Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
Unlimited HEIC Converter Installer.exe

Overview

General Information

Sample name:Unlimited HEIC Converter Installer.exe
Analysis ID:1546791
MD5:5a0c501219ce6252e84ecd38d1e7bf3d
SHA1:cada316be26dbdcc7d4036a85431b2c0a94f8f54
SHA256:d7737ed305e02b560d5a03c88fbd76115d7a217cf300ef3e320265910c3d2106

Detection

Score:3
Range:0 - 100
Whitelisted:false
Confidence:40%

Signatures

Allocates memory with a write watch (potentially for evading sandboxes)
Binary contains a suspicious time stamp
Contains long sleeps (>= 3 min)
Enables debug privileges
Found a high number of Window / User specific system calls (may be a loop to detect user behavior)
May sleep (evasive loops) to hinder dynamic analysis
PE file contains an invalid checksum
Queries the volume information (name, serial number etc) of a device

Classification

  • System is w10x64_ra
  • Unlimited HEIC Converter Installer.exe (PID: 3628 cmdline: "C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe" MD5: 5A0C501219CE6252E84ECD38D1E7BF3D)
  • cleanup
No yara matches
No Sigma rule has matched
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

There are no malicious signatures, click here to show all signatures.

Source: Unlimited HEIC Converter Installer.exeStatic PE information: certificate valid
Source: Unlimited HEIC Converter Installer.exeStatic PE information: HIGH_ENTROPY_VA, DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE
Source: classification engineClassification label: clean3.winEXE@1/3@0/38
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeFile created: C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WPF9C8D.tmp
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeMutant created: NULL
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeMutant created: \Sessions\1\BaseNamedObjects\Global\{f6bec8ba-58ff-4dfc-9981-2ec5ebd23734}-9N3VRN5L9DNS
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeFile created: C:\Users\user\AppData\Local\Temp\Tmp97D8.tmp
Source: Unlimited HEIC Converter Installer.exeStatic PE information: Section: .text IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ
Source: Unlimited HEIC Converter Installer.exeStatic file information: TRID: Win32 Executable (generic) Net Framework (10011505/4) 50.01%
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeKey opened: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeFile read: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: mscoree.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: kernel.appcore.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: version.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: vcruntime140_clr0400.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: ucrtbase_clr0400.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: uxtheme.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: cryptsp.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: rsaenh.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: cryptbase.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: dwrite.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: msvcp140_clr0400.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: windows.storage.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: wldp.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: profapi.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: windows.applicationmodel.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: twinapi.appcore.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: wintypes.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: windows.globalization.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: bcp47langs.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: bcp47mrm.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: dwmapi.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: d3d9.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: d3d10warp.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: urlmon.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: iertutil.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: srvcli.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: netutils.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: windowscodecs.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: msasn1.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: msisip.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: wshext.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: appxsip.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: opcservices.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: esdsip.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: ncrypt.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: ntasn1.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: ncrypt.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: ntasn1.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: ncryptprov.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: wtsapi32.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: winsta.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: powrprof.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: umpdc.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: dataexchange.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: d3d11.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: dcomp.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: dxgi.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: resourcepolicyclient.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: dxcore.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: textshaping.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: winmm.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: textinputframework.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: coreuicomponents.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: coremessaging.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: ntmarta.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: msctfui.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: uiautomationcore.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: propsys.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: rasapi32.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: rasman.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: rtutils.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: d3dcompiler_47.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: mswsock.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: winhttp.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: ondemandconnroutehelper.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: iphlpapi.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: dhcpcsvc6.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: dhcpcsvc.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: dnsapi.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: winnsi.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: rasadhlp.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: fwpuclnt.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: wininet.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: sspicli.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: secur32.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: schannel.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: ondemandconnroutehelper.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: mskeyprotect.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: ncryptsslp.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: gpapi.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: windows.web.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: installservice.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: userenv.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: mpr.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: onecoreuapcommonproxystub.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: rometadata.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: slc.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: sppc.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: ieframe.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: netapi32.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: wkscli.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: windows.staterepositoryps.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: edputil.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: mlang.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: policymanager.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: msvcp110_win.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: twinui.appcore.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: execmodelproxy.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: mrmcorer.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: windows.staterepositorycore.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: windows.ui.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: windowmanagementapi.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeSection loaded: inputhost.dll
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeKey value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41945702-8302-44A6-9445-AC98E8AFA086}\InprocServer32
Source: Window RecorderWindow detected: More than 3 window changes detected
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeFile opened: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorrc.dll
Source: Unlimited HEIC Converter Installer.exeStatic PE information: certificate valid
Source: Unlimited HEIC Converter Installer.exeStatic PE information: data directory type: IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR
Source: Unlimited HEIC Converter Installer.exeStatic file information: File size 1058336 > 1048576
Source: Unlimited HEIC Converter Installer.exeStatic PE information: HIGH_ENTROPY_VA, DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE
Source: Unlimited HEIC Converter Installer.exeStatic PE information: data directory type: IMAGE_DIRECTORY_ENTRY_DEBUG
Source: Unlimited HEIC Converter Installer.exeStatic PE information: 0xD76DA577 [Thu Jul 13 00:40:23 2084 UTC]
Source: Unlimited HEIC Converter Installer.exeStatic PE information: real checksum: 0x10c5c5 should be: 0x110928
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess information set: NOOPENFILEERRORBOX
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeMemory allocated: 19732B70000 memory reserve | memory write watch
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeMemory allocated: 1974C620000 memory reserve | memory write watch
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 922337203685477
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 922337203685477
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 599363
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 599235
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 599123
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 599013
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598899
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598797
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598675
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598561
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598451
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598344
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598219
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598108
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597999
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597884
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597782
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597644
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597517
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597405
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597294
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597188
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597072
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596965
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596849
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596723
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596596
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596484
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596372
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 922337203685477
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596264
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596150
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596047
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 595912
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeWindow / User API: threadDelayed 8657
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeWindow / User API: threadDelayed 669
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -2767011611056431s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 372Thread sleep time: -2767011611056431s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -599363s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -599235s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -599123s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -599013s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -598899s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -598797s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -598675s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -598561s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -598451s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -598344s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -598219s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -598108s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -597999s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -597884s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -597782s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -597644s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -597517s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -597405s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -597294s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -597188s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -597072s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -596965s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -596849s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -596723s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -596596s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -596484s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -596372s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 372Thread sleep time: -922337203685477s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -596264s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -596150s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -596047s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe TID: 4092Thread sleep time: -595912s >= -30000s
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 922337203685477
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 922337203685477
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 599363
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 599235
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 599123
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 599013
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598899
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598797
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598675
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598561
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598451
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598344
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598219
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 598108
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597999
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597884
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597782
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597644
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597517
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597405
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597294
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597188
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 597072
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596965
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596849
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596723
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596596
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596484
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596372
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 922337203685477
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596264
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596150
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 596047
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeThread delayed: delay time: 595912
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeProcess token adjusted: Debug
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeMemory allocated: page read and write | page guard
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\System32\WinMetadata\Windows.Globalization.winmd VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.dll VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Windows.Controls.Ribbon\v4.0_4.0.0.0__b77a5c561934e089\System.Windows.Controls.Ribbon.dll VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\SMDiagnostics\v4.0_4.0.0.0__b77a5c561934e089\SMDiagnostics.dll VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.ServiceModel.Internals\v4.0_4.0.0.0__31bf3856ad364e35\System.ServiceModel.Internals.dll VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\System32\WinMetadata\Windows.System.winmd VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\segoeui.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\seguili.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\seguisli.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\segoeuii.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\seguisb.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\seguisbi.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\segoeuiz.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\System32\WinMetadata\Windows.Foundation.winmd VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\seguibl.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\seguibli.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\System32\WinMetadata\Windows.ApplicationModel.winmd VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.InteropServices.WindowsRuntime\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.InteropServices.WindowsRuntime.dll VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.WindowsRuntime\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.WindowsRuntime.dll VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationTypes\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\UIAutomationProvider\v4.0_4.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\segoeui.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\seguisb.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\PresentationFramework-SystemXml\v4.0_4.0.0.0__b77a5c561934e089\PresentationFramework-SystemXml.dll VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Microsoft.NET\assembly\GAC_MSIL\System.Deployment\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\seguisb.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\seguisb.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\seguisb.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\segoeui.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WPF9C8D.tmp VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\System32\WinMetadata\Windows.Data.winmd VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\segoeui.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\segoeui.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\WPFDCB2.tmp VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\seguisb.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\seguisb.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\seguisb.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\segoeui.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\seguisb.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\seguisb.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeQueries volume information: C:\Windows\Fonts\segoeui.ttf VolumeInformation
Source: C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exeKey value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography MachineGuid
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management Instrumentation1
DLL Side-Loading
1
DLL Side-Loading
1
Masquerading
OS Credential Dumping32
Virtualization/Sandbox Evasion
Remote ServicesData from Local SystemData ObfuscationExfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization Scripts1
Disable or Modify Tools
LSASS Memory1
Application Window Discovery
Remote Desktop ProtocolData from Removable MediaJunk DataExfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)32
Virtualization/Sandbox Evasion
Security Account Manager12
System Information Discovery
SMB/Windows Admin SharesData from Network Shared DriveSteganographyAutomated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin Hook1
Timestomp
NTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput CaptureProtocol ImpersonationTraffic DuplicationData Destruction
Gather Victim Network InformationServerCloud AccountsLaunchdNetwork Logon ScriptNetwork Logon Script1
DLL Side-Loading
LSA SecretsInternet Connection DiscoverySSHKeyloggingFallback ChannelsScheduled TransferData Encrypted for Impact

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
No Antivirus matches
No Antivirus matches
No Antivirus matches
No Antivirus matches
No Antivirus matches
NameIPActiveMaliciousAntivirus DetectionReputation
fp2e7a.wpc.phicdn.net
192.229.221.95
truefalse
    unknown
    • No. of IPs < 25%
    • 25% < No. of IPs < 50%
    • 50% < No. of IPs < 75%
    • 75% < No. of IPs
    IPDomainCountryFlagASNASN NameMalicious
    184.28.90.29
    unknownUnited States
    16625AKAMAI-ASUSfalse
    20.82.154.241
    unknownUnited States
    8075MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
    23.32.185.103
    unknownUnited States
    16625AKAMAI-ASUSfalse
    Joe Sandbox version:41.0.0 Charoite
    Analysis ID:1546791
    Start date and time:2024-11-01 15:49:42 +01:00
    Joe Sandbox product:CloudBasic
    Overall analysis duration:
    Hypervisor based Inspection enabled:false
    Report type:full
    Cookbook file name:defaultwindowsinteractivecookbook.jbs
    Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
    Number of analysed new started processes analysed:26
    Number of new started drivers analysed:0
    Number of existing processes analysed:0
    Number of existing drivers analysed:0
    Number of injected processes analysed:0
    Technologies:
    • EGA enabled
    Analysis Mode:stream
    Analysis stop reason:Timeout
    Sample name:Unlimited HEIC Converter Installer.exe
    Detection:CLEAN
    Classification:clean3.winEXE@1/3@0/38
    Cookbook Comments:
    • Found application associated with file extension: .exe
    • Exclude process from analysis (whitelisted): dllhost.exe, svchost.exe
    • Excluded IPs from analysis (whitelisted): 184.28.90.29, 23.32.185.103, 20.82.154.241
    • Excluded domains from analysis (whitelisted): storesdk.dsx.mp.microsoft.com.edgekey.net, e12564.dspb.akamaiedge.net, storesdk.dsx.mp.microsoft.com, rp-consumer-prod-displaycatalog-geomap.trafficmanager.net, store-images.s-microsoft.com, e16646.g.akamaiedge.net, storesdk.xbetservices.akadns.net, store-images.s-microsoft.com-c.edgekey.net, displaycatalog.mp.microsoft.com, displaycatalog-rp.md.mp.microsoft.com.akadns.net, neus1c-displaycatalog.frontdoor.bigcatalog.commerce.microsoft.com
    • Not all processes where analyzed, report is missing behavior information
    • Report size getting too big, too many NtAllocateVirtualMemory calls found.
    • Report size getting too big, too many NtOpenKeyEx calls found.
    • Report size getting too big, too many NtProtectVirtualMemory calls found.
    • Report size getting too big, too many NtQueryValueKey calls found.
    • Report size getting too big, too many NtReadVirtualMemory calls found.
    • VT rate limit hit for: Unlimited HEIC Converter Installer.exe
    Process:C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe
    File Type:PNG image data, 100 x 100, 8-bit/color RGBA, non-interlaced
    Category:dropped
    Size (bytes):3649
    Entropy (8bit):7.925781063647787
    Encrypted:false
    SSDEEP:
    MD5:D1C4F9EE4D634FC919EB2BAEC444F973
    SHA1:152DFDDCC0AF6466CD5363D9A09AE62392FE64F9
    SHA-256:EA65A8F873C2085B943A62A7B05444821A621B9830AE9EB7F446FA425BA1A8B2
    SHA-512:1386CBF2C3125B024C366BDC566B96741D1ACD279F8A1BD7AA53AED865FEBE4D1BDC0563978261C812C532250E283EEB884F99FE8C5A4E5D424633237D8B0FFC
    Malicious:false
    Reputation:unknown
    Preview:.PNG........IHDR...d...d.....p.T....pHYs..........o.d....IDATx..yp.......9..D.. .....".8u...Ve..t.N..U;....Z..a...bp...x...h.c....M...$ .....Iv7....=.o.I6.n..}h....{=.>.......OTx.Jj.+.< ...".< ...".r..|..+...x<>.$....H$.j.......S.@dY.....a.v6."......U.&.Fc.z....2...RX...y..|.`..&..`..&..`..&..`.....P.....$......3Q..X...EQ..C@.Y....C......+...0.466.....*N..vjnjjj...U..75M.g..l.d2..) e>...\*.......`..-..Y;....:..Tj.(]aY.....\(1.....l......mvWn.Tf..Q!O\9..8.....D0y@...D0y@...D0y@..K..).*d....J..0..r.:.9....q.QT/.......3.|...................W.|.+...L.z.... ....9..f../G......(...2d....!m~..v..PFJ..>.9..V.Xqv.y...z..w.".....Gv....!Gg.>......|~..n...M.4.9;u.!..K...cZ.-.N/.u9..... ....y3.....D0y@...D0y@...D0y@...D0...j.(.*"K8 &UI....J.L@(B..Su....H...._..5....0@..).V./.....f.g=..i."...........j.R....[&.......@...u.>U):...H&.}.cm.}.P.....i..qa,!.. .....|.%...O&..cb<.=...$.g....%...(A9.D(F......IU[.g.H.A(2{.Hl(..dx35...@...0".....]L...d....y.{>...
    Process:C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe
    File Type:PNG image data, 68 x 68, 8-bit/color RGBA, non-interlaced
    Category:dropped
    Size (bytes):777
    Entropy (8bit):7.581516394833844
    Encrypted:false
    SSDEEP:
    MD5:A5F45979E0C15389FDB29216EBB19BBF
    SHA1:7CD1E4338E4A0E40D79BDADB431D5F0AE9603DE6
    SHA-256:1B121A7E399FB053BF529883299B0BA0B958FA806CB0CD2B4D255BED58AA8492
    SHA-512:17267975D299B074B7167530ACF3B5C5A4D1D9AA7FF3040D39ACDB36FCE059CF246BEC7B83FBF35CFCA7AC75F00E7347DB6B79040AFE5C083B924552017083E6
    Malicious:false
    Reputation:unknown
    Preview:.PNG........IHDR...D...D.....8.......pHYs...........~.....IDATx..KC1..._8.. ].t... ......b....IT....I-..C......A..AA.|..4.M^^............J.(.2=..t.wF.$.266.J....^..V."@../ .w3..qY.U7:....P...WOo....aM.>.j..y./.... L..,...I^@|a....b..q.:........%i.m4@._....X...........%..u.p..PX.9.XL..|.H.@.?....\..xm..3...&..~...HREa........b. ...*e.@|$M........ {..,l-$D......i...2.MP....:.tk@#..T.!..a.bP.$..Z.......>@0... C...+...E.3%w..nX...G..;.(...C..I.d....l2U.t<.).....$...L<.......2.....I{.,...=..KA"..H..k. .-.......TR.?&lj.k....D.....?.... ].?g.*._....9..S.c.R.....J..G..%..lb ..j6.....!...4..&S(...........A.....J...2@.k>@Z.......h-D.#....... ......... t...3$.`.............4..&.N..Lg...m..2t).J.B.P..".3!.bZV.5.A).2.+T_:R..T.0......c....s0P....IEND.B`.
    Process:C:\Users\user\Desktop\Unlimited HEIC Converter Installer.exe
    File Type:ASCII text, with very long lines (1136), with no line terminators
    Category:dropped
    Size (bytes):1136
    Entropy (8bit):5.884313058724772
    Encrypted:false
    SSDEEP:
    MD5:A10F31FA140F2608FF150125F3687920
    SHA1:EC411CC7005AAA8E3775CF105FCD4E1239F8ED4B
    SHA-256:28C871238311D40287C51DC09AEE6510CAC5306329981777071600B1112286C6
    SHA-512:CF915FB34CD5ECFBD6B25171D6E0D3D09AF2597EDF29F9F24FA474685D4C5EC9BC742ADE9F29ABAC457DD645EE955B1914A635C90AF77C519D2ADA895E7ECF12
    Malicious:false
    Reputation:unknown
    Preview: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
    File type:PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
    Entropy (8bit):6.8280478140244485
    TrID:
    • Win32 Executable (generic) Net Framework (10011505/4) 50.01%
    • Win32 Executable (generic) a (10002005/4) 49.97%
    • Generic Win/DOS Executable (2004/3) 0.01%
    • DOS Executable Generic (2002/1) 0.01%
    • Autodesk FLIC Image File (extensions: flc, fli, cel) (7/3) 0.00%
    File name:Unlimited HEIC Converter Installer.exe
    File size:1'058'336 bytes
    MD5:5a0c501219ce6252e84ecd38d1e7bf3d
    SHA1:cada316be26dbdcc7d4036a85431b2c0a94f8f54
    SHA256:d7737ed305e02b560d5a03c88fbd76115d7a217cf300ef3e320265910c3d2106
    SHA512:c2ea24fe7b85eef2f854a79e0d8235c3e533394a4adb9c76934fdc9309fecaa9eb4a8eb0b69aa9e1be5015493216e61651d7ed617577a9b8ab90bc78f9a5ed5a
    SSDEEP:12288:qvUGQWpy+Tac0RDffXJjyYpcyoNHSy5viczPESsQ3BaE32VfXJjyYpz:lGQB+2DR7BWYpcyo44u0aPVBWYpz
    TLSH:54354C9123FC4439E7B70B39BD7A58610735BC395942E5AE098E293C18F2B1689F2737
    File Content Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......PE..L...w.m..........."...0......(........... ........@.. ....................... ............`................................
    Icon Hash:136cb2b27171b24d
    Entrypoint:0x4ea89e
    Entrypoint Section:.text
    Digitally signed:true
    Imagebase:0x400000
    Subsystem:windows gui
    Image File Characteristics:EXECUTABLE_IMAGE, LARGE_ADDRESS_AWARE
    DLL Characteristics:HIGH_ENTROPY_VA, DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE
    Time Stamp:0xD76DA577 [Thu Jul 13 00:40:23 2084 UTC]
    TLS Callbacks:
    CLR (.Net) Version:
    OS Version Major:4
    OS Version Minor:0
    File Version Major:4
    File Version Minor:0
    Subsystem Version Major:4
    Subsystem Version Minor:0
    Import Hash:f34d5f2d4577ed6d9ceec516c1f5a744
    Signature Valid:true
    Signature Issuer:CN=Microsoft Marketplace CA G 027, OU=EOC, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
    Signature Validation Error:The operation completed successfully
    Error Number:0
    Not Before, Not After
    • 13/09/2024 02:07:32 16/09/2024 02:07:32
    Subject Chain
    • CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
    Version:3
    Thumbprint MD5:F5B7BCC826B78AEF763836D82EF67DBA
    Thumbprint SHA-1:FDA943641AAA87F7EA61F7347FE92B9C3ABC3825
    Thumbprint SHA-256:51B79453AFF83A66E1EC1E1139143AAB93E8BC7D4E00E922857DEAE48B2F0543
    Serial:33003E3B13F845F76C76D487AB0001003E3B13
    Instruction
    jmp dword ptr [00402000h]
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    add byte ptr [eax], al
    NameVirtual AddressVirtual Size Is in Section
    IMAGE_DIRECTORY_ENTRY_EXPORT0x00x0
    IMAGE_DIRECTORY_ENTRY_IMPORT0xea84b0x4f.text
    IMAGE_DIRECTORY_ENTRY_RESOURCE0xec0000x12520.rsrc
    IMAGE_DIRECTORY_ENTRY_EXCEPTION0x00x0
    IMAGE_DIRECTORY_ENTRY_SECURITY0xfb4000x7220
    IMAGE_DIRECTORY_ENTRY_BASERELOC0x1000000xc.reloc
    IMAGE_DIRECTORY_ENTRY_DEBUG0xea7700x54.text
    IMAGE_DIRECTORY_ENTRY_COPYRIGHT0x00x0
    IMAGE_DIRECTORY_ENTRY_GLOBALPTR0x00x0
    IMAGE_DIRECTORY_ENTRY_TLS0x00x0
    IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG0x00x0
    IMAGE_DIRECTORY_ENTRY_BOUND_IMPORT0x00x0
    IMAGE_DIRECTORY_ENTRY_IAT0x20000x8.text
    IMAGE_DIRECTORY_ENTRY_DELAY_IMPORT0x00x0
    IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR0x20080x48.text
    IMAGE_DIRECTORY_ENTRY_RESERVED0x00x0
    NameVirtual AddressVirtual SizeRaw SizeMD5Xored PEZLIB ComplexityFile TypeEntropyCharacteristics
    .text0x20000xe88a40xe8a005b6a3efd8eac820346aff8b482a10019False0.4117619895217625data6.750490375633941IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ
    .rsrc0xec0000x125200x126009ea49324b516aa5d1561d31d950be75cFalse0.9542410714285714data7.935620731794472IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ
    .reloc0x1000000xc0x2002489e7acd7e3729bd40ae5f145668c14False0.044921875data0.09800417566270775IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_DISCARDABLE, IMAGE_SCN_MEM_READ
    NameRVASizeTypeLanguageCountryZLIB Complexity
    RT_ICON0xec1e00xd5e7PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced1.0004748077941525
    RT_ICON0xf97d80x1363PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced1.0022164013701391
    RT_ICON0xfab4c0xc9dPNG image data, 48 x 48, 8-bit/color RGBA, non-interlaced1.0034066274388356
    RT_ICON0xfb7fc0x9daPNG image data, 40 x 40, 8-bit/color RGBA, non-interlaced1.0043616177636796
    RT_ICON0xfc1e80x691PNG image data, 32 x 32, 8-bit/color RGBA, non-interlaced1.006543723973825
    RT_ICON0xfc88c0x490PNG image data, 24 x 24, 8-bit/color RGBA, non-interlaced1.009417808219178
    RT_ICON0xfcd2c0x396PNG image data, 20 x 20, 8-bit/color RGBA, non-interlaced1.0119825708061003
    RT_ICON0xfd0d40x299PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced1.0165413533834586
    RT_GROUP_ICON0xfd3800x76data0.7542372881355932
    RT_VERSION0xfd4080x3e0data0.4284274193548387
    RT_MANIFEST0xfd7f80xd21XML 1.0 document, Unicode text, UTF-8 (with BOM) text, with CRLF line terminators0.3924427253793514
    DLLImport
    mscoree.dll_CorExeMain