File name:

free-pdf-plus.exe

Full analysis: https://app.any.run/tasks/529dd745-4227-4399-b408-b208928aeeb2
Verdict: Malicious activity
Analysis date: February 05, 2024, 21:24:39
OS: Windows 7 Professional Service Pack 1 (build: 7601, 32 bit)
Indicators:
MIME: application/x-dosexec
File info: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
MD5:

0D7FE4DF33A72C1653F40997B05B0D7B

SHA1:

40B404B0F1BA454E2013046BF56CF1EE35FC4302

SHA256:

5A14332CA64F1EF5247F8E2A5DE3DAA1997FEFD5C0FB7CB8BE483A02A9E100D3

SSDEEP:

49152:3m/y6zXrdWyA+yBOw4GYTJg9Jw5Z+bDh7qivAtrJ7vPJwjtf+HcmULASM3X4aI7K:3m/yKbr8gxtg9I+bD80A/NwjVKwXK4a1

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    • Drops the executable file immediately after the start

      • free-pdf-plus.exe (PID: 1632)
  • SUSPICIOUS

    • Malware-specific behavior (creating "System.dll" in Temp)

      • free-pdf-plus.exe (PID: 1632)
    • The process creates files with name similar to system file names

      • free-pdf-plus.exe (PID: 1632)
    • Executable content was dropped or overwritten

      • free-pdf-plus.exe (PID: 1632)
    • Process drops legitimate windows executable

      • free-pdf-plus.exe (PID: 1632)
    • Reads the Internet Settings

      • FreePDFPlus.exe (PID: 3508)
      • FreePDFPlus.exe (PID: 2640)
      • FreePDFPlus.exe (PID: 3988)
  • INFO

    • Create files in a temporary directory

      • free-pdf-plus.exe (PID: 1632)
    • Reads the computer name

      • free-pdf-plus.exe (PID: 1632)
      • FreePDFPlus.exe (PID: 3508)
      • FreePDFPlus.exe (PID: 2640)
      • FreePDFPlus.exe (PID: 3988)
    • Checks supported languages

      • FreePDFPlus.exe (PID: 3508)
      • free-pdf-plus.exe (PID: 1632)
      • FreePDFPlus.exe (PID: 3988)
      • FreePDFPlus.exe (PID: 2640)
    • Manual execution by a user

      • FreePDFPlus.exe (PID: 2256)
      • FreePDFPlus.exe (PID: 2640)
      • FreePDFPlus.exe (PID: 2972)
      • FreePDFPlus.exe (PID: 3508)
    • Reads the machine GUID from the registry

      • FreePDFPlus.exe (PID: 3508)
      • FreePDFPlus.exe (PID: 2640)
      • FreePDFPlus.exe (PID: 3988)
    • Creates files or folders in the user directory

      • free-pdf-plus.exe (PID: 1632)
      • FreePDFPlus.exe (PID: 2640)
      • FreePDFPlus.exe (PID: 3508)
      • FreePDFPlus.exe (PID: 3988)
    • Application launched itself

      • msedge.exe (PID: 2628)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | Win32 Executable MS Visual C++ (generic) (67.4)
.dll | Win32 Dynamic Link Library (generic) (14.2)
.exe | Win32 Executable (generic) (9.7)
.exe | Generic Win/DOS Executable (4.3)
.exe | DOS Executable Generic (4.3)

EXIF

EXE

MachineType: Intel 386 or later, and compatibles
TimeStamp: 2021:09:25 23:57:46+02:00
ImageFileCharacteristics: No relocs, Executable, No line numbers, No symbols, 32-bit
PEType: PE32
LinkerVersion: 6
CodeSize: 27136
InitializedDataSize: 186880
UninitializedDataSize: 2048
EntryPoint: 0x352d
OSVersion: 4
ImageVersion: 6
SubsystemVersion: 4
Subsystem: Windows GUI
FileVersionNumber: 1.0.0.0
ProductVersionNumber: 1.0.0.0
FileFlagsMask: 0x0000
FileFlags: (none)
FileOS: Win32
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: English (U.S.)
CharacterSet: Unicode
FileDescription: Free PDF Plus
FileVersion: 1.0.0.0
LegalCopyright: Copyright © 2023 Free PDF Plus
ProductName: Free PDF Plus
ProductVersion: 1.0.0.0
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
64
Monitored processes
23
Malicious processes
1
Suspicious processes
0

Behavior graph

Click at the process to see the details
start free-pdf-plus.exe freepdfplus.exe msedge.exe msedge.exe no specs msedge.exe no specs msedge.exe msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs freepdfplus.exe no specs freepdfplus.exe freepdfplus.exe no specs freepdfplus.exe

Process information

PID
CMD
Path
Indicators
Parent process
1072"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=crashpad-handler "--user-data-dir=C:\Users\admin\AppData\Local\Microsoft\Edge\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\admin\AppData\Local\Microsoft\Edge\User Data\Crashpad" "--metrics-dir=C:\Users\admin\AppData\Local\Microsoft\Edge\User Data" --annotation=IsOfficialBuild=1 --annotation=channel= --annotation=chromium-version=109.0.5414.149 "--annotation=exe=C:\Program Files\Microsoft\Edge\Application\msedge.exe" --annotation=plat=Win32 "--annotation=prod=Microsoft Edge" --annotation=ver=109.0.1518.115 --initial-client-data=0xc8,0xcc,0xd0,0x9c,0xd8,0x63bdf598,0x63bdf5a8,0x63bdf5b4C:\Program Files\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
1632"C:\Users\admin\AppData\Local\Temp\free-pdf-plus.exe" C:\Users\admin\AppData\Local\Temp\free-pdf-plus.exe
explorer.exe
User:
admin
Integrity Level:
MEDIUM
Description:
Free PDF Plus
Exit code:
0
Version:
1.0.0.0
Modules
Images
c:\users\admin\appdata\local\temp\free-pdf-plus.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
2044"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=data_decoder.mojom.DataDecoderService --lang=en-US --service-sandbox-type=service --mojo-platform-channel-handle=3496 --field-trial-handle=1364,i,7637591875358315411,11324169927747925595,131072 /prefetch:8C:\Program Files\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
2256"C:\Users\admin\AppData\Roaming\PDFPlus\FreePDFPlus.exe" C:\Users\admin\AppData\Roaming\PDFPlus\FreePDFPlus.exeexplorer.exe
User:
admin
Integrity Level:
MEDIUM
Description:
FreePDFPlus
Exit code:
3221226540
Version:
1.0.0.0
Modules
Images
c:\users\admin\appdata\roaming\pdfplus\freepdfplus.exe
c:\windows\system32\ntdll.dll
2628"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --single-argument https://dotnet.microsoft.com/en-us/download/dotnet-framework/net48C:\Program Files\Microsoft\Edge\Application\msedge.exe
FreePDFPlus.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
2640"C:\Users\admin\AppData\Roaming\PDFPlus\FreePDFPlus.exe" C:\Users\admin\AppData\Roaming\PDFPlus\FreePDFPlus.exe
explorer.exe
User:
admin
Integrity Level:
HIGH
Description:
FreePDFPlus
Exit code:
0
Version:
1.0.0.0
Modules
Images
c:\users\admin\appdata\roaming\pdfplus\freepdfplus.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\mscoree.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\apphelp.dll
c:\windows\apppatch\aclayers.dll
c:\windows\system32\sspicli.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\rpcrt4.dll
2764"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=gpu-process --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAQAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1296 --field-trial-handle=1364,i,7637591875358315411,11324169927747925595,131072 /prefetch:2C:\Program Files\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
2840"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=data_decoder.mojom.DataDecoderService --lang=en-US --service-sandbox-type=service --mojo-platform-channel-handle=4000 --field-trial-handle=1364,i,7637591875358315411,11324169927747925595,131072 /prefetch:8C:\Program Files\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
2972"C:\Users\admin\AppData\Roaming\PDFPlus\FreePDFPlus.exe" C:\Users\admin\AppData\Roaming\PDFPlus\FreePDFPlus.exeexplorer.exe
User:
admin
Integrity Level:
MEDIUM
Description:
FreePDFPlus
Exit code:
3221226540
Version:
1.0.0.0
Modules
Images
c:\users\admin\appdata\roaming\pdfplus\freepdfplus.exe
c:\windows\system32\ntdll.dll
3008"C:\Program Files\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=data_decoder.mojom.DataDecoderService --lang=en-US --service-sandbox-type=service --mojo-platform-channel-handle=3968 --field-trial-handle=1364,i,7637591875358315411,11324169927747925595,131072 /prefetch:8C:\Program Files\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
109.0.1518.115
Modules
Images
c:\program files\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files\microsoft\edge\application\109.0.1518.115\msedge_elf.dll
c:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
Total events
6 321
Read events
6 292
Write events
28
Delete events
1

Modification events

(PID) Process:(3988) FreePDFPlus.exeKey:HKEY_CURRENT_USER\Software\Microsoft\Direct3D\MostRecentApplication
Operation:writeName:Name
Value:
Explorer.EXE
(PID) Process:(2628) msedge.exeKey:HKEY_CURRENT_USER\Software\Microsoft\Edge\BLBeacon
Operation:writeName:failed_count
Value:
0
(PID) Process:(2628) msedge.exeKey:HKEY_CURRENT_USER\Software\Microsoft\Edge\BLBeacon
Operation:writeName:state
Value:
1
(PID) Process:(2628) msedge.exeKey:HKEY_CURRENT_USER\Software\Microsoft\Edge\ThirdParty
Operation:writeName:StatusCodes
Value:
01000000
(PID) Process:(2628) msedge.exeKey:HKEY_CURRENT_USER\Software\Microsoft\Edge\BLBeacon
Operation:writeName:state
Value:
2
(PID) Process:(2628) msedge.exeKey:HKEY_CURRENT_USER\Software\Microsoft\EdgeUpdate\ClientState\{56EB18F8-B008-4CBD-B6D2-8C97FE7E9062}
Operation:writeName:dr
Value:
1
(PID) Process:(2628) msedge.exeKey:HKEY_CURRENT_USER\Software\Microsoft\Edge\StabilityMetrics
Operation:writeName:user_experience_metrics.stability.exited_cleanly
Value:
1
(PID) Process:(2628) msedge.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EdgeUpdate\ClientStateMedium\{56EB18F8-B008-4CBD-B6D2-8C97FE7E9062}\LastWasDefault
Operation:writeName:S-1-5-21-1302019708-1500728564-335382590-1000
Value:
6F4801F01D6B2F00
(PID) Process:(2628) msedge.exeKey:HKEY_CURRENT_USER\Software\Microsoft\Edge
Operation:writeName:UsageStatsInSample
Value:
1
(PID) Process:(2628) msedge.exeKey:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EdgeUpdate\ClientStateMedium\{56EB18F8-B008-4CBD-B6D2-8C97FE7E9062}
Operation:writeName:usagestats
Value:
1
Executable files
14
Suspicious files
151
Text files
51
Unknown types
0

Dropped files

PID
Process
Filename
Type
1632free-pdf-plus.exeC:\Users\admin\AppData\Local\Temp\nsv4636.tmp\System.dllexecutable
MD5:CFF85C549D536F651D4FB8387F1976F2
SHA256:8DC562CDA7217A3A52DB898243DE3E2ED68B80E62DDCB8619545ED0B4E7F65A8
1632free-pdf-plus.exeC:\Users\admin\AppData\Local\Temp\nsv4636.tmp\modern-header.bmpimage
MD5:583C38FB0F5AF5FE584D9A9B01D6A3E7
SHA256:4C9E804CE1A391F8E603B7B9C732A6529C1E81BE4D12F125C8562EA9D49095C2
1632free-pdf-plus.exeC:\Users\admin\AppData\Local\Temp\nsv4636.tmp\nsDialogs.dllexecutable
MD5:6C3F8C94D0727894D706940A8A980543
SHA256:56B96ADD1978B1ABBA286F7F8982B0EFBE007D4A48B3DED6A4D408E01D753FE2
1632free-pdf-plus.exeC:\Users\admin\AppData\Roaming\PDFPlus\JetBrains.Annotations.dllexecutable
MD5:06F0688796E0F687B2DE8FEE16A26C2C
SHA256:8DA40A52D6BC6D2AA407D2F9D8C99DCC1786A9ED05BBBE7D62A99C75B0000EB6
1632free-pdf-plus.exeC:\Users\admin\AppData\Roaming\PDFPlus\FreePDFPlus.exeexecutable
MD5:32D08A88C26EE39B053916D51287468F
SHA256:93BC6C5D2D4425C97F8B635A628FCEFA690DFA52AD02E3A051FDC48ECBEF538D
1632free-pdf-plus.exeC:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free PDF Plus\Free PDF Plus.lnkbinary
MD5:402A802D34947996AF3861BB461E0E92
SHA256:4E01CC5F9F0F97BEB9477DA7EC570420DA64773A59ED26E911086FAA1D846D63
1632free-pdf-plus.exeC:\Users\admin\AppData\Roaming\PDFPlus\Microsoft.Web.WebView2.Core.dllexecutable
MD5:28C6A96591A4890D33DEAA7DBABEBF10
SHA256:6E7B8869B538417CC361C97A37F7CEEC92DDC8AD84E0585BCF7021DABBF6F985
1632free-pdf-plus.exeC:\Users\admin\AppData\Local\Temp\nsv4636.tmp\modern-wizard.bmpimage
MD5:9E4CD80A60DB6947642677BF31A10906
SHA256:A7B2F12E01CBEA88D4F645F797F2CA6107D76AE13CD1BE6DC532B759BFE0D925
1632free-pdf-plus.exeC:\Users\admin\AppData\Roaming\PDFPlus\FreePDFPlus.pdbbinary
MD5:9CBE584EB8334A45EF0AD75C62140116
SHA256:9C17D8543DFE5093F58A5CC48217A74EC64E0FC71E2507D14EAF908E70D00A9A
1632free-pdf-plus.exeC:\Users\admin\AppData\Roaming\PDFPlus\FreePDFPlus.exe.configxml
MD5:9DBAD5517B46F41DBB0D8780B20AB87E
SHA256:47E5A0F101AF4151D7F13D2D6BFA9B847D5B5E4A98D1F4674B7C015772746CDF
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
0
TCP/UDP connections
27
DNS requests
38
Threats
1

HTTP requests

No HTTP requests
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
1080
svchost.exe
224.0.0.252:5355
unknown
4
System
192.168.100.255:138
whitelisted
4
System
192.168.100.255:137
whitelisted
3436
msedge.exe
13.107.42.16:443
config.edge.skype.com
MICROSOFT-CORP-MSN-AS-BLOCK
US
whitelisted
2628
msedge.exe
239.255.255.250:1900
unknown
3436
msedge.exe
13.107.21.239:443
edge.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
US
unknown
3436
msedge.exe
13.107.246.45:443
dotnet.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
US
unknown
3436
msedge.exe
23.35.229.160:443
www.microsoft.com
AKAMAI-AS
DE
whitelisted
3436
msedge.exe
13.107.246.62:443
js.monitor.azure.com
MICROSOFT-CORP-MSN-AS-BLOCK
US
unknown
3436
msedge.exe
2.16.164.113:443
img-prod-cms-rt-microsoft-com.akamaized.net
Akamai International B.V.
NL
unknown

DNS requests

Domain
IP
Reputation
config.edge.skype.com
  • 13.107.42.16
whitelisted
dotnet.microsoft.com
  • 13.107.246.45
  • 13.107.213.45
whitelisted
edge.microsoft.com
  • 13.107.21.239
  • 204.79.197.239
whitelisted
www.microsoft.com
  • 23.35.229.160
whitelisted
js.monitor.azure.com
  • 13.107.246.62
  • 13.107.213.62
whitelisted
wcpstatic.microsoft.com
  • 13.107.246.45
  • 13.107.213.45
whitelisted
img-prod-cms-rt-microsoft-com.akamaized.net
  • 2.16.164.113
  • 2.16.164.83
whitelisted
microsoftmscompoc.tt.omtrdc.net
  • 66.235.152.225
  • 66.235.152.221
  • 66.235.152.156
whitelisted
target.microsoft.com
  • 66.235.152.156
  • 66.235.152.221
  • 66.235.152.225
whitelisted
www.bing.com
  • 104.126.37.130
  • 104.126.37.153
  • 104.126.37.137
  • 104.126.37.145
  • 104.126.37.160
  • 104.126.37.144
  • 104.126.37.154
  • 104.126.37.136
  • 104.126.37.186
whitelisted

Threats

PID
Process
Class
Message
3436
msedge.exe
Not Suspicious Traffic
INFO [ANY.RUN] Azure Front Door domain observed in TLS SNI ( .azurefd .net)
Process
Message
FreePDFPlus.exe
WebView2: Failed to find an installed WebView2 runtime or non-stable Microsoft Edge installation.
FreePDFPlus.exe
WebView2: Failed to find an installed WebView2 runtime or non-stable Microsoft Edge installation.
FreePDFPlus.exe
FTH: (3508): *** Fault tolerant heap shim applied to current process. This is usually due to previous crashes. ***
FreePDFPlus.exe
WebView2: Failed to find an installed WebView2 runtime or non-stable Microsoft Edge installation.
FreePDFPlus.exe
WebView2: Failed to find an installed WebView2 runtime or non-stable Microsoft Edge installation.
FreePDFPlus.exe
FTH: (2640): *** Fault tolerant heap shim applied to current process. This is usually due to previous crashes. ***
FreePDFPlus.exe
WebView2: Failed to find an installed WebView2 runtime or non-stable Microsoft Edge installation.
FreePDFPlus.exe
WebView2: Failed to find an installed WebView2 runtime or non-stable Microsoft Edge installation.