Threat Database Trojans Trojan.MSIL.FakeMS.QH

Trojan.MSIL.FakeMS.QH

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 18,305
Threat Level: 80 % (High)
Infected Computers: 18
First Seen: January 2, 2024
Last Seen: October 5, 2025
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.MSIL.FakeMS.QH
Signature status: No Signature

Known Samples

MD5: 8120217a8e697069ccc415853788822c
SHA1: 3f7bfcd808fba702b54157e8dc7c666dfa30bbe7
SHA256: 6331F9E8FFE5290A59459A2447D3F1AA34914CDE19364BAC5805304CAA38E82A
File Size: 1.32 MB, 1318580 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
Show More
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Company Name KpoJIuK
File Description Office Install Helper
File Version 1.0.0.0
Legal Copyright © KpoJIuK
Product Name Office Install Helper

File Traits

  • .NET
  • x86

Files Modified

File Attributes
c:\users\user\appdata\local\temp\nsf4bbb.tmp Generic Read,Write Data,Write Attributes,Write extended,Append data,Delete
c:\users\user\appdata\local\temp\nsv4bcc.tmp Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\ad Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\ad\ya.exe Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\ad\ya.exe Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\ad\ya1.exe Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\ad\ya1.exe Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\ad\ya2.exe Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\ad\ya2.exe Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\ad\yagames.ico Generic Write,Read Attributes
Show More
c:\users\user\appdata\local\temp\nsv4bcc.tmp\ad\yagames.ico Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\client-issuance-bridge-office.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\client-issuance-bridge-office.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\client-issuance-root-bridge-test.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\client-issuance-root-bridge-test.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\client-issuance-root.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\client-issuance-root.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\client-issuance-stil.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\client-issuance-stil.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\client-issuance-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\client-issuance-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\client-issuance-ul.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\client-issuance-ul.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\hstart.exe Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\hstart.exe Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondo.cmd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondo.cmd Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondovl_kms_client-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondovl_kms_client-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondovl_kms_client-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondovl_kms_client-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondovl_kms_client-ul.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondovl_kms_client-ul.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondovl_mak-pl.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondovl_mak-pl.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondovl_mak-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondovl_mak-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondovl_mak-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondovl_mak-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondovl_mak-ul-phn.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\mondovl_mak-ul-phn.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\newui.cmd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\newui.cmd Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\newui_backup.cmd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\newui_backup.cmd Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\ospp.htm Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\ospp.htm Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\ospp.vbs Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\ospp.vbs Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\ospprearm.exe Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\ospprearm.exe Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\pkeyconfig-office-client15.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\pkeyconfig-office-client15.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\pkeyconfig-office.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\pkeyconfig-office.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019vl_kms_client_ae-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019vl_kms_client_ae-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019vl_kms_client_ae-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019vl_kms_client_ae-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019vl_kms_client_ae-ul.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019vl_kms_client_ae-ul.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019vl_mak_ae-pl.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019vl_mak_ae-pl.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019vl_mak_ae-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019vl_mak_ae-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019vl_mak_ae-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019vl_mak_ae-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019vl_mak_ae-ul-phn.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019vl_mak_ae-ul-phn.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019xc2rvl_kms_clientc2r-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019xc2rvl_kms_clientc2r-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019xc2rvl_kms_clientc2r-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019xc2rvl_kms_clientc2r-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019xc2rvl_kms_clientc2r-ul.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019xc2rvl_kms_clientc2r-ul.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019xc2rvl_makc2r-pl.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019xc2rvl_makc2r-pl.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019xc2rvl_makc2r-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019xc2rvl_makc2r-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019xc2rvl_makc2r-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019xc2rvl_makc2r-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019xc2rvl_makc2r-ul-phn.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2019xc2rvl_makc2r-ul-phn.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_kms_client_ae-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_kms_client_ae-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_kms_client_ae-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_kms_client_ae-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_kms_client_ae-ul.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_kms_client_ae-ul.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae1-pl.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae1-pl.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae1-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae1-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae1-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae1-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae1-ul-phn.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae1-ul-phn.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae2-pl.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae2-pl.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae2-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae2-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae2-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae2-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae2-ul-phn.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectpro2021vl_mak_ae2-ul-phn.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectprovl_kms_client-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectprovl_kms_client-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectprovl_kms_client-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectprovl_kms_client-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectprovl_kms_client-ul.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectprovl_kms_client-ul.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectprovl_mak-pl.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectprovl_mak-pl.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectprovl_mak-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectprovl_mak-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectprovl_mak-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectprovl_mak-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectprovl_mak-ul-phn.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectprovl_mak-ul-phn.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectproxc2rvl_kms_clientc2r-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectproxc2rvl_kms_clientc2r-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectproxc2rvl_kms_clientc2r-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectproxc2rvl_kms_clientc2r-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectproxc2rvl_kms_clientc2r-ul.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectproxc2rvl_kms_clientc2r-ul.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectproxc2rvl_makc2r-pl.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectproxc2rvl_makc2r-pl.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectproxc2rvl_makc2r-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectproxc2rvl_makc2r-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectproxc2rvl_makc2r-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectproxc2rvl_makc2r-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectproxc2rvl_makc2r-ul-phn.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectproxc2rvl_makc2r-ul-phn.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2019vl_kms_client_ae-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2019vl_kms_client_ae-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2019vl_kms_client_ae-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2019vl_kms_client_ae-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2019vl_kms_client_ae-ul.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2019vl_kms_client_ae-ul.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2019vl_mak_ae-pl.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2019vl_mak_ae-pl.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2019vl_mak_ae-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2019vl_mak_ae-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2019vl_mak_ae-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2019vl_mak_ae-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2019vl_mak_ae-ul-phn.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2019vl_mak_ae-ul-phn.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2021vl_kms_client_ae-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2021vl_kms_client_ae-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2021vl_kms_client_ae-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2021vl_kms_client_ae-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2021vl_kms_client_ae-ul.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2021vl_kms_client_ae-ul.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2021vl_mak_ae-pl.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2021vl_mak_ae-pl.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2021vl_mak_ae-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2021vl_mak_ae-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2021vl_mak_ae-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2021vl_mak_ae-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2021vl_mak_ae-ul-phn.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstd2021vl_mak_ae-ul-phn.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdvl_kms_client-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdvl_kms_client-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdvl_kms_client-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdvl_kms_client-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdvl_kms_client-ul.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdvl_kms_client-ul.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdvl_mak-pl.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdvl_mak-pl.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdvl_mak-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdvl_mak-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdvl_mak-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdvl_mak-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdvl_mak-ul-phn.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdvl_mak-ul-phn.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdxc2rvl_kms_clientc2r-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdxc2rvl_kms_clientc2r-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdxc2rvl_kms_clientc2r-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdxc2rvl_kms_clientc2r-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdxc2rvl_kms_clientc2r-ul.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdxc2rvl_kms_clientc2r-ul.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdxc2rvl_makc2r-pl.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdxc2rvl_makc2r-pl.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdxc2rvl_makc2r-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdxc2rvl_makc2r-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdxc2rvl_makc2r-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdxc2rvl_makc2r-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdxc2rvl_makc2r-ul-phn.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\projectstdxc2rvl_makc2r-ul-phn.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\proplus2019vl_kms_client_ae-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\proplus2019vl_kms_client_ae-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\proplus2019vl_kms_client_ae-ul-oob.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\proplus2019vl_kms_client_ae-ul-oob.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\proplus2019vl_kms_client_ae-ul.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\proplus2019vl_kms_client_ae-ul.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\proplus2019vl_mak_ae-pl.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\proplus2019vl_mak_ae-pl.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\proplus2019vl_mak_ae-ppd.xrm-ms Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\proplus2019vl_mak_ae-ppd.xrm-ms Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsv4bcc.tmp\proplus2019vl_mak_ae-ul-oob.xrm-ms Generic Write,Read Attributes

261 additional files are not displayed above.

Registry Modifications

Key::Value Data API Name
HKLM\system\controlset001\control\session manager::pendingfilerenameoperations \??\C:\Users\Cthkfycf\AppData\Local\Temp\nsv4BCC.tmp\ RegNtPreCreateKey

Windows API Usage

Category API
Anti Debug
  • IsDebuggerPresent
User Data Access
  • GetUserObjectInformation

Trending

Most Viewed

Loading...