IOC Report
._WinSitu-5.7.8.0.msi

loading gif

Processes

Path
Cmdline
Malicious
C:\Windows\System32\msiexec.exe
"C:\Windows\System32\msiexec.exe" /i "C:\Users\user\Desktop\._WinSitu-5.7.8.0.msi"

URLs

Name
IP
Malicious
https://insituinc.sharepoint.com/sites/main/rd/Software%20Artifacts/Forms/AllItems.aspx?id=%2Fsites%
unknown
https://insituinc.sharepoint.com/sites/main/rd/_layouts/15/download.aspx?SourceUrl=%2Fsites%2Fmain%2
unknown