【1】2024-12-04 15:40:39,Anti-virus,Memory Protection,Malware HEUR:Trojan/Hijack.r detected, disposed
Detection: HEUR:Trojan/Hijack.r
Detection ID: AC2C4CAB865F1E5B
Virtual address: 0x0000000070721000
Mapping size: 8.4MB
Is it fully mapped: yes
Data flow hash: f08afafc
Result: disposed
Process ID: 6936
Process: C:\Users\tik\Desktop\mal-2x\mal2\Set-up.exe
Process Command line: "C:\Users\tik\Desktop\mal-2x\mal2\Set-up.exe"
Parent Process ID: 6448
Parent: C:\Windows\explorer.exe
Parent process Command line: C:\Windows\Explorer.EXE
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
【2】2024-12-04 15:40:38,Anti-virus,Memory Protection,Malware HEUR:Trojan/Hijack.r detected, disposed
Detection: HEUR:Trojan/Hijack.r
Detection ID: AC2C4CAB865F1E5B
Virtual address: 0x0000000070721000
Mapping size: 8.4MB
Is it fully mapped: yes
Data flow hash: f08afafc
Result: disposed
Process ID: 6936
Process: C:\Users\tik\Desktop\mal-2x\mal2\Set-up.exe
Process Command line: "C:\Users\tik\Desktop\mal-2x\mal2\Set-up.exe"
Parent Process ID: 6448
Parent: C:\Windows\explorer.exe
Parent process Command line: C:\Windows\Explorer.EXE
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
【3】2024-12-04 15:39:51,Anti-virus,Memory Protection,Malware HEUR:Trojan/Hijack.r detected, disposed
Detection: HEUR:Trojan/Hijack.r
Detection ID: AC2C4CAB865F1E5B
Virtual address: 0x0000000070721000
Mapping size: 8.4MB
Is it fully mapped: yes
Data flow hash: 4a557847
Result: disposed
Process ID: 10688
Process: C:\Users\tik\Desktop\mal-2x\mal2\Set-up.exe
Process Command line: "C:\Users\tik\Desktop\mal-2x\mal2\Set-up.exe"
Parent Process ID: 6448
Parent: C:\Windows\explorer.exe
Parent process Command line: C:\Windows\Explorer.EXE
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
【4】2024-12-04 15:39:50,Anti-virus,Memory Protection,Malware HEUR:Trojan/Hijack.r detected, disposed
Detection: HEUR:Trojan/Hijack.r
Detection ID: AC2C4CAB865F1E5B
Virtual address: 0x0000000070721000
Mapping size: 8.4MB
Is it fully mapped: yes
Data flow hash: 4a557847
Result: disposed
Process ID: 10688
Process: C:\Users\tik\Desktop\mal-2x\mal2\Set-up.exe
Process Command line: "C:\Users\tik\Desktop\mal-2x\mal2\Set-up.exe"
Parent Process ID: 6448
Parent: C:\Windows\explorer.exe
Parent process Command line: C:\Windows\Explorer.EXE
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
【5】2024-12-04 15:38:40,Anti-virus,Memory Protection,Malware Trojan/ShellLoader.oh detected, disposed
Detection: Trojan/ShellLoader.oh
Detection ID: 625B67F2839542CF
Virtual address: 0x0000000076F61000
Mapping size: 56.0KB
Is it fully mapped: yes
Data flow hash: e44b666c
Result: disposed
Process ID: 6216
Process: C:\Windows\SysWOW64\more.com
Process Command line: C:\Windows\SysWOW64\more.com
Parent Process ID: 2544
Parent: C:\Users\tik\Desktop\mal-2x\mal1\Installer.exe
Parent process Command line: "C:\Users\tik\Desktop\mal-2x\mal1\Installer.exe"
>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>