|
Analyzing...
|
File Name:   ThreatHunterAssessmentTool.exe
SHA1:   946f4f8b40fefac6f03c78bbed794b3c118d7f8b
MD5:   d9bf14670243c18c8a52ecfd65a65ace
First Seen Date:  2023-06-12 16:31:31.700910 ( )
Number of Clients Seen:   28
Last Analysis Date:  2025-08-19 17:10:17.724955 ( )
Human Expert Analysis Date:  2023-06-12 21:52:44.002037 ( )Human Expert Analysis Result:   Clean
Analysis Summary
| Analysis Type | Date | Verdict | |
|---|---|---|---|
| Signature Based Detection | 2025-08-19 17:10:17.724955 | Clean | |
| Static Analysis Overall Verdict | 2025-08-19 17:10:17.724955 | No Threat Found | help |
| Dynamic Analysis Overall Verdict | 2025-08-19 17:10:17.724955 | No Threat Found | help |
| Precise Detectors Overall Verdict | 2025-08-19 17:10:17.724955 | No Match | help |
| Human Expert Analysis Overall Verdict | 2023-06-12 21:52:44.002037 | Clean | |
Static Analysis
| Static Analysis Overall Verdict | Result |
|---|---|
| No Threat Found | help |
Dynamic Analysis
| Dynamic Analysis Overall Verdict | Result |
|---|---|
| No Threat Found | help |
| Suspicious Behaviors | |
|---|---|
| Opens a file in a system directory | |
| Creates a child process | |
| Reads memory of another process | |
Behavioral Information
C:\[uthreathunterassessmenttool_njnhzwqxogixzja5mtmwmdbhywm1n2q0.exe]
C:\Windows\SysWOW64\ieframe.dll
C:\Windows\system32\PROPSYS.dll
.exe
program
file
"C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Threat Hunter Assessment Tool.exe"
C:\[uthreathunterassessmenttool_njnhzwqxogixzja5mtmwmdbhywm1n2q0.exe]
C:\Windows\Fonts\staticcache.dat
C:\Users\win7\AppData\Local\Microsoft\Windows\Caches\{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x0000000000000010.db
C:\Users\desktop.ini
C:\Users\win7\Desktop\desktop.ini
C:\
C:\Users
C:\Users\win7
C:\Users\win7\Searches\desktop.ini
C:\Users\win7\Pictures\desktop.ini
C:\Users\win7\Contacts\desktop.ini
C:\Users\win7\Favorites\desktop.ini
C:\Users\win7\Music\desktop.ini
C:\Users\win7\Downloads\desktop.ini
C:\Users\win7\Documents\desktop.ini
C:\Users\win7\Saved Games\desktop.ini
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\x86\sqlceqp40.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.DAL.dll.config
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Threat Hunter Assessment Tool.exe
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.Common.dll.config
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.Extractor.pdb
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\amd64\Microsoft.VC90.CRT\README_ENU.txt
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Telerik.Windows.Documents.Fixed.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Telerik.Windows.Controls.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\x86\Microsoft.VC90.CRT\README_ENU.txt
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.Extractor.exe
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\amd64\sqlcese40.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Valkyrie.WebApiProvider.pdb
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\EntityFramework.xml
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\trl.txt
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Telerik.Reporting.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\buildScript.bat
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.DeploymentCore.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\amd64\sqlceer40EN.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\EntityFramework.SqlServer.xml
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Telerik.Windows.Data.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\x86\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\amd64\sqlcecompact40.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.DAL.pdb
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.Common.pdb
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.Core.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\amd64\sqlceca40.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\System.Data.SqlServerCe.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\x86\sqlceme40.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Threat Hunter Assessment Tool.exe.config
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\x86\Microsoft.VC90.CRT\msvcr90.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\amd64\sqlceqp40.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Newtonsoft.Json.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.COT.Login.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Telerik.Windows.Controls.Input.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\x86\sqlcecompact40.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\amd64\sqlceme40.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Valkyrie.WebApiProvider.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.Common.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Telerik.Windows.Controls.Navigation.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Telerik.Windows.Themes.Windows8.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Telerik.Windows.Zip.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Telerik.Windows.Controls.FixedDocumentViewers.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Newtonsoft.Json.xml
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\amd64\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\x86\sqlceer40EN.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\EntityFramework.SqlServer.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Telerik.Reporting.xml
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\tvl.txt
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\cmdapt64.exe
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.COT.Login.pdb
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Telerik.Reporting.pdb
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.Extractor.exe.config
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Telerik.Windows.Documents.Core.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\SimpleInjector.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Telerik.Windows.Controls.GridView.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\Threat Hunter Assessment Tool.pdb
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\EntityFramework.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\amd64\Microsoft.VC90.CRT\msvcr90.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.Core.dll.config
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\EntityFramework.SqlServerCompact.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.DeploymentCore.pdb
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\cmdapt86.exe
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\x86\sqlcese40.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\x86\sqlceca40.dll
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.Core.pdb
C:\Users\win7\AppData\Local\Temp\7ZipSfx.000\APTAT.DAL.dll
<NULL>
Local\ZonesCacheCounterMutex
Local\ZonesLockedCacheCounterMutex
comctl32.dll
UxTheme.dll
ADVAPI32.dll
kernel32
IMM32.dll
ntdll.dll
uxtheme
SHELL32.dll
ole32.dll
propsys.dll
C:\Windows\SysWOW64\ieframe.dll
kernel32.dll
ntmarta.dll
API-MS-Win-Core-LocalRegistry-L1-1-0.dll
C:\Windows\System32\shdocvw.dll
PROPSYS.dll
OLEAUT32.dll
Secur32.dll
API-MS-WIN-DOWNLEVEL-SHLWAPI-L1-1-0.DLL
api-ms-win-downlevel-advapi32-l2-1-0.dll
\REGISTRY\MACHINE\SOFTWARE\M
\REGISTRY\MACHINE\SOFTWARE\Polic
\REGISTRY\MACHINE\SOFTWARE\Microsoft
\REGISTRY\MACHINE\SOFTWARE\Wow64
\REGISTRY\USER\.DEFAULT\SOFTWARE\Mic
Precise Detectors Analysis Results
| Detector Name | Date | Verdict | Reason | |
|---|---|---|---|---|
| Static Precise PUA Detector 1 | 2025-08-19 17:10:14.154730 | No Match | help | NotDetected |
| Static Precise PUA Detector 4 | 2025-08-19 17:10:14.157652 | No Match | help | NotDetected |
| Static Precise NI Detector 3 | 2025-08-19 17:10:14.226261 | No Match | help | NotDetected |
| Static Precise PUA Detector 5 | 2025-08-19 17:10:14.241977 | No Match | help | NotDetected |
| Static Precise Trojan Detector 1 | 2025-08-19 17:10:14.260690 | No Match | help | NotDetected |
| Static Precise Trojan Detector 3 | 2025-08-19 17:10:14.263674 | No Match | help | NotDetected |
| Static Precise PUA Detector 6 | 2025-08-19 17:10:14.280848 | No Match | help | NotDetected |
| Static Precise Trojan Detector 12 | 2025-08-19 17:10:14.312447 | No Match | help | NotDetected |
| Static Precise Virus Detector 1 | 2025-08-19 17:10:14.366314 | No Match | help | NotDetected |
| Static Precise Virus Detector 2 | 2025-08-19 17:10:14.375790 | No Match | help | NotDetected |
| Static Precise Trojan Detector 13 | 2025-08-19 17:10:14.414984 | No Match | help | NotDetected |
| Static Precise PUA Detector 2 | 2025-08-19 17:10:14.419995 | No Match | help | NotDetected |
Advance Heuristics
No Advanced Heuristic Analysis Result Received
Human Expert Analysis Results
Analysis Start Date:   2023-06-12 18:20:44.744760 ( )
Analysis End Date:  2023-06-12 21:52:44.002037 ( )
File Upload Date:  2023-06-12 16:30:22.740505 ( )
Update Date:  2023-06-12 21:54:09.588365 ( )
Human Expert Analyst Feedback:   None
Verdict:   Clean
Additional File Information
| Property | Value |
|---|
| Name | Virtual Address | Virtual Size | Raw Size | Entropy | MD5 |
|---|