{
	"id": "43d77565-b336-4d03-957b-701a8c33add0",
	"created_at": "2026-04-06T00:09:59.524966Z",
	"updated_at": "2026-04-10T13:11:33.110497Z",
	"deleted_at": null,
	"sha1_hash": "d412b26a289ded5326f1313e7ae6126efbb04357",
	"title": "Analysis KSA-PDA_17122023.exe (MD5: 3DFF19E34ED9A7F7CCC7D64000884890) Malicious activity - Interactive analysis ANY.RUN",
	"llm_title": "",
	"authors": "",
	"file_creation_date": "0001-01-01T00:00:00Z",
	"file_modification_date": "0001-01-01T00:00:00Z",
	"file_size": 101433,
	"plain_text": "Analysis KSA-PDA_17122023.exe (MD5:\r\n3DFF19E34ED9A7F7CCC7D64000884890) Malicious activity -\r\nInteractive analysis ANY.RUN\r\nArchived: 2026-04-05 21:46:32 UTC\r\nMove your mouse to view screenshots\r\nHide whitelisted\r\nTimeshift\r\nHeaders\r\nRep\r\nPID\r\nProcess name\r\nCN\r\nURL\r\nhttps://app.any.run/tasks/65855217-7209-4eae-a572-b030a2305b22/\r\nPage 1 of 6\n\nСontent\r\n18437 ms\r\nH1\r\nGET 200: OK\r\n3972\r\nKSA-PDA_17122023.exe\r\nhttp://checkip.dyndns.org/\r\n106 b\r\nhtml\r\n18440 ms\r\nH1\r\nGET 200: OK\r\n3972\r\nKSA-PDA_17122023.exe\r\nhttp://checkip.dyndns.org/\r\n106 b\r\nhtml\r\n19429 ms\r\nH1\r\nGET 200: OK\r\n3972\r\nKSA-PDA_17122023.exe\r\nhttp://checkip.dyndns.org/\r\n106 b\r\nhtml\r\n19430 ms\r\nhttps://app.any.run/tasks/65855217-7209-4eae-a572-b030a2305b22/\r\nPage 2 of 6\n\nH1\r\nGET 200: OK\r\n3972\r\nKSA-PDA_17122023.exe\r\nhttp://checkip.dyndns.org/\r\n106 b\r\nhtml\r\n20428 ms\r\nH1\r\nGET 200: OK\r\n3972\r\nKSA-PDA_17122023.exe\r\nhttp://checkip.dyndns.org/\r\n106 b\r\nhtml\r\n20429 ms\r\nH1\r\nGET 200: OK\r\n3972\r\nKSA-PDA_17122023.exe\r\nhttp://checkip.dyndns.org/\r\n106 b\r\nhtml\r\n20431 ms\r\nH1\r\nGET 200: OK\r\nhttps://app.any.run/tasks/65855217-7209-4eae-a572-b030a2305b22/\r\nPage 3 of 6\n\n3972\r\nKSA-PDA_17122023.exe\r\nhttp://checkip.dyndns.org/\r\n106 b\r\nhtml\r\n20432 ms\r\nH1\r\nGET 200: OK\r\n3972\r\nKSA-PDA_17122023.exe\r\nhttp://checkip.dyndns.org/\r\n106 b\r\nhtml\r\n21446 ms\r\nH1\r\nGET 200: OK\r\n3972\r\nKSA-PDA_17122023.exe\r\nhttp://checkip.dyndns.org/\r\n106 b\r\nhtml\r\n Malicious activity\r\nKSA-PDA_17122023.exe\r\nMD5:\r\n3dff19e34ed9a7f7ccc7d64000884890\r\nStart:\r\n06.06.2024, 09:59\r\nhttps://app.any.run/tasks/65855217-7209-4eae-a572-b030a2305b22/\r\nPage 4 of 6\n\nTotal time:\r\n57 s\r\nText report\r\n🚀 Save time with new AI Summaries\r\nGet a quick understanding of malicious behavior thanks to actionable AI insights.\r\nCPU\r\nRAM\r\nbeta\r\nOnly important\r\n3972\r\nKSA-PDA_17122023.exe\r\nDMP\r\ngaboongrabber\r\n1k\r\n5k\r\n78\r\n4056\r\nwmpnscfg.exe\r\n17\r\nhttps://app.any.run/tasks/65855217-7209-4eae-a572-b030a2305b22/\r\nPage 5 of 6\n\n13\r\n8\r\nSource: https://app.any.run/tasks/65855217-7209-4eae-a572-b030a2305b22/\r\nhttps://app.any.run/tasks/65855217-7209-4eae-a572-b030a2305b22/\r\nPage 6 of 6",
	"extraction_quality": 1,
	"language": "EN",
	"sources": [
		"Malpedia"
	],
	"origins": [
		"web"
	],
	"references": [
		"https://app.any.run/tasks/65855217-7209-4eae-a572-b030a2305b22/"
	],
	"report_names": [
		"65855217-7209-4eae-a572-b030a2305b22"
	],
	"threat_actors": [],
	"ts_created_at": 1775434199,
	"ts_updated_at": 1775826693,
	"ts_creation_date": 0,
	"ts_modification_date": 0,
	"files": {
		"pdf": "https://archive.orkl.eu/d412b26a289ded5326f1313e7ae6126efbb04357.pdf",
		"text": "https://archive.orkl.eu/d412b26a289ded5326f1313e7ae6126efbb04357.txt",
		"img": "https://archive.orkl.eu/d412b26a289ded5326f1313e7ae6126efbb04357.jpg"
	}
}