| File name: | NoiseAsset_256X256_PNG.png |
| Full analysis: | https://app.any.run/tasks/7420ff11-1d41-4486-88d6-a77b8782bdca |
| Verdict: | No threats detected |
| Analysis date: | November 05, 2018, 11:27:39 |
| OS: | Windows 7 Professional Service Pack 1 (build: 7601, 32 bit) |
| MIME: | image/png |
| File info: | PNG image data, 256 x 256, 8-bit colormap, non-interlaced |
| MD5: | 81F27726C45346351ECA125BD062E9A7 |
| SHA1: | 688AEF60C29DE41EE32163082E0E1F1B96806BEA |
| SHA256: | 4F2AA94A2E345A32DAE689176B86C644BEF87081FF9DAEF8C77417731862031B |
| SSDEEP: | 96:Ng/UMATL+oL5dQ+AzMMKPEg/fDbn9nJ8UR6Ebj:uATioL5MKTfn9Kw6oj |
| .png | | | Portable Network Graphics (100) |
|---|
| ImageWidth: | 256 |
|---|---|
| ImageHeight: | 256 |
| BitDepth: | 8 |
| ColorType: | Palette |
| Compression: | Deflate/Inflate |
| Filter: | Adaptive |
| Interlace: | Noninterlaced |
| Software: | Adobe ImageReady |
| Palette: | (Binary data 18 bytes, use -b option to extract) |
| ImageSize: | 256x256 |
|---|---|
| Megapixels: | 0.066 |
PID | CMD | Path | Indicators | Parent process | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 2004 | "C:\Windows\System32\rundll32.exe" "C:\Program Files\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen C:\Users\admin\AppData\Local\Temp\NoiseAsset_256X256_PNG.png | C:\Windows\System32\rundll32.exe | — | explorer.exe | |||||||||||
User: admin Company: Microsoft Corporation Integrity Level: MEDIUM Description: Windows host process (Rundll32) Exit code: 0 Version: 6.1.7600.16385 (win7_rtm.090713-1255) Modules
| |||||||||||||||
| (PID) Process: | (2004) rundll32.exe | Key: | HKEY_CURRENT_USER\Software\Microsoft\Direct3D\MostRecentApplication |
| Operation: | write | Name: | Name |
Value: rundll32.exe | |||
| (PID) Process: | (2004) rundll32.exe | Key: | HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\OpenWithProgids |
| Operation: | write | Name: | pngfile |
Value: | |||
| (PID) Process: | (2004) rundll32.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\MuiCache |
| Operation: | write | Name: | C:\Program Files\Windows Photo Viewer\PhotoViewer.dll |
Value: Windows Photo Viewer | |||
| (PID) Process: | (2004) rundll32.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\MuiCache |
| Operation: | write | Name: | C:\Windows\system32\mspaint.exe |
Value: Paint | |||
| (PID) Process: | (2004) rundll32.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\MuiCache |
| Operation: | write | Name: | C:\Program Files\Opera\Opera.exe |
Value: Opera Internet Browser | |||
| (PID) Process: | (2004) rundll32.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\MuiCache |
| Operation: | write | Name: | C:\Windows\eHome\ehshell.exe |
Value: Windows Media Center | |||
| (PID) Process: | (2004) rundll32.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\MuiCache |
| Operation: | write | Name: | C:\PROGRA~1\MICROS~1\Office14\OIS.EXE |
Value: Microsoft Office 2010 | |||