
Spawned process "Log.exe" with commandline "/S /C" ( Show Process) Spawned process "SIV32X.exe" with commandline "-SAVE" ( Show Process) Spawned process "InstalledDriversList.exe" with commandline "/shtml %WINDIR%\Logs\SysInfo\LOGs\%OSUSER%-PC\SysInfo\Drivers.html" ( Show Process) Spawned process "DriverView.exe" with commandline "/shtml %WINDIR%\Logs\SysInfo\LOGs\%OSUSER%-PC\SysInfo\Drivers.htm" ( Show Process)

Spawned process "dxdiag.exe" with commandline "dxdiag /t %WINDIR%\Logs\SysInfo\LOGs\%OSUSER%-PC\System\DxDiag.txt" ( Show Process) Sends network traffic on the official file transfer ports Multiple malicious artifacts seen in the context of different hosts Found malicious artifacts related to "45.32.138.210" (ASN:, Owner: ).
