IOC Report
INSTALL.EXE

loading gif

Files

File Path
Type
Category
Malicious
INSTALL.EXE
PE32 executable (GUI) Intel 80386, for MS Windows
initial sample
C:\Program Files (x86)\SensyCity\Fichiers Utilitaires\List_HourMN.txt
ISO-8859 text, with CRLF line terminators
dropped
C:\Program Files (x86)\SensyCity\SensyCity.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Program Files (x86)\SensyCity\SensyCity.wdl
data
dropped
C:\Program Files (x86)\SensyCity\TipOfTheDay.wdk
data
dropped
C:\Program Files (x86)\SensyCity\WDUNINST.EXE
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Program Files (x86)\SensyCity\WDUninst.ini
Generic INItialization configuration [WDUNINST03]
dropped
C:\Program Files (x86)\SensyCity\anglais.wdm
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\libEGL.dll
PE32 executable (DLL) (console) Intel 80386, for MS Windows
dropped
C:\Program Files (x86)\SensyCity\wd270web\libGLESv2.dll
PE32 executable (DLL) (console) Intel 80386, for MS Windows
dropped
C:\Program Files (x86)\SensyCity\wd270web\libcef.dll
PE32 executable (DLL) (console) Intel 80386, for MS Windows
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\am.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\ar.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\bg.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\bn.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\ca.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\cs.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\da.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\de.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\el.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\en-GB.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\en-US.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\es-419.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\es.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\et.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\fa.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\fi.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\fil.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\fr.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\gu.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\he.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\hi.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\hr.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\hu.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\id.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\it.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\ja.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\kn.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\ko.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\lt.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\lv.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\ml.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\mr.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\ms.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\nb.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\nl.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\pl.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\pt-BR.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\pt-PT.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\ro.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\ru.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\sk.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\sl.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\sr.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\sv.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\sw.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\ta.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\te.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\th.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\tr.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\uk.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\vi.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\zh-CN.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\locales\zh-TW.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\resources.pak
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\snapshot_blob.bin
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\swiftshader\libEGL.dll
PE32 executable (DLL) (console) Intel 80386, for MS Windows
dropped
C:\Program Files (x86)\SensyCity\wd270web\swiftshader\libGLESv2.dll
PE32 executable (DLL) (console) Intel 80386, for MS Windows
dropped
C:\Program Files (x86)\SensyCity\wd270web\v8_context_snapshot.bin
data
dropped
C:\Program Files (x86)\SensyCity\wd270web\wd270webexe.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo1.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo10.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo11.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo12.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo13.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo14.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo15.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo16.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo17.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo18.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo19.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo2.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo20.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo21.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo22.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo23.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo24.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo25.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo26.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo27.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo28.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo29.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo3.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo30.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo31.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo32.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo33.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo34.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo35.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo36.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo37.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo38.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo39.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo4.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo40.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo41.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo42.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo43.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo44.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo45.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo46.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo47.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo48.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo49.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo5.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo50.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo51.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo52.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo53.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo54.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo55.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo56.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo57.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo58.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo59.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo6.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo60.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo7.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo8.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Choix couleurs\disqueColorCombo9.png
PNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Fichiers Utilitaires\20241030_SensyCity_FAQ App_1.4.15_V4.pdf
PDF document, version 1.7, 40 pages
modified
C:\ProgramData\SensyCity\Fichiers Utilitaires\CDM v2.12.00 WHQL Certified.exe
PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed
dropped
C:\ProgramData\SensyCity\Fichiers Utilitaires\CDM212364_Setup.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\ProgramData\SensyCity\Fichiers Utilitaires\Export_Tegis_gray_56x56.png
PNG image data, 180 x 180, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Fichiers Utilitaires\cadenas_fond_GRIS.png
PNG image data, 24 x 24, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Fichiers Utilitaires\cadenas_fond_orange.png
PNG image data, 24 x 24, 8-bit/color RGBA, non-interlaced
dropped
C:\ProgramData\SensyCity\Fichiers Utilitaires\curseurGris.png
PNG image data, 24 x 24, 8-bit/color RGBA, non-interlaced
dropped
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\33CUD2J1\__WDINST[1].zip
Zip archive data, at least v2.0 to extract, compression method=deflate
modified
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\AN5UOLP8\INSTALL[1].zip
Zip archive data, at least v2.0 to extract, compression method=deflate
modified
C:\Users\user\AppData\Local\Temp\GABAB54.tmp\photo_pour_fichier_exe.png
PNG image data, 1223 x 697, 8-bit/color RGB, non-interlaced
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\INST.WXF
data
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\ServeursWeb.wdk
data
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\WDMetabase.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\WDSetup.EXE
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\WDSetupFont.ttf
TrueType Font data, digitally signed, 19 tables, 1st "DSIG", 30 names, Macintosh, Digitized data copyright \251 2010-2011, Google Corporation.Open Sans LightRegularAscender - Ope
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\WDSetupFontLicence.txt
ASCII text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\__GABARIT.ZIP
Zip archive data, at least v2.0 to extract, compression method=deflate
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\wd270com.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\wd270cpl.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\wd270hf.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\wd270mat.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\wd270mdl.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\wd270obj.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\wd270ole.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\wd270pnt.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\wd270sql.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\wd270std.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\wd270trs.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\wd270uni.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\wd270vm.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\wd270xml.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD4ECD.tmp\wd270zip.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD_495E.tmp\INSTALL.EXE
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\AppData\Local\Temp\WD_495E.tmp\INSTALL.INI
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\AppData\Local\Temp\WD_495E.tmp\WDUpdate.net
Unicode text, UTF-16, little-endian text, with CRLF line terminators
modified
There are 155 hidden files, click here to show them.

Domains

Name
IP
Malicious
lx-sogexi-sensycityprod.pcscloud.net
176.31.87.56

IPs

IP
Domain
Country
Malicious
176.31.87.56
lx-sogexi-sensycityprod.pcscloud.net
France