Cześć,
znalazłem w menadżerze zadan proces igfxEM.exe. Sprawdziłem Malwarebytes i virustotal i nic nie wykryły, sprawdziłem też i jest to ponoć proces jakiegoś sterownika od Intela. Wydaje się bezpieczne, prawda? Na Virustotal w Community był jednak taki wpis:
submitname:“cfe2cd541436529888e03aec0c7dc61584f1450dd4c04691878815c70c22d3f6.bin”
falcon-threatscore:41/100
whitelisted:true
memurl:“Pattern match: crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z,Pattern match: http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0 match: crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z,Pattern match: http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0 match: crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z,Pattern match: http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0 match: crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z,Pattern match: http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0 match: crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z,Pattern match: http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0 match: crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z,Pattern match: http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0 match: crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z,Pattern match: http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0 match: crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z,Pattern match: http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0 match: crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z,Pattern match: http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0 match: crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z,Pattern match: http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0 match: crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z,Pattern match: http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0 match: crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z,Pattern match: http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0 match: crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z,Pattern match: http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0 match: crl.microsoft.com/pki/crl/products/MicTimStaPCA_2010-07-01.crl0Z,Pattern match: http://www.microsoft.com/pki/certs/MicTimStaPCA_2010-07-01.crt0”
source:https://www.hybrid-analysis.com/sample/cfe2cd541436529888e03aec0c7dc61584f1450dd4c04691878815c70c22d3f6?environmentId=120
Co to oznacza?