"C:\Users\user\AppData\Roaming\prime\prime.exe" -type=renderer -user-data-dir="C:\Users\user\AppData\Local\Prime\User Data" -nwapp-path="C:\Users\user\AppData\Roaming\prime" -nwjs -extension-process -first-renderer-process -no-sandbox -file-url-path-alias="/gen=C:\Users\user\AppData\Roaming\prime\gen" -no-zygote -lang=en-US -device-scale-factor=1. "C:\Users\user\AppData\Roaming\prime\prime.exe" ftk7fZ The Prime.exe tasks only network activity was suom port 1900 upnp activity. There are not any obvious follow on tasks. The Windows PowerShell cmdlet GetAlias resolves the association between dir and the. I dug into the events and don't see any immediate prior processes. PowerShell from output appearing in the CMD.exe interpreter. I was hoping somone could give me some insights what this is trying to achieve. I don't know what this is trying to achieve. The execution chain ends in cmd calling powershell passing a "-". I am assessing an alert to see if its malicious. We can add cmd.exe inside Windows PowerShell like our previous method. Live chat available 6-6PT M-F via the Support Portal Is this black box with 'C:\Windows\System32\cmd.exe' a virus I am running virus scan now and so far after 15 min nothing has come up showing there is a virus. this keeps popping up in a black box on startup. ![]()
0 Comments
Leave a Reply. |
Details
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |