File name:

MT103-SWIFT-144A S G4639DVY8 P1A-2A_opt(1).pdf

Full analysis: https://app.any.run/tasks/3ac5e63b-7b9b-47a2-ab0a-1b8db4ebda37
Verdict: No threats detected
Analysis date: November 06, 2018, 12:12:59
OS: Windows 7 Professional Service Pack 1 (build: 7601, 32 bit)
Indicators:
MIME: application/pdf
File info: PDF document, version 1.4
MD5:

BC806D171A1BB54A2C9C2C9BFBF05959

SHA1:

540BFE560EB8B755DA8F69F0AD19E54B9AAE0576

SHA256:

592EF7E181C08BA5C2D0266D1D18E263D615EC6ABAB261A10EC7ED519A8F7A85

SSDEEP:

49152:joX8BrdOoPU3/nKhpAYn2bYr4UE+69MKAb0eTJii8zAjle:0sfbPUPKhj2bmyMKuhEQle

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    No malicious indicators.
  • SUSPICIOUS

    • Creates files in the program directory

      • AdobeARM.exe (PID: 2980)
  • INFO

    • Application launched itself

      • RdrCEF.exe (PID: 3340)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.pdf | Adobe Portable Document Format (100)

EXIF

PDF

PDFVersion: 1.4
Linearized: No
PageCount: 2
CreateDate: 2017:06:01 18:27:36+04:30
ModifyDate: 2017:12:18 05:19:14-08:00
Creator: Adobe Photoshop CC 2015 (Windows)
Producer: Adobe Photoshop for Windows -- Image Conversion Plug-in

ICC_Profile

ProfileCMMType: Lino
ProfileVersion: 2.1.0
ProfileClass: Display Device Profile
ColorSpaceData: RGB
ProfileConnectionSpace: XYZ
ProfileDateTime: 1998:02:09 06:49:00
ProfileFileSignature: acsp
PrimaryPlatform: Microsoft Corporation
CMMFlags: Not Embedded, Independent
DeviceManufacturer: IEC
DeviceModel: sRGB
DeviceAttributes: Reflective, Glossy, Positive, Color
RenderingIntent: Media-Relative Colorimetric
ConnectionSpaceIlluminant: 0.9642 1 0.82491
ProfileCreator: HP
ProfileID: -
ProfileCopyright: Copyright (c) 1998 Hewlett-Packard Company
ProfileDescription: sRGB IEC61966-2.1
MediaWhitePoint: 0.95045 1 1.08905
MediaBlackPoint: 0 0 0
RedMatrixColumn: 0.43607 0.22249 0.01392
GreenMatrixColumn: 0.38515 0.71687 0.09708
BlueMatrixColumn: 0.14307 0.06061 0.7141
DeviceMfgDesc: IEC http://www.iec.ch
DeviceModelDesc: IEC 61966-2.1 Default RGB colour space - sRGB
ViewingCondDesc: Reference Viewing Condition in IEC61966-2.1
ViewingCondIlluminant: 19.6445 20.3718 16.8089
ViewingCondSurround: 3.92889 4.07439 3.36179
ViewingCondIlluminantType: D50
Luminance: 76.03647 80 87.12462
MeasurementObserver: CIE 1931
MeasurementBacking: 0 0 0
MeasurementGeometry: Unknown
MeasurementFlare: 0.999%
MeasurementIlluminant: D65
Technology: Cathode Ray Tube Display
RedTRC: (Binary data 2060 bytes, use -b option to extract)
GreenTRC: (Binary data 2060 bytes, use -b option to extract)
BlueTRC: (Binary data 2060 bytes, use -b option to extract)

IPTC

CodedCharacterSet: UTF8
ApplicationRecordVersion: 60813

Photoshop

IPTCDigest: 16dd63aa73673a96e1fdf9a073d86e6a
XResolution: 125
DisplayedUnitsX: inches
YResolution: 125
DisplayedUnitsY: inches
PrintStyle: Centered
PrintPosition: -0.111111111938953 -0.118055552244186
PrintScale: 1
GlobalAngle: 4294967247
GlobalAltitude: 30
URL_List:
    SlicesGroupName: -
    NumSlices: 1
    PixelAspectRatio: 1
    PhotoshopThumbnail: (Binary data 4865 bytes, use -b option to extract)
    HasRealMergedData: Yes
    WriterName: Adobe Photoshop
    ReaderName: Adobe Photoshop CC 2015

    EXIF

    ImageWidth: 2480
    ImageHeight: 3508
    BitsPerSample: 8 8 8
    PhotometricInterpretation: RGB
    Orientation: Horizontal (normal)
    SamplesPerPixel: 3
    XResolution: 125
    YResolution: 125
    ResolutionUnit: inches
    Software: Adobe Photoshop CC 2015 (Windows)
    ModifyDate: 2017:07:31 03:14:03
    ExifVersion: 0221
    ColorSpace: sRGB
    ExifImageWidth: 1033
    ExifImageHeight: 1462
    Compression: JPEG (old-style)
    ThumbnailOffset: 386
    ThumbnailLength: -

    XMP

    XMPToolkit: Adobe XMP Core 5.6-c067 79.157747, 2015/03/30-23:40:42
    CreatorTool: Adobe Photoshop CC 2015 (Windows)
    CreateDate: 2017:06:01 18:27:36+04:30
    MetadataDate: 2017:07:31 03:14:06-07:00
    ThumbnailFormat: JPEG
    ThumbnailHeight: 256
    ThumbnailWidth: 181
    ThumbnailImage: (Binary data 10727 bytes, use -b option to extract)
    LegacyIPTCDigest: 7707F73C7015E05CE7AE8C487AD47F9F
    ColorMode: RGB
    ICCProfileName: sRGB IEC61966-2.1
    DocumentAncestors:
    • 8020777372DC9B20A617FD5264DB38ED
    • 89835A08C17EDBC03A782EB1EF3DB282
    • AA089ED35A542E918EF36D6E2D1826CD
    • BBB41853DE8FF55F7DEF0E147E601A42
    • C635DD72818A8C6675F472CAB8EE50AC
    • DDBE1E0FEF67380F8E3558499E98FFC3
    • DDC1F40C6EF1BEF8048AF4B032B9E30B
    • F609011D6CE74AD5B616E604A7633804
    • FAFA28029B24FF09E5B0F311B49B8A8A
    • FDE290E769CCF0CA4BB3C7E35DC9D2E0
    • adobe:docid:photoshop:0361be18-5e50-11e7-888d-e57aae570c52
    • adobe:docid:photoshop:042d0805-565a-11e7-b73c-a5454e6e52af
    • adobe:docid:photoshop:07ccdf75-55c4-11e7-b07a-e0213984740d
    • adobe:docid:photoshop:0b243418-5838-11e7-a34a-96d369479da0
    • adobe:docid:photoshop:10c5ada7-5e3c-11e7-888d-e57aae570c52
    • adobe:docid:photoshop:146dc4c7-51a8-11e7-850e-dfc062fa04ef
    • adobe:docid:photoshop:1a8256c0-66f0-11e7-8615-9ac1e0caa8c5
    • adobe:docid:photoshop:38ade5b8-56b3-11e7-93e1-be5e4c857285
    • adobe:docid:photoshop:881c0c71-6641-11e7-846b-c35db6086b54
    • adobe:docid:photoshop:9b4488b0-6d5c-11e7-b0ad-cdb6fcd35f22
    • adobe:docid:photoshop:9f7b8200-6e18-11e7-931d-b1cecaf66d42
    • adobe:docid:photoshop:b44545cd-6e22-11e7-931d-b1cecaf66d42
    • adobe:docid:photoshop:c52ac21c-6e18-11e7-931d-b1cecaf66d42
    • adobe:docid:photoshop:eb0250df-6c96-11e7-ae27-e0ea1f2339d9
    • adobe:docid:photoshop:f384e74b-6d33-11e7-b0ad-cdb6fcd35f22
    • adobe:docid:photoshop:f57127ee-46db-11e7-b876-a644f17670f7
    • adobe:docid:photoshop:fd492dc4-46d2-11e7-b876-a644f17670f7
    • adobe:docid:photoshop:fd6e7a62-6108-11e7-9f1e-ba31c4de2a44
    • adobe:docid:photoshop:ff59ef5a-55bb-11e7-b07a-e0213984740d
    • uuid:CA571D405391E61181F486113D76A00D
    • xmp.did:03a61dc4-a625-7047-83d4-ca0626325271
    • xmp.did:36b2af5b-5370-af41-8c58-92bd2b123068
    • xmp.did:6ed83d2b-60fa-c248-9057-07ddd81945cc
    • xmp.did:80A5448A058EE0118FDEC52C70762CA5
    • xmp.did:868f2a31-1694-424a-b3e3-eb9431ece42e
    • xmp.did:9b116ef3-6236-4a48-b3d0-6ce484840a81
    • xmp.did:afaa0e16-32eb-7f42-b0cf-ff858a1c4362
    • xmp.did:d4ff4c92-5324-c049-8af9-a39e9198940b
    • xmp.did:e556cd82-a6dc-1c44-9d36-efd7c6086025
    Format: application/pdf
    InstanceID: uuid:4a4c5f35-5f67-4904-8299-5754010d3247
    DocumentID: adobe:docid:photoshop:fa43cf2d-75d8-11e7-9c4f-bff1680b819d
    OriginalDocumentID: xmp.did:6ed83d2b-60fa-c248-9057-07ddd81945cc
    HistoryAction:
    • created
    • saved
    • saved
    • converted
    • derived
    • saved
    • saved
    • converted
    • derived
    • saved
    • saved
    HistoryInstanceID:
    • xmp.iid:6ed83d2b-60fa-c248-9057-07ddd81945cc
    • xmp.iid:26534e81-e2da-e648-b955-d7aec0708490
    • xmp.iid:031e99d5-180f-7f4a-a14f-73e6a34ec2c6
    • xmp.iid:bc44cf36-6425-0543-8fd1-2c6626ed4610
    • xmp.iid:ff8c6abe-107c-5242-9034-a3c56419b051
    • xmp.iid:46f46019-5a89-4c4e-80f9-9abd82ac2567
    • xmp.iid:7332bafa-2460-e74e-8267-e20a887f0017
    HistoryWhen:
    • 2017:06:01 18:27:36+04:30
    • 2017:06:15 13:23:19+04:30
    • 2017:06:21 12:47:07+04:30
    • 2017:06:21 12:47:07+04:30
    • 2017:07:31 03:12:46-07:00
    • 2017:07:31 03:12:46-07:00
    • 2017:07:31 03:14:03-07:00
    HistorySoftwareAgent:
    • Adobe Photoshop CC 2015 (Windows)
    • Adobe Photoshop CC 2015 (Windows)
    • Adobe Photoshop CC 2015 (Windows)
    • Adobe Photoshop CC 2015 (Windows)
    • Adobe Photoshop CC 2015 (Windows)
    • Adobe Photoshop CC 2015 (Windows)
    • Adobe Photoshop CC 2015 (Windows)
    HistoryChanged:
    • /
    • /
    • /
    • /
    • /
    • /
    HistoryParameters:
    • from application/pdf to image/jpeg
    • converted from application/pdf to image/jpeg
    • from image/jpeg to application/pdf
    • converted from image/jpeg to application/pdf
    DerivedFromInstanceID: xmp.iid:ff8c6abe-107c-5242-9034-a3c56419b051
    DerivedFromDocumentID: adobe:docid:photoshop:9f7b8200-6e18-11e7-931d-b1cecaf66d42
    DerivedFromOriginalDocumentID: xmp.did:6ed83d2b-60fa-c248-9057-07ddd81945cc
    Producer: Adobe Photoshop for Windows -- Image Conversion Plug-in
    ModifyDate: 2017:12:18 05:19:14-08:00

    Composite

    ImageSize: 2480x3508
    Megapixels: 8.7
    No data.
    screenshotscreenshotscreenshot
    All screenshots are available in the full report
    All screenshots are available in the full report
    Total processes
    36
    Monitored processes
    6
    Malicious processes
    0
    Suspicious processes
    0

    Behavior graph

    Click at the process to see the details
    start acrord32.exe acrord32.exe no specs rdrcef.exe no specs rdrcef.exe no specs rdrcef.exe no specs adobearm.exe no specs

    Process information

    PID
    CMD
    Path
    Indicators
    Parent process
    2592"C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe" "C:\Users\admin\AppData\Local\Temp\MT103-SWIFT-144A S G4639DVY8 P1A-2A_opt(1).pdf"C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe
    explorer.exe
    User:
    admin
    Company:
    Adobe Systems Incorporated
    Integrity Level:
    MEDIUM
    Description:
    Adobe Acrobat Reader DC
    Exit code:
    0
    Version:
    15.23.20070.215641
    Modules
    Images
    c:\program files\adobe\acrobat reader dc\reader\acrord32.exe
    c:\systemroot\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\kernelbase.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\lpk.dll
    c:\windows\system32\usp10.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\advapi32.dll
    2960"C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe" --type=renderer "C:\Users\admin\AppData\Local\Temp\MT103-SWIFT-144A S G4639DVY8 P1A-2A_opt(1).pdf"C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroRd32.exeAcroRd32.exe
    User:
    admin
    Company:
    Adobe Systems Incorporated
    Integrity Level:
    LOW
    Description:
    Adobe Acrobat Reader DC
    Exit code:
    0
    Version:
    15.23.20070.215641
    Modules
    Images
    c:\program files\adobe\acrobat reader dc\reader\acrord32.exe
    c:\systemroot\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\kernelbase.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\lpk.dll
    c:\windows\system32\usp10.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\advapi32.dll
    2980"C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" /PRODUCT:Reader /VERSION:15.0 /MODE:3C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exeAcroRd32.exe
    User:
    admin
    Company:
    Adobe Systems Incorporated
    Integrity Level:
    MEDIUM
    Description:
    Adobe Reader and Acrobat Manager
    Exit code:
    0
    Version:
    1.824.27.2646
    Modules
    Images
    c:\program files\common files\adobe\arm\1.0\adobearm.exe
    c:\systemroot\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\kernelbase.dll
    c:\windows\system32\msi.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\advapi32.dll
    c:\windows\system32\rpcrt4.dll
    c:\windows\system32\sechost.dll
    c:\windows\system32\user32.dll
    3340"C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe" --backgroundcolor=16448250C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exeAcroRd32.exe
    User:
    admin
    Company:
    Adobe Systems Incorporated
    Integrity Level:
    MEDIUM
    Description:
    Adobe RdrCEF
    Exit code:
    0
    Version:
    15.23.20053.211670
    Modules
    Images
    c:\program files\adobe\acrobat reader dc\reader\acrocef\rdrcef.exe
    c:\systemroot\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\kernelbase.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\lpk.dll
    c:\windows\system32\usp10.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\advapi32.dll
    3432"C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe" --type=renderer --disable-3d-apis --disable-databases --disable-direct-npapi-requests --disable-file-system --disable-notifications --disable-shared-workers --disable-direct-write --lang=en-US --lang=en-US --log-severity=disable --product-version="ReaderServices/15.23.20053 Chrome/45.0.2454.85" --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --disable-accelerated-video-decode --disable-webrtc-hw-encoding --disable-gpu-compositing --channel="3340.0.140555528\1560614162" --allow-no-sandbox-job /prefetch:673131151C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exeRdrCEF.exe
    User:
    admin
    Company:
    Adobe Systems Incorporated
    Integrity Level:
    LOW
    Description:
    Adobe RdrCEF
    Exit code:
    0
    Version:
    15.23.20053.211670
    Modules
    Images
    c:\program files\adobe\acrobat reader dc\reader\acrocef\rdrcef.exe
    c:\systemroot\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\kernelbase.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\lpk.dll
    c:\windows\system32\usp10.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\advapi32.dll
    3760"C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe" --type=renderer --disable-3d-apis --disable-databases --disable-direct-npapi-requests --disable-file-system --disable-notifications --disable-shared-workers --disable-direct-write --lang=en-US --lang=en-US --log-severity=disable --product-version="ReaderServices/15.23.20053 Chrome/45.0.2454.85" --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --disable-accelerated-video-decode --disable-webrtc-hw-encoding --disable-gpu-compositing --channel="3340.1.869216819\1538690543" --allow-no-sandbox-job /prefetch:673131151C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exeRdrCEF.exe
    User:
    admin
    Company:
    Adobe Systems Incorporated
    Integrity Level:
    LOW
    Description:
    Adobe RdrCEF
    Exit code:
    0
    Version:
    15.23.20053.211670
    Modules
    Images
    c:\program files\adobe\acrobat reader dc\reader\acrocef\rdrcef.exe
    c:\systemroot\system32\ntdll.dll
    c:\windows\system32\kernel32.dll
    c:\windows\system32\kernelbase.dll
    c:\windows\system32\user32.dll
    c:\windows\system32\gdi32.dll
    c:\windows\system32\lpk.dll
    c:\windows\system32\usp10.dll
    c:\windows\system32\msvcrt.dll
    c:\windows\system32\advapi32.dll
    Total events
    177
    Read events
    149
    Write events
    28
    Delete events
    0

    Modification events

    (PID) Process:(2960) AcroRd32.exeKey:HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\DC\ExitSection
    Operation:writeName:bLastExitNormal
    Value:
    0
    (PID) Process:(2960) AcroRd32.exeKey:HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\DC\AVGeneral
    Operation:writeName:bExpandRHPInViewer
    Value:
    1
    (PID) Process:(2592) AcroRd32.exeKey:HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings
    Operation:writeName:ProxyEnable
    Value:
    0
    (PID) Process:(2592) AcroRd32.exeKey:HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections
    Operation:writeName:SavedLegacySettings
    Value:
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
    (PID) Process:(2592) AcroRd32.exeKey:HKEY_CLASSES_ROOT\Local Settings\MuiCache\5F\52C64B7E
    Operation:writeName:LanguageList
    Value:
    en-US
    (PID) Process:(2592) AcroRd32.exeKey:HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
    Operation:writeName:UNCAsIntranet
    Value:
    0
    (PID) Process:(2592) AcroRd32.exeKey:HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
    Operation:writeName:AutoDetect
    Value:
    1
    (PID) Process:(2980) AdobeARM.exeKey:HKEY_CLASSES_ROOT\Local Settings\MuiCache\5F\52C64B7E
    Operation:writeName:LanguageList
    Value:
    en-US
    Executable files
    0
    Suspicious files
    1
    Text files
    18
    Unknown types
    12

    Dropped files

    PID
    Process
    Filename
    Type
    2960AcroRd32.exeC:\Users\admin\AppData\LocalLow\Adobe\Acrobat\DC\ReaderMessages-journal
    MD5:
    SHA256:
    2960AcroRd32.exeC:\Users\admin\AppData\Local\Temp\acrord32_sbx\A9R1ul27at_3y9uz7_2a8.tmp
    MD5:
    SHA256:
    2960AcroRd32.exeC:\Users\admin\AppData\Local\Temp\acrord32_sbx\A9Ral0fn2_3y9uz6_2a8.tmp
    MD5:
    SHA256:
    2960AcroRd32.exeC:\Users\admin\AppData\Local\Temp\acrord32_sbx\A9Rsyl7f1_3y9uz9_2a8.tmp
    MD5:
    SHA256:
    2960AcroRd32.exeC:\Users\admin\AppData\Local\Temp\acrord32_sbx\A9R19z6i3p_3y9uz8_2a8.tmp
    MD5:
    SHA256:
    2960AcroRd32.exeC:\Users\admin\AppData\Local\Temp\acrord32_sbx\A9R1kwl2xw_3y9uza_2a8.tmp
    MD5:
    SHA256:
    2980AdobeARM.exeC:\Users\admin\AppData\Local\Temp\Tmp38D9.tmp
    MD5:
    SHA256:
    2980AdobeARM.exeC:\Users\admin\AppData\Local\Temp\Tmp38F9.tmp
    MD5:
    SHA256:
    2592AcroRd32.exeC:\Users\admin\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\E02357FC7708441D4B0BE5F371F4B28961870F70binary
    MD5:
    SHA256:
    2960AcroRd32.exeC:\Users\admin\AppData\LocalLow\Adobe\Acrobat\DC\ReaderMessagessqlite
    MD5:
    SHA256:
    Download PCAP, analyze network streams, HTTP content and a lot more at the full report
    HTTP(S) requests
    5
    TCP/UDP connections
    5
    DNS requests
    4
    Threats
    0

    HTTP requests

    PID
    Process
    Method
    HTTP Code
    IP
    URL
    CN
    Type
    Size
    Reputation
    2592
    AcroRd32.exe
    GET
    304
    2.16.186.33:80
    http://acroipm2.adobe.com/15/rdr/ENU/win/nooem/none/consumer/277_15_23_20070.zip
    unknown
    whitelisted
    2592
    AcroRd32.exe
    GET
    304
    2.16.186.33:80
    http://acroipm2.adobe.com/15/rdr/ENU/win/nooem/none/consumer/message.zip
    unknown
    whitelisted
    2592
    AcroRd32.exe
    GET
    304
    2.16.186.33:80
    http://acroipm2.adobe.com/15/rdr/ENU/win/nooem/none/consumer/280_15_23_20070.zip
    unknown
    whitelisted
    2592
    AcroRd32.exe
    GET
    304
    2.16.186.33:80
    http://acroipm2.adobe.com/15/rdr/ENU/win/nooem/none/consumer/281_15_23_20070.zip
    unknown
    whitelisted
    2592
    AcroRd32.exe
    GET
    304
    2.16.186.33:80
    http://acroipm2.adobe.com/15/rdr/ENU/win/nooem/none/consumer/278_15_23_20070.zip
    unknown
    whitelisted
    Download PCAP, analyze network streams, HTTP content and a lot more at the full report

    Connections

    PID
    Process
    IP
    Domain
    ASN
    CN
    Reputation
    2592
    AcroRd32.exe
    2.18.233.74:443
    armmf.adobe.com
    Akamai International B.V.
    whitelisted
    2.18.233.74:443
    armmf.adobe.com
    Akamai International B.V.
    whitelisted
    2592
    AcroRd32.exe
    2.16.186.33:80
    acroipm2.adobe.com
    Akamai International B.V.
    whitelisted

    DNS requests

    Domain
    IP
    Reputation
    acroipm2.adobe.com
    • 2.16.186.33
    • 2.16.186.32
    whitelisted
    armmf.adobe.com
    • 2.18.233.74
    whitelisted
    ardownload2.adobe.com
    • 2.18.233.74
    whitelisted

    Threats

    No threats detected
    No debug info