:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.84:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.83:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.80:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.159:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.157:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.158:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.79:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.155:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.78:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.156:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.153:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.154:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.75:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.162:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.74:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.163:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.77:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.160:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.76:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.161:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.71:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.70:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.73:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.72:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.148:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.149:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.146:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.147:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.144:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.145:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.142:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.143:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.151:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.152:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.150:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.139:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.137:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.138:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.135:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.136:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.133:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.254:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.134:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.131:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.252:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.132:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.253:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.97:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.140:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.96:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.141:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.99:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.98:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.93:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.92:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.95:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.94:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.91:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.90:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.128:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.249:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.129:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.126:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.247:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.49:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.127:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.248:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.124:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.245:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.125:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.246:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.46:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.122:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.243:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.45:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.123:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.244:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.48:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.120:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.241:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.47:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.121:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.242:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.42:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.250:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.41:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.130:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.251:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.44:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.43:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.40:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.119:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.117:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.238:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.118:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.239:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.39:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.115:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.236:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.38:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.116:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.237:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.113:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.234:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.114:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.235:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.35:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.111:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.232:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.34:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.112:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.233:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.37:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.230:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.36:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.110:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.231:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.31:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.30:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.240:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.33:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.32:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.8:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.7:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.9:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.108:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.229:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.109:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.106:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.227:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.107:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.228:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.0:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.104:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.225:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.105:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.226:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.2:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.102:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.223:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.1:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.103:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.224:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.100:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.68:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.4:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.221:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.101:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.67:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.3:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.222:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.6:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.69:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.5:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.220:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.64:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.63:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.66:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.65:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.60:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.62:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.61:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.218:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.219:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.216:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.217:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.214:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.215:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.212:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.213:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.57:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.210:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.56:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.211:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.59:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.58:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.53:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.52:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.55:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.54:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.51:445 Jump to behavior
Source: global traffic TCP traffic: 192.168.11.50:445 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\DESIGNER\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ClickToRun\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\auxpad\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\insert\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\keypad\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\main\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\oskclearui\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\oskmenu\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\osknav\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\osknumpad\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\oskpred\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\symbols\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\OFFICE16\Office Setup Controller\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\VSTO\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\Services\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\System\ado\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\System\msadc\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\System\Ole DB\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\System\Ole DB\en-US\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Crashpad\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\default_apps\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Extensions\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Installer\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\MEIPreload\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\PrivacySandboxAttestationsPreloaded\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\VisualElements\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\WidevineCdm\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Internet Explorer\images\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Internet Explorer\SIGNUP\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\Office16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\PackageManifests\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Document Themes 16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Document Themes 16\Theme Colors\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Document Themes 16\Theme Effects\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Document Themes 16\Theme Fonts\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\fre\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Licenses\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Licenses16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\loc\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office15\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\1033\Bibliography\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\1033\DataServices\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\1033\QuickStyles\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\1036\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\3082\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ADDINS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ADDINS\EduWorks Data Streamer Add-In\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ADDINS\Microsoft Power Query for Excel Integrated\bin\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ADDINS\PowerPivot Excel Add-in\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ADDINS\PowerPivot Excel Add-in\Cartridges\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ADDINS\PowerPivot Excel Add-in\Resources\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\AI\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\AugLoop\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Bibliography\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Bibliography\Sort\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Bibliography\Style\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\BORDERS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Configuration\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\CONVERT\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\CONVERT\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Document Parts\1033\16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FloodgateExperiences\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FORMS\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_f14\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_f2\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_f3\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_f33\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_f4\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_f7\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_FA000000006\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_FA000000008\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_FA000000009\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_FA000000011\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_FA000000050\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_FA000000055\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_FA000000064\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_w1\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Library\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Library\Analysis\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Library\SOLVER\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\LivePersonaCard\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\LivePersonaCard\images\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\LivePersonaCardRollback\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\LivePersonaCardRollback\images\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\LogoImages\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\MEDIA\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\MSIPC\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ODBC Drivers\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ODBC Drivers\Salesforce\lib\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ODBC Drivers\Salesforce\lib\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\OneNote\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\osfFPA\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\OutlookAutoDiscover\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\OutlookReactNative\SearchView\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\PAGESIZE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\PersonaSpy\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\PROOF\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\SAMPLES\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000002\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000002\OfflineFiles\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000006\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000006\OfflineFiles\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000018\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000018\assets\src\assets\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000018\cardview\lib\native-common\assets\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000027\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000042\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000042\assets\assets\images\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000042\assets\assets\images\ios\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000049\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000054\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000054\OfflineFiles\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000058\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000062\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000063\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000067\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000068\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000068\assets\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000069\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000070\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000070\assets\src\assets\images\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000072\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000072\assets\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000076\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000076\assets\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000077\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000077\assets\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000083\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000087\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\SkypeSrv\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\TextInputIntelligence\en-us\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\TextInputIntelligence\en-us\prefilter\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Stationery\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Templates\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Templates\1033\ONENOTE\16\Stationery\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Templates\Presentation Designs\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\Common AppData\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\Common AppData\Microsoft Help\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\Fonts\private\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\DESIGNER\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\GRPHFLT\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Help\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\Cultures\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\DataModel\Cartridges\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\DataModel\Resources\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\LicensingEnforcement\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\Office Setup Controller\Office.en-us\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\PlatformCapabilities\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\PROOF\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Smart Tag\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Smart Tag\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Smart Tag\LISTS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Smart Tag\LISTS\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\TEXTCONV\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\AFTRNOON\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\ARCTIC\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\AXIS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\BLENDS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\BLUECALM\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\BLUEPRNT\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\BOLDSTRI\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\BREEZE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\CANYON\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\CAPSULES\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\CASCADE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\COMPASS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\CONCRETE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\DEEPBLUE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\ECHO\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\ECLIPSE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\EDGE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\EVRGREEN\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\EXPEDITN\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\ICE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\INDUST\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\IRIS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\JOURNAL\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\LAYERS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\LEVEL\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\NETWORK\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\PAPYRUS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\PIXEL\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\PROFILE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\QUAD\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\RADIAL\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\REFINED\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\RICEPAPR\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\RIPPLE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\RMNSQUE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\SATIN\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\SKY\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\SLATE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\SONORA\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\SPRING\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\STRTEDGE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\STUDIO\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\SUMIPNTG\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\WATER\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\WATERMAR\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\TRANSLAT\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\TRANSLAT\ENES\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\TRANSLAT\ENFR\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\TRANSLAT\ESEN\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\TRANSLAT\FREN\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Web Server Extensions\16\BIN\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\Cultures\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\VBA\VBA6\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\VBA\VBA7.1\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesX64\Microsoft Analysis Services\AS OLEDB\140\Cartridges\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesX64\Microsoft Analysis Services\AS OLEDB\140\Resources\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Analysis Services\AS OLEDB\140\Cartridges\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Analysis Services\AS OLEDB\140\Resources\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Office\Office16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Office\Office16\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\System\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\browser\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\browser\features\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\browser\META-INF\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\browser\VisualElements\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\defaults\pref\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\fonts\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\gmp-clearkey\0.1\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\META-INF\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\uninstall\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\MSBuild\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\af-za\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ar\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\az-Latn-AZ\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\bg\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\bs-Latn-BA\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ca\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\cs\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\cy-GB\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\da\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\de\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\el\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\en\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\es\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\et\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\eu\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\fa-IR\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\fabric-icons\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\fi\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\fr\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\gl\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\he\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\hi\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\hr\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\hu\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\id\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\is-IS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\it\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ja\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ka-GE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\kk-KZ\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ko\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\lt\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\lv\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ms\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\nb\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\nl\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\nn-NO\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\pl\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\pt\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\pt-br\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\pt-pt\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ro\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ru\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\sk\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\sl\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\sq-AL\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\sr-cyrl\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\sr-latn\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\sv\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\th\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\tr\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\uk\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\vi\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\zh-hans\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\zh-hant\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\static\css\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\static\js\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\static\media\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Reference Assemblies\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\ruxim\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\ruxim\Logs\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\UNP\Logs\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows Defender\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows Defender\en-GB\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows Defender\en-US\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows Media Player\Media Renderer\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows Media Player\Network Sharing\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows Media Player\Skins\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows NT\TableTextService\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows Security\BrowserCore\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5131.0_x64__8j3eq9eme6ctt\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.BingWeather_4.53.51922.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.DesktopAppInstaller_1.20.1881.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.GetHelp_10.2303.10961.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.Messaging_4.1901.60404.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.MicrosoftEdge.Stable_93.0.961.47_neutral__8wekyb3d8bbwe\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.MicrosoftEdge.Stable_93.0.961.52_neutral__8wekyb3d8bbwe\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.MicrosoftEdge.Stable_94.0.992.31_neutral__8wekyb3d8bbwe\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_18.2304.1202.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_18.2304.1202.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_4.6.0.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.MixedReality.Portal_2000.21051.1282.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Framework.1.7_1.7.27413.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Framework.1.7_1.7.27413.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Framework.2.2_2.2.29512.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Framework.2.2_2.2.29512.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Runtime.1.7_1.7.27422.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Runtime.1.7_1.7.27422.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Runtime.2.2_2.2.28604.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Runtime.2.2_2.2.28604.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.OneConnect_5.2308.2294.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.People_10.2202.100.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.ScreenSketch_10.2008.3001.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.StorePurchaseApp_22305.1401.5.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.0_2.1810.18004.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.0_2.1810.18004.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.1_2.11906.6001.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.1_2.11906.6001.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.3_2.32002.13001.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.3_2.32002.13001.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.4_2.42007.9001.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.4_2.42007.9001.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.6_2.62108.18004.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.6_2.62108.18004.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.7_7.2208.15002.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.7_7.2208.15002.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.8_8.2310.30001.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.8_8.2310.30001.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.VCLibs.140.00.UWPDesktop_14.0.32530.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.VCLibs.140.00.UWPDesktop_14.0.33728.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.VCLibs.140.00.UWPDesktop_14.0.33728.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.VCLibs.140.00_14.0.32530.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.VCLibs.140.00_14.0.33519.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.VCLibs.140.00_14.0.33519.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.Wallet_2.4.18324.0_neutral_~_8wekyb3d8bbwe\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.Wallet_2.4.18324.0_neutral_~_8wekyb3d8bbwe\AppxMetadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2023.10070.17002.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_11.2403.8.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.802.31.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.802.31.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.934.1904.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.934.1904.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2210.0.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsCamera_2023.2305.4.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsFeedbackHub_1.2304.1243.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsMaps_11.2403.4.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.XboxGameOverlay_1.54.4001.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.9022.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.XboxSpeechToTextOverlay_1.21.13002.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23062.153.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.ZuneMusic_11.2305.4.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.22091.10041.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Diagnostics\Comprehensive\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Diagnostics\Simple\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Test\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Test\Modules\Example1.Diagnostics\Diagnostics\Simple\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Test\Modules\Example2.Diagnostics\1.0.1\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Test\Modules\Example2.Diagnostics\1.0.1\Diagnostics\Simple\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Test\Modules\Example3.Diagnostics\1.1.1\Diagnostics\Simple\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Test\Modules\Example3.Diagnostics\2.0.1\Diagnostics\Simple\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\en-US\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\MSFT_PackageManagement\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\MSFT_PackageManagement\en-GB\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\MSFT_PackageManagement\en-US\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\MSFT_PackageManagementSource\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\MSFT_PackageManagementSource\en-GB\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\MSFT_PackageManagementSource\en-US\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\bin\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\en-US\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\Examples\Calculator\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\Examples\Validator\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\Functions\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\Functions\Assertions\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\Snippets\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PowerShellGet\1.0.0.1\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PowerShellGet\1.0.0.1\en-US\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PSReadline\2.0.0\#Recover-Files.txt Jump to behavior
Source: sup.logical@gmail.com.exe Static PE information: HIGH_ENTROPY_VA, DYNAMIC_BASE, NX_COMPAT, TERMINAL_SERVER_AWARE
Source: Binary string: C:\\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\Symbols\winload_prod.pdb\36C00AF489401A26639ABBA698DE76062\* source: sup.logical@gmail.com.exe, 00000000.00000003.14971499425.000001E5726A1000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14970668221.000001E572688000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Users\user\AppData\Local\Temp\Symbols\winload_prod.pdb source: sup.logical@gmail.com.exe, 00000005.00000003.18013641216.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18009283703.0000029161EDC000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18018326695.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18010018573.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Users\user\AppData\Local\Temp\Symbols\winload_prod.pdb\36C00AF489401A26639ABBA698DE76062te\* source: sup.logical@gmail.com.exe, 00000005.00000003.18009283703.0000029161F44000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18024262280.0000029161F44000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18018326695.0000029161F44000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18013641216.0000029161F44000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: \??\C:\Users\user\AppData\Local\Temp\Symbols\ntkrnlmp.pdb\*M source: sup.logical@gmail.com.exe, 00000005.00000003.18024262280.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18013641216.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18009283703.0000029161EDC000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18018326695.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18010018573.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Intel\Gamesmotionslication Data\Temp\Symbols\winload_prod.pdb\36C00AF489401A26639ABBA698DE76062yctt! source: sup.logical@gmail.com.exe, 00000000.00000003.14971499425.000001E5726A1000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14970668221.000001E572688000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Users\user\AppData\Local\Temp\Symbols\winload_prod.pdb\\* source: sup.logical@gmail.com.exe, 00000005.00000003.18013641216.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18009283703.0000029161EDC000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18018326695.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18010018573.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\Symbols\ntkrnlmp.pdb\47114209A62F3B9930F6B8998DFD4A991\*Appl] source: sup.logical@gmail.com.exe, 00000000.00000003.14740164536.000001E57F87C000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14740087445.000001E57F87A000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\Symbols\ntkrnlmp.pdb\47114209A62F3B9930F6B8998DFD4A991tion Dy source: sup.logical@gmail.com.exe, 00000000.00000003.14740164536.000001E57F87C000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14740087445.000001E57F87A000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\Symbols\ntkrnlmp.pdb\47114209A62F3B9930F6B8998DFD4A991yatio source: sup.logical@gmail.com.exe, 00000000.00000003.14740164536.000001E57F87C000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14740087445.000001E57F87A000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Software Reporter Toolata\Temp\Symbols\winload_prod.pdb\36C00AF489401A26639ABBA698DE76062y source: sup.logical@gmail.com.exe, 00000000.00000003.14971499425.000001E5726A1000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14970668221.000001E572688000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\Symbols\ntkrnlmp.pdb\47114209A62F3B9930F6B8998DFD4A991ata\Lo source: sup.logical@gmail.com.exe, 00000000.00000003.14740164536.000001E57F87C000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14740087445.000001E57F87A000.00000004.00000020.00020000.00000000.sdmp

Spreading

barindex
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe System file written: C:\Program Files\Microsoft Office\Office16\OSPP.HTM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2E5170 FindFirstFileExW,GetLastError,lstrcmpW,lstrcmpW,FindNextFileW,FindClose, 5_2_00007FF6FC2E5170
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2F89C0 FindFirstFileExW, 5_2_00007FF6FC2F89C0
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2E3500 GetLogicalDriveStringsW, 5_2_00007FF6FC2E3500
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\#Recover-Files.txt Jump to behavior
Source: unknown TCP traffic detected without corresponding DNS query: 23.43.85.9
Source: unknown TCP traffic detected without corresponding DNS query: 142.251.40.195
Source: unknown TCP traffic detected without corresponding DNS query: 142.251.40.195
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: unknown TCP traffic detected without corresponding DNS query: 20.25.241.18
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5\#Recover-Files.txt Jump to behavior
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: http://fb.me/use-check-prop-types
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: http://stackoverflow.com/questions/30030031)
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://accounts.firefox.com/
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://basket.mozilla.org/news/subscribe/
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://basket.mozilla.org/news/subscribe_sms/
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://basket.mozilla.org/subscribe.json
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://developer.mozilla.org/en-US/Add-ons/WebExtensions/manifest.json/commands#Key_combinations
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://fb.me/react-polyfills
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://firefox.settings.services.mozilla.com/v1/buckets/main/collections/nimbus-desktop-experiments
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://getpocket.com/
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://getpocket.com/recommendations
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://github.com/mozilla/activity-stream/blob/master/content-src/asrouter/docs/debugging-docs.md
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://github.com/projectfluent/fluent.js/wiki/React-Overlays.
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://github.com/zertosh/loose-envify)
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://help.getpocket.com/article/1142-firefox-new-tab-recommendations-faq
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://img-getpocket.cdn.mozilla.net/
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://reactjs.org/docs/error-decoder.html?invariant=
Source: scriptCache-child-current.bin.5.dr String found in binary or memory: https://snippets.mozilla.com/show/
Source: unknown Network traffic detected: HTTP traffic on port 49699 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49699
Source: unknown Network traffic detected: HTTP traffic on port 49784 -> 443

Spam, unwanted Advertisements and Ransom Demands

barindex
Source: Yara match File source: Process Memory Space: sup.logical@gmail.com.exe PID: 4260, type: MEMORYSTR
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Intel\CUIPromotions\Images\000000_INTEL.ODYSSEY_ADDITIONAL_GAMEPLAY_ASSET_CUI.2.3-600x300.png entropy: 7.99897330545 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Mozilla\Firefox\Profiles\ol7uiqa8.default-release\cache2\entries\6ABAD3ABA9A177B8A0F8ECEF73ED0888C272E70F entropy: 7.99395308925 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\Low\MSIMGSIZ.DAT entropy: 7.99367947978 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\ConnectedDevicesPlatform\L.user\ActivitiesCache.db entropy: 7.99980056742 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Google\Chrome\User Data\first_party_sets.db entropy: 7.99231573258 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Settings\settings.dat.LOG2 entropy: 7.99456724456 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Settings\settings.dat.LOG1 entropy: 7.9949793494 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\D3DSCache\3534848bb9f4cb71\6F75932F-7DFC-4FB0-B4B8-12DE1AC415DA_VEN_8086&DEV_3E98&SUBSYS_3E98&REV_2.idx entropy: 7.99476790156 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Mozilla\Firefox\Profiles\ol7uiqa8.default-release\cache2\entries\E34CCF2F421FB2762468857BBB9C7CF2AC2FBB09 entropy: 7.99838957354 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Adobe\Acrobat\DC\AdobeSysFnt21.lst entropy: 7.99782124065 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Adobe\Acrobat\DC\IconCacheRdr65536.dat entropy: 7.99879289396 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\AC\AppCache\PMAQH2N6\81\rppDvk77e2D_U7QJxDHv6SXyEy8.br[1].js entropy: 7.99408934285 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\AC\AppCache\PMAQH2N6\81\rDnfUAqNFBDSCW_sAZVtgTZYfeY.br[1].js entropy: 7.99782573432 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\AC\AppCache\PMAQH2N6\81\tlNPwMYUrz38JMaul4z4EwjtT-w.br[1].js entropy: 7.99134929153 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\AC\AppCache\PMAQH2N6\81\v_mVxhBtqooP5Yn9_SsJyuL6xyk[1].css entropy: 7.99168564537 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\AC\AppCache\PMAQH2N6\81\_aHBOJxMTEYV4PBsRJl-t3xnElM.br[1].js entropy: 7.99927526715 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\AC\AppCache\PMAQH2N6\81\sejSEZ7tbpy5nc29yFtIGNVOOIM.br[1].js entropy: 7.99777563451 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\Microsoft_Office_ONENOTE_EXE_15 entropy: 7.9920951362 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Comms\UnistoreDB\USS.jtx entropy: 7.99993377693 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\Microsoft_Office_EXCEL_EXE_15 entropy: 7.99191987585 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\Microsoft_Office_POWERPNT_EXE_15 entropy: 7.99322619235 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\Microsoft_Office_OUTLOOK_EXE_15 entropy: 7.99057394487 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\Microsoft_Office_WINWORD_EXE_15 entropy: 7.99191515949 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\Microsoft_Office_SETLANG_EXE_15 entropy: 7.99084310162 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\Microsoft_Windows_Computer entropy: 7.99330787647 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\Microsoft_SkyDrive_Desktop entropy: 7.99262776089 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\https___java_com_ entropy: 7.99232152065 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\https___java_com_help entropy: 7.99145074761 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\Microsoft_Windows_Shell_RunDialog entropy: 7.99217140097 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\Microsoft_Windows_RemoteDesktop entropy: 7.99269067909 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\DeviceSearchCache\AppCache133742914629986069.txt entropy: 7.99762682149 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\DeviceSearchCache\AppCache133743145220135052.txt entropy: 7.99760042264 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\DeviceSearchCache\AppCache133742928933571012.txt entropy: 7.99792312576 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\ShellFeeds\IDX_CONTENT_TASKBARHEADLINES.json entropy: 7.99912056755 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\DeviceSearchCache\SettingsCache.txt entropy: 7.99970600917 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\Microsoft_Windows_MediaPlayer32 entropy: 7.99235027617 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\Microsoft_Windows_Explorer entropy: 7.99275088127 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\LocalState\AppIconCache\100\Microsoft_Windows_ControlPanel entropy: 7.99233197675 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\LocalState\HxCommAlwaysOnLog_Old.etl entropy: 7.99485684154 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Google\Chrome\User Data\optimization_guide_model_store\15\E6DC4029A1E4B4C1\1834E8353BA7A499\override_list.pb.gz entropy: 7.99955972151 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\TempState\StartUnifiedTileModelCache.dat entropy: 7.99448906433 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Documents and Settings\user\AppData\Local\Adobe\Acrobat\DC\AdobeSysFnt21.lst.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99782124065 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Documents and Settings\user\AppData\Local\Adobe\Acrobat\DC\IconCacheRdr65536.dat.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99879289396 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Comms\UnistoreDB\USS.jtx.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99993377693 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\first_party_sets.db.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99231573258 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Low\MSIMGSIZ.DAT.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99367947978 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\ConnectedDevicesPlatform\L.user\ActivitiesCache.db.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99980056742 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\fre\StartMenu_Win7.wmv entropy: 7.99954440958 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\fre\StartMenu_Win10.mp4 entropy: 7.99728927432 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\fre\StartMenu_Win10_RTL.mp4 entropy: 7.99738681507 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\Licenses\c2rpridslicensefiles_auto.xml entropy: 7.99623877762 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\fre\StartMenu_Win8_RTL.mp4 entropy: 7.99713682565 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\fre\StartMenu_Win8.mp4 entropy: 7.99703062164 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\Licenses16\c2rpridslicensefiles_auto.xml entropy: 7.9986279824 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\master_preferences entropy: 7.99784847765 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\chrome_100_percent.pak entropy: 7.99975158593 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\chrome_200_percent.pak entropy: 7.99988144976 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\resources.pak entropy: 7.99997839202 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\Office16\excel-udf-host.win32.bundle entropy: 7.99846386694 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Installer\chrome.7z entropy: 7.99999955028 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\Office16\excel-udf-host.win32.new.bundle entropy: 7.99930674905 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\found.000\30000000-RUXIMLog.029.etl entropy: 7.9981909187 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\af.pak entropy: 7.99959133452 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\am.pak entropy: 7.9997480453 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\ar.pak entropy: 7.99976772656 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\bg.pak entropy: 7.99973383589 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\bn.pak entropy: 7.99983042392 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\ca.pak entropy: 7.99964925223 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\cs.pak entropy: 7.99959663602 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\da.pak entropy: 7.99957898136 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\de.pak entropy: 7.99960301801 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\el.pak entropy: 7.99981332192 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\en-GB.pak entropy: 7.99951855298 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\en-US.pak entropy: 7.99957560659 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\es-419.pak entropy: 7.99965317676 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\es.pak entropy: 7.99964622203 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\et.pak entropy: 7.99959383808 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\fa.pak entropy: 7.99973938144 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\fi.pak entropy: 7.99951477115 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\fil.pak entropy: 7.99962650051 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\fr.pak entropy: 7.99962111075 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\gu.pak entropy: 7.99981516476 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\he.pak entropy: 7.99966377076 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\hi.pak entropy: 7.99982641968 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\hr.pak entropy: 7.99959985981 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\hu.pak entropy: 7.99960433682 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\id.pak entropy: 7.9995778482 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\it.pak entropy: 7.99958987038 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\ja.pak entropy: 7.99967663402 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\kn.pak entropy: 7.99981996841 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\ko.pak entropy: 7.99958977683 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\lt.pak entropy: 7.99966720299 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\lv.pak entropy: 7.99967824643 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\ml.pak entropy: 7.99986319872 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\mr.pak entropy: 7.99981810365 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\ms.pak entropy: 7.99961049044 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\nb.pak entropy: 7.99950829461 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\nl.pak entropy: 7.99958942247 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\pl.pak entropy: 7.99961732486 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\pt-BR.pak entropy: 7.99962034288 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\pt-PT.pak entropy: 7.99958032322 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\ro.pak entropy: 7.99961924492 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\found.000\30000000-RUXIMLog.029.etl.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.9981909187 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\master_preferences.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99784847765 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\chrome_100_percent.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99975158593 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\chrome_200_percent.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99988144976 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\resources.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99997839202 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Installer\chrome.7z.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99999955028 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\af.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99959133452 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\am.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.9997480453 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\ar.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99976772656 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\bg.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99973383589 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\bn.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99983042392 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\ca.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99964925223 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\cs.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99959663602 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\da.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99957898136 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\de.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99960301801 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\el.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99981332192 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\en-GB.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99951855298 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\en-US.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99957560659 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\es-419.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99965317676 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\es.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99964622203 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\et.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99959383808 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\fa.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99973938144 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\fi.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99951477115 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\fil.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99962650051 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\fr.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99962111075 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\gu.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99981516476 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\he.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99966377076 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\hi.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99982641968 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\hr.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99959985981 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\hu.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99960433682 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\id.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.9995778482 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\it.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99958987038 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\ja.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99967663402 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\kn.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99981996841 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\ko.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99958977683 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\lt.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99966720299 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\lv.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99967824643 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\ml.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99986319872 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\mr.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99981810365 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\ms.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99961049044 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\nb.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99950829461 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\nl.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99958942247 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\pl.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99961732486 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\pt-BR.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99962034288 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\pt-PT.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99958032322 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\ro.pak.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99961924492 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\fre\StartMenu_Win10.mp4.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99728927432 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\fre\StartMenu_Win10_RTL.mp4.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99738681507 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\fre\StartMenu_Win7.wmv.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99954440958 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\fre\StartMenu_Win8.mp4.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99703062164 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\fre\StartMenu_Win8_RTL.mp4.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99713682565 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\Licenses\c2rpridslicensefiles_auto.xml.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.99623877762 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\Microsoft Office\root\Licenses16\c2rpridslicensefiles_auto.xml.id[XX-B2750012].[sup.logical@gmail.com].hawk (copy) entropy: 7.9986279824 Jump to dropped file
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process Stats: CPU usage > 6%
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2C7E50 5_2_00007FF6FC2C7E50
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2EB640 5_2_00007FF6FC2EB640
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2E76A0 5_2_00007FF6FC2E76A0
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2C1010 5_2_00007FF6FC2C1010
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2D3060 5_2_00007FF6FC2D3060
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2E9050 5_2_00007FF6FC2E9050
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2E98C0 5_2_00007FF6FC2E98C0
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2D38C0 5_2_00007FF6FC2D38C0
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2E5170 5_2_00007FF6FC2E5170
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2D41B0 5_2_00007FF6FC2D41B0
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2EA9E0 5_2_00007FF6FC2EA9E0
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2C19C0 5_2_00007FF6FC2C19C0
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2DA3A5 5_2_00007FF6FC2DA3A5
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2E6C50 5_2_00007FF6FC2E6C50
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2D2440 5_2_00007FF6FC2D2440
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2D4CA0 5_2_00007FF6FC2D4CA0
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2D5CB8 5_2_00007FF6FC2D5CB8
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2E3500 5_2_00007FF6FC2E3500
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2F6D6C 5_2_00007FF6FC2F6D6C
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2FBDAC 5_2_00007FF6FC2FBDAC
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2F5628 5_2_00007FF6FC2F5628
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2D8E13 5_2_00007FF6FC2D8E13
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2D7E73 5_2_00007FF6FC2D7E73
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2D7693 5_2_00007FF6FC2D7693
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2F3E8C 5_2_00007FF6FC2F3E8C
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2C1E80 5_2_00007FF6FC2C1E80
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2CEF30 5_2_00007FF6FC2CEF30
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2F2F6C 5_2_00007FF6FC2F2F6C
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2C3FC0 5_2_00007FF6FC2C3FC0
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2C3020 5_2_00007FF6FC2C3020
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2C5FFB 5_2_00007FF6FC2C5FFB
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2F789C 5_2_00007FF6FC2F789C
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2C68C0 5_2_00007FF6FC2C68C0
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2FB920 5_2_00007FF6FC2FB920
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2F3154 5_2_00007FF6FC2F3154
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2F3984 5_2_00007FF6FC2F3984
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2C7180 5_2_00007FF6FC2C7180
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2F89C0 5_2_00007FF6FC2F89C0
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2D8A23 5_2_00007FF6FC2D8A23
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2F721C 5_2_00007FF6FC2F721C
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2E3A00 5_2_00007FF6FC2E3A00
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2C5250 5_2_00007FF6FC2C5250
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2C6A40 5_2_00007FF6FC2C6A40
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2D72A3 5_2_00007FF6FC2D72A3
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2D7A83 5_2_00007FF6FC2D7A83
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC300B58 5_2_00007FF6FC300B58
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2F333C 5_2_00007FF6FC2F333C
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2C4BD0 5_2_00007FF6FC2C4BD0
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2C3450 5_2_00007FF6FC2C3450
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2C64A0 5_2_00007FF6FC2C64A0
Source: sup.logical@gmail.com.exe, 00000005.00000003.18024262280.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: OriginalFilenameSystemSettings.exe.muij% vs sup.logical@gmail.com.exe
Source: sup.logical@gmail.com.exe, 00000005.00000003.18018326695.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: OriginalFilenameSystemSettings.exe.muij% vs sup.logical@gmail.com.exe
Source: sup.logical@gmail.com.exe, 00000005.00000002.18073805682.0000029161EBF000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: OriginalFilenameCmd.Exej% vs sup.logical@gmail.com.exe
Source: classification engine Classification label: mal96.rans.spre.spyw.expl.evad.winEXE@12/2881@0/100
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2EB410 CreateToolhelp32Snapshot,Process32FirstW,CloseHandle, 5_2_00007FF6FC2EB410
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Program Files\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Mutant created: \Sessions\1\BaseNamedObjects\hsfjuukjzloqu28oajh727190
Source: C:\Windows\System32\conhost.exe Mutant created: \Sessions\1\BaseNamedObjects\Local\SM0:4788:304:WilStaging_02
Source: C:\Windows\System32\conhost.exe Mutant created: \BaseNamedObjects\Local\SM0:7428:120:WilError_03
Source: C:\Windows\System32\conhost.exe Mutant created: \Sessions\1\BaseNamedObjects\Local\SM0:4788:120:WilError_03
Source: C:\Windows\System32\conhost.exe Mutant created: \BaseNamedObjects\Local\SM0:7428:304:WilStaging_02
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Mutant created: \BaseNamedObjects\hsfjuukjzloqu28oajh727190
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File created: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\#Recover-Files.txt Jump to behavior
Source: sup.logical@gmail.com.exe Static PE information: Section: .text IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File read: C:\Users\user\Desktop\desktop.ini Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Key opened: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers Jump to behavior
Source: sup.logical@gmail.com.exe ReversingLabs: Detection: 47%
Source: unknown Process created: C:\Users\user\Desktop\sup.logical@gmail.com.exe "C:\Users\user\Desktop\sup.logical@gmail.com.exe"
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process created: C:\Windows\System32\cmd.exe "C:\Windows\System32\cmd.exe" /c SCHTASKS.exe /Create /RU "NT AUTHORITY\SYSTEM" /sc onstart /TN "Windows Update ALPHV" /TR "C:\Users\user\Desktop\sup.logical@gmail.com.exe" /F
Source: C:\Windows\System32\cmd.exe Process created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Windows\System32\cmd.exe Process created: C:\Windows\System32\schtasks.exe SCHTASKS.exe /Create /RU "NT AUTHORITY\SYSTEM" /sc onstart /TN "Windows Update ALPHV" /TR "C:\Users\user\Desktop\sup.logical@gmail.com.exe" /F
Source: unknown Process created: C:\Users\user\Desktop\sup.logical@gmail.com.exe C:\Users\user\Desktop\sup.logical@gmail.com.exe
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process created: C:\Windows\System32\cmd.exe "C:\Windows\System32\cmd.exe" /c SCHTASKS.exe /Create /RU "NT AUTHORITY\SYSTEM" /sc onstart /TN "Windows Update ALPHV" /TR "C:\Users\user\Desktop\sup.logical@gmail.com.exe" /F
Source: C:\Windows\System32\cmd.exe Process created: C:\Windows\System32\conhost.exe C:\Windows\system32\conhost.exe 0xffffffff -ForceV1
Source: C:\Windows\System32\cmd.exe Process created: C:\Windows\System32\schtasks.exe SCHTASKS.exe /Create /RU "NT AUTHORITY\SYSTEM" /sc onstart /TN "Windows Update ALPHV" /TR "C:\Users\user\Desktop\sup.logical@gmail.com.exe" /F
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process created: C:\Windows\System32\cmd.exe "C:\Windows\System32\cmd.exe" /c SCHTASKS.exe /Create /RU "NT AUTHORITY\SYSTEM" /sc onstart /TN "Windows Update ALPHV" /TR "C:\Users\user\Desktop\sup.logical@gmail.com.exe" /F Jump to behavior
Source: C:\Windows\System32\cmd.exe Process created: C:\Windows\System32\schtasks.exe SCHTASKS.exe /Create /RU "NT AUTHORITY\SYSTEM" /sc onstart /TN "Windows Update ALPHV" /TR "C:\Users\user\Desktop\sup.logical@gmail.com.exe" /F Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process created: C:\Windows\System32\cmd.exe "C:\Windows\System32\cmd.exe" /c SCHTASKS.exe /Create /RU "NT AUTHORITY\SYSTEM" /sc onstart /TN "Windows Update ALPHV" /TR "C:\Users\user\Desktop\sup.logical@gmail.com.exe" /F Jump to behavior
Source: C:\Windows\System32\cmd.exe Process created: C:\Windows\System32\schtasks.exe SCHTASKS.exe /Create /RU "NT AUTHORITY\SYSTEM" /sc onstart /TN "Windows Update ALPHV" /TR "C:\Users\user\Desktop\sup.logical@gmail.com.exe" /F
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: apphelp.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: edgegdi.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: rstrtmgr.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: ncrypt.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: ntasn1.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: netapi32.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: iphlpapi.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: shunimpl.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: shunimpl.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: shunimpl.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: windows.storage.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: wldp.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: kernel.appcore.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: uxtheme.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: propsys.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: profapi.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: edputil.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: urlmon.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: iertutil.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: srvcli.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: netutils.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: windows.staterepositoryps.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: sspicli.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: wintypes.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: appresolver.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: bcp47langs.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: slc.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: userenv.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: sppc.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: onecorecommonproxystub.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: onecoreuapcommonproxystub.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: cryptsp.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: rsaenh.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: cryptbase.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: mswsock.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: napinsp.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: pnrpnsp.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: wshbth.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: nlaapi.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: dnsapi.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: winrnr.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: fwpuclnt.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: rasadhlp.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: cscapi.dll Jump to behavior
Source: C:\Windows\System32\schtasks.exe Section loaded: kernel.appcore.dll Jump to behavior
Source: C:\Windows\System32\schtasks.exe Section loaded: taskschd.dll Jump to behavior
Source: C:\Windows\System32\schtasks.exe Section loaded: sspicli.dll Jump to behavior
Source: C:\Windows\System32\schtasks.exe Section loaded: xmllite.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: edgegdi.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: rstrtmgr.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: ncrypt.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: ntasn1.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: netapi32.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: iphlpapi.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: shunimpl.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: shunimpl.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: shunimpl.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: windows.storage.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: wldp.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: kernel.appcore.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: propsys.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: profapi.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: edputil.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: urlmon.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: iertutil.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: srvcli.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: netutils.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: windows.staterepositoryps.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: sspicli.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: wintypes.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: appresolver.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: bcp47langs.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: slc.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: userenv.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: sppc.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: onecorecommonproxystub.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: onecoreuapcommonproxystub.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: cryptsp.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: rsaenh.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: cryptbase.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: mswsock.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: napinsp.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: pnrpnsp.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: wshbth.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: nlaapi.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: dnsapi.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: winrnr.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: fwpuclnt.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: rasadhlp.dll Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Section loaded: cscapi.dll Jump to behavior
Source: C:\Windows\System32\schtasks.exe Section loaded: kernel.appcore.dll
Source: C:\Windows\System32\schtasks.exe Section loaded: edgegdi.dll
Source: C:\Windows\System32\schtasks.exe Section loaded: taskschd.dll
Source: C:\Windows\System32\schtasks.exe Section loaded: sspicli.dll
Source: C:\Windows\System32\schtasks.exe Section loaded: xmllite.dll
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Key value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5E5F29CE-E0A8-49D3-AF32-7A7BDC173478}\InProcServer32 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\DESIGNER\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ClickToRun\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\auxpad\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\insert\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\keypad\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\main\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\oskclearui\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\oskmenu\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\osknav\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\osknumpad\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\oskpred\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\ink\fsdefinitions\symbols\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\OFFICE16\Office Setup Controller\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\microsoft shared\VSTO\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\Services\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\System\ado\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\System\msadc\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\System\Ole DB\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Common Files\System\Ole DB\en-US\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Crashpad\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\default_apps\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Extensions\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Installer\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\Locales\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\MEIPreload\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\PrivacySandboxAttestationsPreloaded\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\VisualElements\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Google\Chrome\Application\128.0.6613.120\WidevineCdm\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Internet Explorer\images\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Internet Explorer\SIGNUP\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\Office16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\PackageManifests\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Document Themes 16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Document Themes 16\Theme Colors\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Document Themes 16\Theme Effects\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Document Themes 16\Theme Fonts\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\fre\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Licenses\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Licenses16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\loc\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office15\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\1033\Bibliography\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\1033\DataServices\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\1033\QuickStyles\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\1036\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\3082\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ADDINS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ADDINS\EduWorks Data Streamer Add-In\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ADDINS\Microsoft Power Query for Excel Integrated\bin\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ADDINS\PowerPivot Excel Add-in\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ADDINS\PowerPivot Excel Add-in\Cartridges\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ADDINS\PowerPivot Excel Add-in\Resources\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\AI\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\AugLoop\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Bibliography\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Bibliography\Sort\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Bibliography\Style\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\BORDERS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Configuration\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\CONVERT\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\CONVERT\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Document Parts\1033\16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FloodgateExperiences\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FORMS\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_f14\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_f2\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_f3\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_f33\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_f4\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_f7\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_FA000000006\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_FA000000008\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_FA000000009\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_FA000000011\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_FA000000050\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_FA000000055\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_FA000000064\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\FPA_w1\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Library\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Library\Analysis\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\Library\SOLVER\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\LivePersonaCard\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\LivePersonaCard\images\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\LivePersonaCardRollback\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\LivePersonaCardRollback\images\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\LogoImages\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\MEDIA\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\MSIPC\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ODBC Drivers\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ODBC Drivers\Salesforce\lib\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\ODBC Drivers\Salesforce\lib\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\OneNote\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\osfFPA\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\OutlookAutoDiscover\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\OutlookReactNative\SearchView\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\PAGESIZE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\PersonaSpy\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\PROOF\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\SAMPLES\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000002\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000002\OfflineFiles\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000006\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000006\OfflineFiles\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000018\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000018\assets\src\assets\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000018\cardview\lib\native-common\assets\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000027\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000042\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000042\assets\assets\images\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000042\assets\assets\images\ios\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000049\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000054\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000054\OfflineFiles\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000058\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000062\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000063\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000067\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000068\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000068\assets\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000069\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000070\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000070\assets\src\assets\images\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000072\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000072\assets\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000076\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000076\assets\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000077\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000077\assets\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000083\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\sdxs\FA000000087\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\SkypeSrv\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\TextInputIntelligence\en-us\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Office16\TextInputIntelligence\en-us\prefilter\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Stationery\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Templates\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Templates\1033\ONENOTE\16\Stationery\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\Templates\Presentation Designs\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\Common AppData\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\Common AppData\Microsoft Help\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\Fonts\private\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\DESIGNER\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\GRPHFLT\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Help\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\Cultures\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\DataModel\Cartridges\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\DataModel\Resources\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\LicensingEnforcement\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\Office Setup Controller\Office.en-us\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\PlatformCapabilities\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\PROOF\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Smart Tag\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Smart Tag\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Smart Tag\LISTS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Smart Tag\LISTS\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\TEXTCONV\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\AFTRNOON\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\ARCTIC\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\AXIS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\BLENDS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\BLUECALM\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\BLUEPRNT\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\BOLDSTRI\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\BREEZE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\CANYON\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\CAPSULES\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\CASCADE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\COMPASS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\CONCRETE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\DEEPBLUE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\ECHO\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\ECLIPSE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\EDGE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\EVRGREEN\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\EXPEDITN\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\ICE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\INDUST\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\IRIS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\JOURNAL\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\LAYERS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\LEVEL\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\NETWORK\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\PAPYRUS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\PIXEL\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\PROFILE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\QUAD\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\RADIAL\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\REFINED\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\RICEPAPR\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\RIPPLE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\RMNSQUE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\SATIN\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\SKY\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\SLATE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\SONORA\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\SPRING\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\STRTEDGE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\STUDIO\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\SUMIPNTG\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\WATER\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\THEMES16\WATERMAR\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\TRANSLAT\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\TRANSLAT\ENES\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\TRANSLAT\ENFR\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\TRANSLAT\ESEN\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\TRANSLAT\FREN\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Web Server Extensions\16\BIN\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\Cultures\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\VBA\VBA6\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\VBA\VBA7.1\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesX64\Microsoft Analysis Services\AS OLEDB\140\Cartridges\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesX64\Microsoft Analysis Services\AS OLEDB\140\Resources\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Analysis Services\AS OLEDB\140\Cartridges\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Analysis Services\AS OLEDB\140\Resources\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Office\Office16\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\ProgramFilesX86\Microsoft Office\Office16\1033\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Microsoft Office\root\vfs\System\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\browser\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\browser\features\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\browser\META-INF\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\browser\VisualElements\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\defaults\pref\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\fonts\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\gmp-clearkey\0.1\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\META-INF\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Mozilla Firefox\uninstall\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\MSBuild\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\af-za\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ar\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\az-Latn-AZ\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\bg\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\bs-Latn-BA\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ca\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\cs\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\cy-GB\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\da\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\de\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\el\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\en\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\es\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\et\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\eu\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\fa-IR\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\fabric-icons\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\fi\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\fr\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\gl\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\he\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\hi\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\hr\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\hu\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\id\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\is-IS\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\it\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ja\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ka-GE\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\kk-KZ\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ko\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\lt\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\lv\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ms\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\nb\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\nl\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\nn-NO\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\pl\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\pt\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\pt-br\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\pt-pt\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ro\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\ru\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\sk\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\sl\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\sq-AL\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\sr-cyrl\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\sr-latn\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\sv\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\th\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\tr\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\uk\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\vi\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\zh-hans\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\resources\zh-hant\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\static\css\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\static\js\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\PCHealthCheck\ux\static\media\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Reference Assemblies\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\ruxim\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\ruxim\Logs\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\UNP\Logs\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows Defender\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows Defender\en-GB\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows Defender\en-US\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows Media Player\Media Renderer\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows Media Player\Network Sharing\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows Media Player\Skins\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows NT\TableTextService\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\Windows Security\BrowserCore\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5131.0_x64__8j3eq9eme6ctt\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.BingWeather_4.53.51922.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.DesktopAppInstaller_1.20.1881.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.GetHelp_10.2303.10961.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.Messaging_4.1901.60404.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.MicrosoftEdge.Stable_93.0.961.47_neutral__8wekyb3d8bbwe\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.MicrosoftEdge.Stable_93.0.961.52_neutral__8wekyb3d8bbwe\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.MicrosoftEdge.Stable_94.0.992.31_neutral__8wekyb3d8bbwe\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_18.2304.1202.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_18.2304.1202.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_4.6.0.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.MixedReality.Portal_2000.21051.1282.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Framework.1.7_1.7.27413.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Framework.1.7_1.7.27413.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Framework.2.2_2.2.29512.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Framework.2.2_2.2.29512.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Runtime.1.7_1.7.27422.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Runtime.1.7_1.7.27422.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Runtime.2.2_2.2.28604.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.NET.Native.Runtime.2.2_2.2.28604.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.OneConnect_5.2308.2294.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.People_10.2202.100.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.ScreenSketch_10.2008.3001.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.StorePurchaseApp_22305.1401.5.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.0_2.1810.18004.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.0_2.1810.18004.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.1_2.11906.6001.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.1_2.11906.6001.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.3_2.32002.13001.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.3_2.32002.13001.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.4_2.42007.9001.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.4_2.42007.9001.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.6_2.62108.18004.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.6_2.62108.18004.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.7_7.2208.15002.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.7_7.2208.15002.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.8_8.2310.30001.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.UI.Xaml.2.8_8.2310.30001.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.VCLibs.140.00.UWPDesktop_14.0.32530.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.VCLibs.140.00.UWPDesktop_14.0.33728.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.VCLibs.140.00.UWPDesktop_14.0.33728.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.VCLibs.140.00_14.0.32530.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.VCLibs.140.00_14.0.33519.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.VCLibs.140.00_14.0.33519.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.Wallet_2.4.18324.0_neutral_~_8wekyb3d8bbwe\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.Wallet_2.4.18324.0_neutral_~_8wekyb3d8bbwe\AppxMetadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2023.10070.17002.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_11.2403.8.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.802.31.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.802.31.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.934.1904.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.934.1904.0_x86__8wekyb3d8bbwe\microsoft.system.package.metadata\Autogen\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2210.0.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsCamera_2023.2305.4.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsFeedbackHub_1.2304.1243.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.WindowsMaps_11.2403.4.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.XboxGameOverlay_1.54.4001.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.721.9022.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.XboxSpeechToTextOverlay_1.21.13002.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23062.153.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.ZuneMusic_11.2305.4.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.22091.10041.0_x64__8wekyb3d8bbwe\microsoft.system.package.metadata\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Diagnostics\Comprehensive\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Diagnostics\Simple\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Test\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Test\Modules\Example1.Diagnostics\Diagnostics\Simple\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Test\Modules\Example2.Diagnostics\1.0.1\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Test\Modules\Example2.Diagnostics\1.0.1\Diagnostics\Simple\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Test\Modules\Example3.Diagnostics\1.1.1\Diagnostics\Simple\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Microsoft.PowerShell.Operation.Validation\1.0.1\Test\Modules\Example3.Diagnostics\2.0.1\Diagnostics\Simple\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\en-US\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\MSFT_PackageManagement\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\MSFT_PackageManagement\en-GB\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\MSFT_PackageManagement\en-US\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\MSFT_PackageManagementSource\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\MSFT_PackageManagementSource\en-GB\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PackageManagement\1.0.0.1\DSCResources\MSFT_PackageManagementSource\en-US\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\bin\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\en-US\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\Examples\Calculator\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\Examples\Validator\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\Functions\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\Functions\Assertions\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\Pester\3.4.0\Snippets\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PowerShellGet\1.0.0.1\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PowerShellGet\1.0.0.1\en-US\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Directory created: C:\Program Files\WindowsPowerShell\Modules\PSReadline\2.0.0\#Recover-Files.txt Jump to behavior
Source: sup.logical@gmail.com.exe Static PE information: Image base 0x140000000 > 0x60000000
Source: sup.logical@gmail.com.exe Static PE information: data directory type: IMAGE_DIRECTORY_ENTRY_IMPORT
Source: sup.logical@gmail.com.exe Static PE information: data directory type: IMAGE_DIRECTORY_ENTRY_RESOURCE
Source: sup.logical@gmail.com.exe Static PE information: data directory type: IMAGE_DIRECTORY_ENTRY_BASERELOC
Source: sup.logical@gmail.com.exe Static PE information: data directory type: IMAGE_DIRECTORY_ENTRY_DEBUG
Source: sup.logical@gmail.com.exe Static PE information: data directory type: IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG
Source: sup.logical@gmail.com.exe Static PE information: data directory type: IMAGE_DIRECTORY_ENTRY_IAT
Source: sup.logical@gmail.com.exe Static PE information: HIGH_ENTROPY_VA, DYNAMIC_BASE, NX_COMPAT, TERMINAL_SERVER_AWARE
Source: sup.logical@gmail.com.exe Static PE information: data directory type: IMAGE_DIRECTORY_ENTRY_DEBUG
Source: Binary string: C:\\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\Symbols\winload_prod.pdb\36C00AF489401A26639ABBA698DE76062\* source: sup.logical@gmail.com.exe, 00000000.00000003.14971499425.000001E5726A1000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14970668221.000001E572688000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Users\user\AppData\Local\Temp\Symbols\winload_prod.pdb source: sup.logical@gmail.com.exe, 00000005.00000003.18013641216.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18009283703.0000029161EDC000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18018326695.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18010018573.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Users\user\AppData\Local\Temp\Symbols\winload_prod.pdb\36C00AF489401A26639ABBA698DE76062te\* source: sup.logical@gmail.com.exe, 00000005.00000003.18009283703.0000029161F44000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18024262280.0000029161F44000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18018326695.0000029161F44000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18013641216.0000029161F44000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: \??\C:\Users\user\AppData\Local\Temp\Symbols\ntkrnlmp.pdb\*M source: sup.logical@gmail.com.exe, 00000005.00000003.18024262280.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18013641216.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18009283703.0000029161EDC000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18018326695.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18010018573.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Intel\Gamesmotionslication Data\Temp\Symbols\winload_prod.pdb\36C00AF489401A26639ABBA698DE76062yctt! source: sup.logical@gmail.com.exe, 00000000.00000003.14971499425.000001E5726A1000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14970668221.000001E572688000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Users\user\AppData\Local\Temp\Symbols\winload_prod.pdb\\* source: sup.logical@gmail.com.exe, 00000005.00000003.18013641216.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18009283703.0000029161EDC000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18018326695.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.18010018573.0000029161EE2000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\Symbols\ntkrnlmp.pdb\47114209A62F3B9930F6B8998DFD4A991\*Appl] source: sup.logical@gmail.com.exe, 00000000.00000003.14740164536.000001E57F87C000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14740087445.000001E57F87A000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\Symbols\ntkrnlmp.pdb\47114209A62F3B9930F6B8998DFD4A991tion Dy source: sup.logical@gmail.com.exe, 00000000.00000003.14740164536.000001E57F87C000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14740087445.000001E57F87A000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\Symbols\ntkrnlmp.pdb\47114209A62F3B9930F6B8998DFD4A991yatio source: sup.logical@gmail.com.exe, 00000000.00000003.14740164536.000001E57F87C000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14740087445.000001E57F87A000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Software Reporter Toolata\Temp\Symbols\winload_prod.pdb\36C00AF489401A26639ABBA698DE76062y source: sup.logical@gmail.com.exe, 00000000.00000003.14971499425.000001E5726A1000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14970668221.000001E572688000.00000004.00000020.00020000.00000000.sdmp
Source: Binary string: C:\\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\Symbols\ntkrnlmp.pdb\47114209A62F3B9930F6B8998DFD4A991ata\Lo source: sup.logical@gmail.com.exe, 00000000.00000003.14740164536.000001E57F87C000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14740087445.000001E57F87A000.00000004.00000020.00020000.00000000.sdmp
Source: sup.logical@gmail.com.exe Static PE information: Data directory: IMAGE_DIRECTORY_ENTRY_IMPORT is in: .rdata
Source: sup.logical@gmail.com.exe Static PE information: Data directory: IMAGE_DIRECTORY_ENTRY_RESOURCE is in: .rsrc
Source: sup.logical@gmail.com.exe Static PE information: Data directory: IMAGE_DIRECTORY_ENTRY_BASERELOC is in: .reloc
Source: sup.logical@gmail.com.exe Static PE information: Data directory: IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG is in: .rdata
Source: sup.logical@gmail.com.exe Static PE information: Data directory: IMAGE_DIRECTORY_ENTRY_IAT is in: .rdata
Source: sup.logical@gmail.com.exe Static PE information: section name: _RDATA

Persistence and Installation Behavior

barindex
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe System file written: C:\Program Files\Microsoft Office\Office16\OSPP.HTM Jump to behavior

Boot Survival

barindex
Source: C:\Windows\System32\cmd.exe Process created: C:\Windows\System32\schtasks.exe SCHTASKS.exe /Create /RU "NT AUTHORITY\SYSTEM" /sc onstart /TN "Windows Update ALPHV" /TR "C:\Users\user\Desktop\sup.logical@gmail.com.exe" /F
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process information set: NOOPENFILEERRORBOX Jump to behavior

Malware Analysis System Evasion

barindex
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: CreateMutexExA,GetModuleFileNameW,GetCommandLineW,CommandLineToArgvW,StrStrIW,wsprintfW,wsprintfW,ShellExecuteW,wsprintfA,GetNativeSystemInfo,CreateThread,CreateThread,ShellExecuteW, 5_2_00007FF6FC2E76A0
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Window / User API: threadDelayed 7679 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Window / User API: threadDelayed 9238 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Evasive API call chain: GetLocalTime,DecisionNodes
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe TID: 704 Thread sleep count: 7679 > 30 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe TID: 704 Thread sleep time: -383950s >= -30000s Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe TID: 4520 Thread sleep count: 182 > 30 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe TID: 3532 Thread sleep count: 9238 > 30 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe TID: 3532 Thread sleep time: -461900s >= -30000s Jump to behavior
Source: C:\Windows\System32\conhost.exe Last function: Thread delayed
Source: C:\Windows\System32\conhost.exe Last function: Thread delayed
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2E5170 FindFirstFileExW,GetLastError,lstrcmpW,lstrcmpW,FindNextFileW,FindClose, 5_2_00007FF6FC2E5170
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2F89C0 FindFirstFileExW, 5_2_00007FF6FC2F89C0
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2E3500 GetLogicalDriveStringsW, 5_2_00007FF6FC2E3500
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\#Recover-Files.txt Jump to behavior
Source: sup.logical@gmail.com.exe, 00000005.00000003.16023227772.0000029161F44000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.16370189262.0000029161F50000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: Hyper-V RAW
Source: sup.logical@gmail.com.exe, 00000005.00000003.14983199998.0000029161F44000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000005.00000003.14982007501.0000029161F44000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: Hyper-V RAW%SystemRoot%\system32\mswsock.dll
Source: sup.logical@gmail.com.exe, 00000000.00000003.14971155285.000001E572736000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14972625356.000001E572737000.00000004.00000020.00020000.00000000.sdmp, sup.logical@gmail.com.exe, 00000000.00000003.14969909566.000001E572736000.00000004.00000020.00020000.00000000.sdmp Binary or memory string: Hyper-V RAW%SystemRoot%\system32\mswsock.dllss
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process information queried: ProcessInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2ECDB8 IsProcessorFeaturePresent,RtlCaptureContext,RtlLookupFunctionEntry,RtlVirtualUnwind,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter, 5_2_00007FF6FC2ECDB8
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2FA418 GetProcessHeap, 5_2_00007FF6FC2FA418
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2ECDB8 IsProcessorFeaturePresent,RtlCaptureContext,RtlLookupFunctionEntry,RtlVirtualUnwind,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter, 5_2_00007FF6FC2ECDB8
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2F264C RtlCaptureContext,RtlLookupFunctionEntry,RtlVirtualUnwind,IsDebuggerPresent,SetUnhandledExceptionFilter,UnhandledExceptionFilter, 5_2_00007FF6FC2F264C
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2ECFA0 SetUnhandledExceptionFilter, 5_2_00007FF6FC2ECFA0
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2EC400 SetUnhandledExceptionFilter,UnhandledExceptionFilter,GetCurrentProcess,TerminateProcess, 5_2_00007FF6FC2EC400
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process created: C:\Windows\System32\cmd.exe "C:\Windows\System32\cmd.exe" /c SCHTASKS.exe /Create /RU "NT AUTHORITY\SYSTEM" /sc onstart /TN "Windows Update ALPHV" /TR "C:\Users\user\Desktop\sup.logical@gmail.com.exe" /F Jump to behavior
Source: C:\Windows\System32\cmd.exe Process created: C:\Windows\System32\schtasks.exe SCHTASKS.exe /Create /RU "NT AUTHORITY\SYSTEM" /sc onstart /TN "Windows Update ALPHV" /TR "C:\Users\user\Desktop\sup.logical@gmail.com.exe" /F Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Process created: C:\Windows\System32\cmd.exe "C:\Windows\System32\cmd.exe" /c SCHTASKS.exe /Create /RU "NT AUTHORITY\SYSTEM" /sc onstart /TN "Windows Update ALPHV" /TR "C:\Users\user\Desktop\sup.logical@gmail.com.exe" /F Jump to behavior
Source: C:\Windows\System32\cmd.exe Process created: C:\Windows\System32\schtasks.exe SCHTASKS.exe /Create /RU "NT AUTHORITY\SYSTEM" /sc onstart /TN "Windows Update ALPHV" /TR "C:\Users\user\Desktop\sup.logical@gmail.com.exe" /F
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC300650 cpuid 5_2_00007FF6FC300650
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\ConnectedDevicesPlatform\L.user\ActivitiesCache.db VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\Settings\settings.dat VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\Settings\settings.dat.LOG1 VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\Settings\settings.dat.LOG2 VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.WindowsAlarms_8wekyb3d8bbwe\Settings\settings.dat.LOG1 VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\Settings\settings.dat VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\Settings\settings.dat.LOG1 VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\Settings\settings.dat VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\Settings\settings.dat.LOG1 VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\Settings\settings.dat.LOG1 VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\Settings\settings.dat.LOG2 VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\Settings\settings.dat VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\Settings\settings.dat.LOG1 VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.Search_cw5n1h2txyewy\Settings\settings.dat.LOG2 VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\Settings\settings.dat VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\Settings\settings.dat.LOG2 VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\Settings\settings.dat VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\Settings\settings.dat.LOG1 VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Queries volume information: C:\Users\user\AppData\Local\Packages\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\Settings\settings.dat.LOG2 VolumeInformation Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2E6720 GetLocalTime,wsprintfW, 5_2_00007FF6FC2E6720

Stealing of Sensitive Information

barindex
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LY Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\HR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MD Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\HN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ME Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MF Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillRegex\2021.8.17.1300\manifest.json Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\HK Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MK Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ML Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\HU Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\HT Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MP Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MQ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MS Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MU Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MV Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MW Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MY Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MZ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Module Info Cache Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GF Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GD Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GB Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GQ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GP Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NC Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GL Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Crashpad\settings.dat Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NI Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GY Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GW Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NL Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GT Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NP Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NU Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\First Run Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\FO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\FM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\FJ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\FI Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KI Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\manifest.json Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\FR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KP Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillRegex\2021.8.17.1300\manifest.fingerprint Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\EG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KW Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\EE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KY Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KZ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\EC Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LB Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LC Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\EH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LI Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ET Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LK Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ES Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ER Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LS Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LT Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LU Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LV Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LK Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\QA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LI Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LV Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LU Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LT Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LS Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Last Version Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\SafetyTips\2700\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LY Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MF Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ME Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MD Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KI Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\RE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KP Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\RO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KZ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KY Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\RS Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KW Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\RU Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\RW Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LC Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LB Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\LA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NZ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Variations Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\JE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\JP Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\JO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\JM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\OM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\ShaderCache\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Safe Browsing\UrlMalBin.store Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\segmentation_platform\ukm_db Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\KE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ID Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IS Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IQ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PF Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IL Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PK Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\first_party_sets.db Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PL Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Safe Browsing\IpMalware.store Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\SSLErrorAssistant\7\manifest.json Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\first_party_sets.db-journal Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IT Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PS Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PT Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Module Info Cache Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PW Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PY Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\DO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\chrome_shutdown_ms.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PL Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PK Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Mozilla\Firefox\postSigningData Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PY Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\DZ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PW Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PT Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PS Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Crashpad\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\QA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\EC Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\EE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\EG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\EH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Last Browser Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ER Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ES Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ET Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\OM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\SafetyTips\2700\safety_tips.pb Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\FI Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\f_000001 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\FJ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\f_000002 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\FM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillRegex\2021.8.17.1300\data.json Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PF Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\PE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\FO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NP Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BQ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NL Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BS Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BT Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NI Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Last Browser Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BW Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Floc\1.0.6\manifest.fingerprint Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NU Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BY Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BZ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\ShaderCache\GPUCache\data_3 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Local State Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CD Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NZ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CF Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CI Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CL Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ML Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\index Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MK Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CU Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CV Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MW Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CW Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MV Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MU Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CY Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Floc\1.0.6\manifest.json Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CZ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\ShaderCache\GPUCache\data_1 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MS Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\ShaderCache\GPUCache\data_2 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MQ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\ShaderCache\GPUCache\data_0 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MP Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MZ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\DE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MY Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\MX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\DJ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\DK Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NC Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\DM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\CertificateRevocation\6869\crl-set Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\NA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\HT Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\HU Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Variations Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ID Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Safe Browsing\UrlBilling.store Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IL Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IQ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IS Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\IT Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ST Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SS Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SZ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SY Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SV Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\JE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TD Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TC Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\JM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\JO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TL Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\JP Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TK Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TJ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Safe Browsing Cookies Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\FR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\RS Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Mozilla\Firefox\postSigningData Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\RO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\RW Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\RU Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GB Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SD Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GD Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SC Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SB Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GF Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SL Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GL Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SK Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Floc\1.0.6\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SJ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SI Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GP Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GQ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GT Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GW Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\GY Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\HK Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\HN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\HR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\RE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_00000e Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_00000d Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_00000f Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_00000a Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_00000c Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_00000b Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000020 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\ShaderCache\index Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_00001f Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_00001e Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_00001b Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_00001a Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_00001d Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_00001c Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Crashpad\metadata Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GraphiteDawnCache\index Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000005 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000004 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Module Info Cache Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GraphiteDawnCache\data_3 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000007 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GraphiteDawnCache\data_2 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000006 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GraphiteDawnCache\data_1 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000001 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\CrashpadMetrics-active.pma Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GraphiteDawnCache\data_0 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000003 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000002 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000009 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000008 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000010 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Local State Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000016 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000015 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000018 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000017 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000012 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000011 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000014 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000013 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\f_000019 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\ShaderCache\GPUCache\index Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Safe Browsing\UrlMalware.store Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\AD Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\AE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\AF Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\AG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\AL Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\AM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\AO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\AR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\AS Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\AT Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\AU Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\AX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\CertificateRevocation\6869\LICENSE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\AZ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BB Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\chrome_shutdown_ms.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BD Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BF Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BI Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\BJ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Last Browser Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\data_0 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\data_1 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Local State Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\data_2 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\data_3 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Crashpad\metadata Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\FileTypePolicies\45\manifest.json Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Floc\1.0.6\SortingLshClusters Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Safe Browsing\UrlSoceng.store Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\CrashpadMetrics-active.pma Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Safe Browsing\UrlUws.store Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Safe Browsing Cookies-journal Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\data_3 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\data_2 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\data_1 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\data_0 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\UA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\SafetyTips\2700\manifest.json Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\UG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Last Version Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\first_party_sets.db Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\US Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\UY Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\UZ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\VC Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\VE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\VG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\VI Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\OriginTrials\1.0.0.9\manifest.json Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\VN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\GrShaderCache\GPUCache\index Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\VU Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Mozilla\Firefox\#Recover-Files.txt Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SB Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\ShaderCache\data_1 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Default Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SC Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\ShaderCache\data_2 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SD Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\ShaderCache\data_3 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SI Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SJ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SK Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SL Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\First Run Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SS Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ST Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SV Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SX Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SY Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\SZ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TC Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TD Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TG Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TH Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TJ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TK Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TL Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TN Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Default Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TR Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TT Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\ShaderCache\index Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TV Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TW Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\TZ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\ShaderCache\data_0 Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\Last Version Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\YE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\DE Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\DM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\DK Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\DJ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\YT Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\DO Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ZA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\DZ Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CD Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CA Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\ZM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe File opened: C:\Documents and Settings\user\AppData\Local\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Chrome\User Data\AutofillStates\2020.11.2.164946\CM Jump to behavior
Source: C:\Users\user\Desktop\sup.logical@gmail.com.exe Code function: 5_2_00007FF6FC2EA220 WSASocketW,bind,CreateIoCompletionPort, 5_2_00007FF6FC2EA220
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs