File name:

storageemulated0Androiddatacom.samsung.android.messagingfiles20180319_151817_001.mp4

Full analysis: https://app.any.run/tasks/42ee9889-a186-4c16-83b5-98401efeb5bb
Verdict: No threats detected
Analysis date: July 17, 2018, 12:30:22
OS: Windows 7 Professional Service Pack 1 (build: 7601, 32 bit)
Indicators:
MIME: video/mp4
File info: ISO Media, MP4 v2 [ISO 14496-14]
MD5:

4BEDD3A6CC954FCDC0EFE2F0A16741C0

SHA1:

CCC6F15E4259315DBDEEB6E68625C014281F6596

SHA256:

22E5E9B8DD4F23EB166F07D8EE037EFAA14C7725DF42153C4643C6F1870C1BD3

SSDEEP:

196608:47oBsiosrA1ZdShJQwZ8O2+U5E6edzJ3uQxz4jRxhxvDjSbWvIULDKT7iB:4MdLrrhJn8UfY9jDHDMEOCB

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    No malicious indicators.
  • SUSPICIOUS

    No suspicious indicators.
  • INFO

    No info indicators.
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.m4v | MPEG-4 Video (36.7)
.m4r | iPhone Ringtone (33)
.3g2 | 3GPP2 multimedia audio/video (25.4)
.mov | QuickTime Movie (2.6)
.mp4 | Generic MP4 container (1.5)

EXIF

QuickTime

MajorBrand: MP4 v2 [ISO 14496-14]
MinorVersion: 0.0.0
CompatibleBrands:
  • isom
  • mp42
MovieDataSize: 9174541
MovieDataOffset: 32
MovieHeaderVersion: -
CreateDate: 2018:03:19 20:26:11
ModifyDate: 2018:03:19 20:26:11
TimeScale: 1000
Duration: 0:01:10
PreferredRate: 1
PreferredVolume: 100.00%
PreviewTime: 0 s
PreviewDuration: 0 s
PosterTime: 0 s
SelectionTime: 0 s
SelectionDuration: 0 s
CurrentTime: 0 s
NextTrackID: 3
PlayMode: SEQ_PLAY
ComAndroidVersion: 7
TrackHeaderVersion: -
TrackCreateDate: 2018:03:19 20:26:11
TrackModifyDate: 2018:03:19 20:26:11
TrackID: 1
TrackDuration: 0:01:10
TrackLayer: -
TrackVolume: 0.00%
ImageWidth: 640
ImageHeight: 480
GraphicsMode: srcCopy
OpColor: 0 0 0
CompressorID: avc1
SourceImageWidth: 640
SourceImageHeight: 480
XResolution: 72
YResolution: 72
BitDepth: 24
PixelAspectRatio: 65536:65536
ColorRepresentation: nclx 6 1 6
VideoFrameRate: 29.942
MatrixStructure: 1 0 0 0 1 0 0 0 1
MediaHeaderVersion: -
MediaCreateDate: 2018:03:19 20:26:11
MediaModifyDate: 2018:03:19 20:26:11
MediaTimeScale: 48000
MediaDuration: 0:01:10
HandlerType: Audio Track
HandlerDescription: SoundHandle
Balance: -
AudioFormat: mp4a
AudioChannels: 2
AudioBitsPerSample: 16
AudioSampleRate: 48000

Composite

AvgBitrate: 1.04 Mbps
ImageSize: 640x480
Megapixels: 0.307
Rotation: 90
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
32
Monitored processes
1
Malicious processes
0
Suspicious processes
0

Behavior graph

Click at the process to see the details
start vlc.exe

Process information

PID
CMD
Path
Indicators
Parent process
1908"C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file "C:\Users\admin\AppData\Local\Temp\storageemulated0Androiddatacom.samsung.android.messagingfiles20180319_151817_001.mp4"C:\Program Files\VideoLAN\VLC\vlc.exe
explorer.exe
User:
admin
Company:
VideoLAN
Integrity Level:
MEDIUM
Description:
VLC media player
Exit code:
0
Version:
2.2.6
Modules
Images
c:\program files\videolan\vlc\vlc.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\kernel32.dll
c:\program files\videolan\vlc\libvlc.dll
c:\program files\videolan\vlc\libvlccore.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
Total events
358
Read events
357
Write events
1
Delete events
0

Modification events

(PID) Process:(1908) vlc.exeKey:HKEY_CURRENT_USER\Software\Microsoft\Direct3D\MostRecentApplication
Operation:writeName:Name
Value:
vlc.exe
Executable files
0
Suspicious files
0
Text files
1
Unknown types
0

Dropped files

PID
Process
Filename
Type
1908vlc.exeC:\Users\admin\AppData\Local\Temp\VLC9DE.tmp
MD5:
SHA256:
1908vlc.exeC:\Users\admin\AppData\Local\Temp\VLCAD9.tmp
MD5:
SHA256:
1908vlc.exeC:\Users\admin\AppData\Local\Temp\VLCAEA.tmp
MD5:
SHA256:
1908vlc.exeC:\Users\admin\AppData\Local\Temp\VLCAEB.tmp
MD5:
SHA256:
1908vlc.exeC:\Users\admin\AppData\Local\Temp\VLCAEC.tmp
MD5:
SHA256:
1908vlc.exeC:\Users\admin\AppData\Local\Temp\VLCAED.tmp
MD5:
SHA256:
1908vlc.exeC:\Users\admin\AppData\Local\Temp\VLCAEE.tmp
MD5:
SHA256:
1908vlc.exeC:\Users\admin\AppData\Local\Temp\VLCAEF.tmp
MD5:
SHA256:
1908vlc.exeC:\Users\admin\AppData\Local\Temp\VLCB0F.tmp
MD5:
SHA256:
1908vlc.exeC:\Users\admin\AppData\Local\Temp\VLCB10.tmp
MD5:
SHA256:
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
0
TCP/UDP connections
0
DNS requests
0
Threats
0

HTTP requests

No HTTP requests
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

No data

DNS requests

No data

Threats

No threats detected
Process
Message
vlc.exe
core libvlc: one instance mode ENABLED
vlc.exe
core libvlc: Running vlc with the default interface. Use 'cvlc' to use vlc without interface.
vlc.exe
direct3d vout display error: Could not read adapter capabilities. (hr=0x8876086A)
vlc.exe
direct3d vout display error: Direct3D could not be initialized
vlc.exe
freetype spu text error: Breaking unbreakable line
vlc.exe
freetype spu text error: Breaking unbreakable line
vlc.exe
freetype spu text error: Breaking unbreakable line