File name:

Print_AceLauncher.exe

Full analysis: https://app.any.run/tasks/110c61cf-17c8-45c9-9029-a94382009bcd
Verdict: Malicious activity
Threats:

Adware is a form of malware that targets users with unwanted advertisements, often disrupting their browsing experience. It typically infiltrates systems through software bundling, malicious websites, or deceptive downloads. Once installed, it may track user activity, collect sensitive data, and display intrusive ads, including pop-ups or banners. Some advanced adware variants can bypass security measures and establish persistence on devices, making removal challenging. Additionally, adware can create vulnerabilities that other malware can exploit, posing a significant risk to user privacy and system security.

Analysis date: October 03, 2025, 16:49:38
OS: Windows 10 Professional (build: 19044, 64 bit)
Tags:
delphi
inno
installer
auto
generic
arch-exec
anti-evasion
adware
innosetup
evasion
Indicators:
MIME: application/vnd.microsoft.portable-executable
File info: PE32 executable (GUI) Intel 80386, for MS Windows, 11 sections
MD5:

BA32881555523E11FAE85DF67B838DD1

SHA1:

A97B1773F15F3A7B496C79AB85EE0D58D342158B

SHA256:

65383A4D998F7217BFC491BDEF974D4B3C871B126FAD28DCF5F356ECF0B47598

SSDEEP:

98304:MLVIF8P3n1BLHxtD59KEKjSvk94HBdPEii6htsnUICSWxcHKaVW3PyWmydoeOHkx:5Mso

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    • GENERIC has been found (auto)

      • Print_AceLauncher.tmp (PID: 4688)
      • setup.exe (PID: 7416)
      • AceLauncherInstaller.exe (PID: 7656)
      • AceLauncherInstaller.exe (PID: 4960)
    • Changes the autorun value in the registry

      • AceLauncher.exe (PID: 5192)
      • AceLauncher.exe (PID: 9964)
    • Executing a file with an untrusted certificate

      • Taktak Installer.exe (PID: 6936)
      • Taktak Installer.exe (PID: 4076)
      • Setup.exe (PID: 1692)
      • Setup.exe (PID: 2788)
  • SUSPICIOUS

    • Executable content was dropped or overwritten

      • Print_AceLauncher.exe (PID: 7560)
      • Print_AceLauncher.tmp (PID: 7636)
      • Print_AceLauncher.exe (PID: 7436)
      • Print_AceLauncher.tmp (PID: 4688)
      • mini_installer.exe (PID: 7704)
      • setup.exe (PID: 7416)
      • AceLauncherInstaller.exe (PID: 7656)
      • AceLauncherInstaller.exe (PID: 4960)
      • AceLauncher.exe (PID: 9964)
      • Taktak Installer.exe (PID: 6936)
      • Taktak Installer.tmp (PID: 9784)
      • Taktak Installer.exe (PID: 4076)
      • Setup.exe (PID: 2788)
    • Reads the Windows owner or organization settings

      • Print_AceLauncher.tmp (PID: 7636)
      • Print_AceLauncher.tmp (PID: 4688)
      • Taktak Installer.tmp (PID: 9784)
    • Reads security settings of Internet Explorer

      • Print_AceLauncher.tmp (PID: 7636)
      • setup.exe (PID: 2280)
      • AceLauncher.exe (PID: 5192)
      • AceLauncher.exe (PID: 9964)
      • Taktak Installer.tmp (PID: 3328)
      • AceLauncher.exe (PID: 4076)
    • Reads the date of Windows installation

      • Print_AceLauncher.tmp (PID: 7636)
      • setup.exe (PID: 2280)
      • AceLauncher.exe (PID: 5192)
      • AceLauncher.exe (PID: 9964)
    • Process drops legitimate windows executable

      • Print_AceLauncher.tmp (PID: 4688)
      • AceLauncherInstaller.exe (PID: 7656)
      • AceLauncherInstaller.exe (PID: 4960)
    • Application launched itself

      • setup.exe (PID: 7416)
      • setup.exe (PID: 2280)
      • AceLauncher.exe (PID: 7536)
      • AceLauncher.exe (PID: 8504)
      • AceLauncher.exe (PID: 8520)
      • AceLauncher.exe (PID: 9964)
      • Setup.exe (PID: 2788)
    • Searches for installed software

      • setup.exe (PID: 7416)
      • AceLauncherUpdater.exe (PID: 7028)
    • The process creates files with name similar to system file names

      • AceLauncherInstaller.exe (PID: 7656)
    • Starts CMD.EXE for commands execution

      • AceLauncher.exe (PID: 9964)
    • The executable file from the user directory is run by the CMD process

      • AceLauncher.exe (PID: 8928)
    • The process checks if it is being run in the virtual environment

      • AceLauncher.exe (PID: 9964)
    • Connects to unusual port

      • AceLauncher.exe (PID: 10216)
    • Checks for external IP

      • AceLauncher.exe (PID: 10216)
  • INFO

    • Checks supported languages

      • Print_AceLauncher.exe (PID: 7560)
      • Print_AceLauncher.tmp (PID: 7636)
      • Print_AceLauncher.exe (PID: 7436)
      • Print_AceLauncher.tmp (PID: 4688)
      • AceLauncherInstaller.exe (PID: 2332)
      • AceLauncherInstaller.exe (PID: 7208)
      • AceLauncherInstaller.exe (PID: 1992)
      • setup.exe (PID: 7416)
      • setup.exe (PID: 704)
      • setup.exe (PID: 7136)
      • setup.exe (PID: 2280)
      • mini_installer.exe (PID: 7704)
      • AceLauncherInstaller.exe (PID: 7656)
      • AceLauncherInstaller.exe (PID: 4960)
      • Update.exe (PID: 592)
      • AceLauncherUpdater.exe (PID: 7028)
      • AceLauncherAutoUpdate.exe (PID: 2812)
      • AceLauncher.exe (PID: 5192)
      • AceLauncher.exe (PID: 8548)
      • AceLauncher.exe (PID: 7536)
      • AceLauncher.exe (PID: 7088)
      • AceLauncher.exe (PID: 8504)
      • AceLauncher.exe (PID: 8520)
      • AceLauncher.exe (PID: 8804)
      • AceLauncher.exe (PID: 8864)
      • AceLauncher.exe (PID: 7436)
      • AceLauncher.exe (PID: 9132)
      • AceLauncher.exe (PID: 9080)
      • AceLauncher.exe (PID: 9088)
      • AceLauncher.exe (PID: 9144)
      • AceLauncher.exe (PID: 9060)
      • AceLauncher.exe (PID: 9052)
      • AceLauncher.exe (PID: 8416)
      • AceLauncher.exe (PID: 8840)
      • AceLauncher.exe (PID: 8736)
      • AceLauncher.exe (PID: 6480)
      • AceLauncher.exe (PID: 8552)
      • AceLauncher.exe (PID: 9036)
      • AceLauncher.exe (PID: 9360)
      • AceLauncher.exe (PID: 1288)
      • AceLauncher.exe (PID: 8412)
      • AceLauncher.exe (PID: 8684)
      • identity_helper.exe (PID: 9752)
      • AceLauncher.exe (PID: 9372)
      • AceLauncher.exe (PID: 9388)
      • AceLauncher.exe (PID: 9964)
      • AceLauncher.exe (PID: 8256)
      • AceLauncher.exe (PID: 9380)
      • AceLauncher.exe (PID: 10188)
      • AceLauncher.exe (PID: 10216)
      • AceLauncher.exe (PID: 9044)
      • AceLauncher.exe (PID: 576)
      • AceLauncher.exe (PID: 8600)
      • AceLauncher.exe (PID: 8580)
      • AceLauncher.exe (PID: 9248)
      • AceLauncher.exe (PID: 9984)
      • AceLauncher.exe (PID: 8672)
      • AceLauncher.exe (PID: 8744)
      • AceLauncher.exe (PID: 8796)
      • AceLauncher.exe (PID: 8992)
      • AceLauncher.exe (PID: 8868)
      • AceLauncher.exe (PID: 8728)
      • AceLauncher.exe (PID: 9004)
      • AceLauncher.exe (PID: 9500)
      • AceLauncher.exe (PID: 8588)
      • AceLauncher.exe (PID: 8928)
      • AceLauncher.exe (PID: 8756)
      • AceLauncher.exe (PID: 9764)
      • AceLauncher.exe (PID: 9344)
      • AceLauncher.exe (PID: 8848)
      • AceLauncher.exe (PID: 9020)
      • AceLauncher.exe (PID: 10140)
      • AceLauncher.exe (PID: 9844)
      • AceLauncher.exe (PID: 9464)
      • AceLauncher.exe (PID: 4056)
      • AceLauncher.exe (PID: 7396)
      • AceLauncher.exe (PID: 7208)
      • AceLauncher.exe (PID: 9780)
      • AceLauncher.exe (PID: 2876)
      • AceLauncher.exe (PID: 9664)
      • AceLauncher.exe (PID: 10096)
      • AceLauncher.exe (PID: 6364)
      • AceLauncher.exe (PID: 9860)
      • AceLauncher.exe (PID: 9776)
      • AceLauncher.exe (PID: 936)
      • AceLauncher.exe (PID: 9356)
      • AceLauncher.exe (PID: 10116)
      • AceLauncher.exe (PID: 7088)
      • AceLauncher.exe (PID: 9516)
      • AceLauncher.exe (PID: 9784)
      • AceLauncher.exe (PID: 9420)
      • AceLauncher.exe (PID: 9928)
      • AceLauncher.exe (PID: 4580)
      • AceLauncher.exe (PID: 4144)
      • AceLauncher.exe (PID: 8268)
      • AceLauncher.exe (PID: 5424)
      • AceLauncher.exe (PID: 720)
      • AceLauncher.exe (PID: 9800)
      • AceLauncher.exe (PID: 4076)
      • AceLauncher.exe (PID: 7648)
      • AceLauncher.exe (PID: 4804)
      • AceLauncher.exe (PID: 9928)
      • AceLauncher.exe (PID: 3708)
      • AceLauncher.exe (PID: 8100)
      • AceLauncher.exe (PID: 8616)
      • Taktak Installer.exe (PID: 6936)
      • Taktak Installer.tmp (PID: 3328)
      • Taktak Installer.exe (PID: 4076)
      • AceLauncher.exe (PID: 2360)
      • Setup.exe (PID: 2788)
      • Taktak Installer.tmp (PID: 9784)
      • Setup.exe (PID: 1692)
    • Reads Environment values

      • Print_AceLauncher.exe (PID: 7560)
      • Print_AceLauncher.tmp (PID: 7636)
      • Print_AceLauncher.exe (PID: 7436)
      • Print_AceLauncher.tmp (PID: 4688)
      • AceLauncherUpdater.exe (PID: 7028)
      • AceLauncher.exe (PID: 5192)
      • identity_helper.exe (PID: 9752)
      • AceLauncher.exe (PID: 8928)
      • AceLauncher.exe (PID: 10188)
    • Create files in a temporary directory

      • Print_AceLauncher.exe (PID: 7560)
      • Print_AceLauncher.tmp (PID: 7636)
      • Print_AceLauncher.exe (PID: 7436)
      • Print_AceLauncher.tmp (PID: 4688)
      • mini_installer.exe (PID: 7704)
      • AceLauncher.exe (PID: 7536)
      • AceLauncher.exe (PID: 9964)
      • Taktak Installer.exe (PID: 6936)
      • Taktak Installer.exe (PID: 4076)
      • Taktak Installer.tmp (PID: 9784)
    • Reads the computer name

      • Print_AceLauncher.tmp (PID: 7636)
      • Print_AceLauncher.tmp (PID: 4688)
      • AceLauncherInstaller.exe (PID: 2332)
      • AceLauncherInstaller.exe (PID: 7208)
      • AceLauncherInstaller.exe (PID: 1992)
      • mini_installer.exe (PID: 7704)
      • setup.exe (PID: 7416)
      • setup.exe (PID: 2280)
      • AceLauncherInstaller.exe (PID: 4960)
      • AceLauncherInstaller.exe (PID: 7656)
      • AceLauncher.exe (PID: 5192)
      • AceLauncherUpdater.exe (PID: 7028)
      • AceLauncher.exe (PID: 7536)
      • AceLauncher.exe (PID: 8504)
      • AceLauncher.exe (PID: 8520)
      • AceLauncher.exe (PID: 8804)
      • AceLauncher.exe (PID: 8840)
      • identity_helper.exe (PID: 9752)
      • AceLauncher.exe (PID: 9964)
      • AceLauncher.exe (PID: 10216)
      • AceLauncher.exe (PID: 10188)
      • AceLauncher.exe (PID: 9344)
      • AceLauncher.exe (PID: 8928)
      • AceLauncher.exe (PID: 9928)
      • AceLauncher.exe (PID: 10116)
      • AceLauncher.exe (PID: 4076)
      • Taktak Installer.tmp (PID: 3328)
      • Setup.exe (PID: 2788)
      • Taktak Installer.exe (PID: 4076)
      • Taktak Installer.tmp (PID: 9784)
    • Process checks computer location settings

      • Print_AceLauncher.tmp (PID: 7636)
      • AceLauncher.exe (PID: 5192)
      • AceLauncher.exe (PID: 7536)
      • AceLauncher.exe (PID: 9060)
      • AceLauncher.exe (PID: 9052)
      • AceLauncher.exe (PID: 9388)
      • AceLauncher.exe (PID: 9964)
      • AceLauncher.exe (PID: 576)
      • AceLauncher.exe (PID: 9248)
      • AceLauncher.exe (PID: 9004)
      • AceLauncher.exe (PID: 8728)
      • AceLauncher.exe (PID: 9500)
      • AceLauncher.exe (PID: 8588)
      • AceLauncher.exe (PID: 9764)
      • AceLauncher.exe (PID: 9020)
      • AceLauncher.exe (PID: 8848)
      • AceLauncher.exe (PID: 9464)
      • AceLauncher.exe (PID: 4056)
      • AceLauncher.exe (PID: 9844)
      • AceLauncher.exe (PID: 7208)
      • AceLauncher.exe (PID: 9780)
      • AceLauncher.exe (PID: 2876)
      • AceLauncher.exe (PID: 10140)
      • AceLauncher.exe (PID: 7396)
      • AceLauncher.exe (PID: 9664)
      • AceLauncher.exe (PID: 6364)
      • AceLauncher.exe (PID: 9860)
      • AceLauncher.exe (PID: 9356)
      • AceLauncher.exe (PID: 936)
      • AceLauncher.exe (PID: 7088)
      • AceLauncher.exe (PID: 10096)
      • AceLauncher.exe (PID: 9776)
      • AceLauncher.exe (PID: 9516)
      • AceLauncher.exe (PID: 9784)
      • AceLauncher.exe (PID: 7648)
      • AceLauncher.exe (PID: 8268)
      • AceLauncher.exe (PID: 4144)
      • AceLauncher.exe (PID: 4804)
      • AceLauncher.exe (PID: 9928)
      • AceLauncher.exe (PID: 3708)
      • AceLauncher.exe (PID: 5424)
      • AceLauncher.exe (PID: 8100)
      • Taktak Installer.tmp (PID: 3328)
    • Reads the software policy settings

      • Print_AceLauncher.tmp (PID: 4688)
      • AceLauncherUpdater.exe (PID: 7028)
      • AceLauncher.exe (PID: 5192)
      • AceLauncher.exe (PID: 8928)
      • slui.exe (PID: 6972)
      • AceLauncher.exe (PID: 9964)
      • Taktak Installer.tmp (PID: 9784)
    • Reads the machine GUID from the registry

      • AceLauncherInstaller.exe (PID: 2332)
      • AceLauncherInstaller.exe (PID: 7208)
      • AceLauncherInstaller.exe (PID: 1992)
      • AceLauncherInstaller.exe (PID: 7656)
      • AceLauncherInstaller.exe (PID: 4960)
      • AceLauncher.exe (PID: 5192)
      • AceLauncherUpdater.exe (PID: 7028)
      • AceLauncher.exe (PID: 7536)
      • AceLauncher.exe (PID: 9964)
      • AceLauncher.exe (PID: 8928)
      • AceLauncher.exe (PID: 10188)
      • AceLauncher.exe (PID: 9928)
    • Detects InnoSetup installer (YARA)

      • Print_AceLauncher.exe (PID: 7436)
      • Print_AceLauncher.tmp (PID: 4688)
    • Compiled with Borland Delphi (YARA)

      • Print_AceLauncher.exe (PID: 7436)
      • Print_AceLauncher.tmp (PID: 4688)
    • Checks proxy server information

      • Print_AceLauncher.tmp (PID: 4688)
      • AceLauncherUpdater.exe (PID: 7028)
      • AceLauncher.exe (PID: 5192)
      • AceLauncher.exe (PID: 7536)
      • AceLauncher.exe (PID: 9964)
      • AceLauncher.exe (PID: 8928)
      • slui.exe (PID: 6972)
      • AceLauncher.exe (PID: 4076)
      • Taktak Installer.tmp (PID: 9784)
    • Creates files or folders in the user directory

      • AceLauncherInstaller.exe (PID: 1992)
      • setup.exe (PID: 7416)
      • setup.exe (PID: 2280)
      • AceLauncherInstaller.exe (PID: 7656)
      • AceLauncherInstaller.exe (PID: 4960)
      • AceLauncherUpdater.exe (PID: 7028)
      • AceLauncherAutoUpdate.exe (PID: 2812)
      • AceLauncher.exe (PID: 5192)
      • AceLauncher.exe (PID: 8504)
      • AceLauncher.exe (PID: 7536)
      • AceLauncher.exe (PID: 8840)
      • AceLauncher.exe (PID: 9964)
      • AceLauncher.exe (PID: 10216)
      • AceLauncher.exe (PID: 8928)
      • AceLauncher.exe (PID: 9928)
    • The sample compiled with english language support

      • mini_installer.exe (PID: 7704)
      • setup.exe (PID: 7416)
      • Taktak Installer.tmp (PID: 9784)
      • Setup.exe (PID: 2788)
    • Creates a software uninstall entry

      • setup.exe (PID: 7416)
      • AceLauncherUpdater.exe (PID: 7028)
    • Launching a file from a Registry key

      • AceLauncher.exe (PID: 5192)
      • AceLauncher.exe (PID: 9964)
    • Creates files in the program directory

      • AceLauncher.exe (PID: 5192)
      • AceLauncherUpdater.exe (PID: 7028)
      • Taktak Installer.tmp (PID: 9784)
      • Setup.exe (PID: 2788)
    • Application launched itself

      • msedge.exe (PID: 6780)
      • msedge.exe (PID: 4952)
    • Disables trace logs

      • AceLauncherUpdater.exe (PID: 7028)
      • AceLauncher.exe (PID: 5192)
      • AceLauncher.exe (PID: 8928)
    • Reads CPU info

      • AceLauncher.exe (PID: 9964)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.exe | Inno Setup installer (67.7)
.exe | Win32 EXE PECompact compressed (generic) (25.6)
.exe | Win32 Executable (generic) (2.7)
.exe | Win16/32 Executable Delphi generic (1.2)
.exe | Generic Win/DOS Executable (1.2)

EXIF

EXE

MachineType: Intel 386 or later, and compatibles
TimeStamp: 2025:03:13 06:55:45+00:00
ImageFileCharacteristics: Executable, 32-bit
PEType: PE32
LinkerVersion: 2.25
CodeSize: 704512
InitializedDataSize: 286720
UninitializedDataSize: -
EntryPoint: 0xacfe0
OSVersion: 6.1
ImageVersion: -
SubsystemVersion: 6.1
Subsystem: Windows GUI
FileVersionNumber: 0.0.0.0
ProductVersionNumber: 0.0.0.0
FileFlagsMask: 0x003f
FileFlags: (none)
FileOS: Win32
ObjectFileType: Executable application
FileSubtype: -
LanguageCode: Neutral
CharacterSet: Unicode
Comments: This installation was built with Inno Setup.
CompanyName: Sunstream Labs
FileDescription: AceLauncherInstaller Setup
FileVersion:
LegalCopyright:
OriginalFileName:
ProductName: AceLauncherInstaller
ProductVersion: 1.0
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
322
Monitored processes
144
Malicious processes
10
Suspicious processes
6

Behavior graph

Click at the process to see the details
start print_acelauncher.exe print_acelauncher.tmp print_acelauncher.exe #GENERIC print_acelauncher.tmp acelauncherinstaller.exe no specs slui.exe acelauncherinstaller.exe no specs acelauncherinstaller.exe no specs mini_installer.exe #GENERIC setup.exe setup.exe no specs setup.exe no specs setup.exe no specs #GENERIC acelauncherinstaller.exe #GENERIC acelauncherinstaller.exe acelauncherautoupdate.exe no specs update.exe no specs acelauncher.exe acelauncherupdater.exe msedge.exe no specs msedge.exe msedge.exe no specs acelauncher.exe no specs msedge.exe msedge.exe no specs msedge.exe no specs acelauncher.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs msedge.exe no specs acelauncher.exe no specs acelauncher.exe acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs msedge.exe no specs msedge.exe no specs identity_helper.exe no specs identity_helper.exe no specs msedge.exe no specs msedge.exe no specs acelauncher.exe acelauncher.exe no specs msedge.exe no specs acelauncher.exe no specs acelauncher.exe acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs cmd.exe no specs conhost.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs cmd.exe no specs conhost.exe no specs acelauncher.exe acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs msedge.exe no specs msedge.exe no specs acelauncher.exe no specs msedge.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs msedge.exe no specs msedge.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs msedge.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs msedge.exe no specs acelauncher.exe no specs acelauncher.exe no specs msedge.exe no specs acelauncher.exe no specs acelauncher.exe no specs acelauncher.exe no specs taktak installer.exe taktak installer.tmp no specs taktak installer.exe taktak installer.tmp setup.exe setup.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
576"C:\Users\admin\AppData\Local\AceLauncher\Application\AceLauncher.exe" --type=renderer --subproc-heap-profiling --video-capture-use-gpu-memory-buffer --lang=en-US --device-scale-factor=1 --num-raster-threads=3 --enable-main-frame-before-activation --renderer-client-id=6 --metrics-shmem-handle=3588,i,1375447804266906929,3601365591415183601,2097152 --field-trial-handle=2080,i,1243732845961660959,13041536379786260397,262144 --variations-seed-version --mojo-platform-channel-handle=3760 /prefetch:1C:\Users\admin\AppData\Local\AceLauncher\Application\AceLauncher.exeAceLauncher.exe
User:
admin
Company:
Sunstream Labs
Integrity Level:
LOW
Description:
AceLauncher
Exit code:
0
Version:
134.0.6998.211
Modules
Images
c:\users\admin\appdata\local\acelauncher\application\acelauncher.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\users\admin\appdata\local\acelauncher\application\134.0.6998.211\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
592"C:\Users\admin\AppData\Local\AceLauncherAutoUpdate\Update.exe" start --C:\Users\admin\AppData\Local\AceLauncherAutoUpdate\Update.exeAceLauncherAutoUpdate.exe
User:
admin
Company:
Velopack
Integrity Level:
MEDIUM
Description:
Velopack 0.0.1053
Exit code:
0
Version:
0.0.1053
Modules
Images
c:\users\admin\appdata\local\acelauncherautoupdate\update.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\aclayers.dll
704C:\Users\admin\AppData\Local\Temp\is-N5F92.tmp\CR_BF500.tmp\setup.exe --type=crashpad-handler /prefetch:4 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\admin\AppData\Local\AceLauncher\User Data\Crashpad" --annotation=plat=Win64 --annotation=prod=AceLauncher --annotation=ver=134.0.6998.211 --initial-client-data=0x29c,0x2a0,0x2a4,0x278,0x2a8,0x7ff6db394690,0x7ff6db39469c,0x7ff6db3946a8C:\Users\admin\AppData\Local\Temp\is-N5F92.tmp\CR_BF500.tmp\setup.exesetup.exe
User:
admin
Company:
Sunstream Labs
Integrity Level:
MEDIUM
Description:
AceLauncher Installer
Exit code:
0
Version:
134.0.6998.211
Modules
Images
c:\users\admin\appdata\local\temp\is-n5f92.tmp\cr_bf500.tmp\setup.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\bcrypt.dll
720"C:\Users\admin\AppData\Local\AceLauncher\Application\AceLauncher.exe" --type=utility --utility-sub-type=unzip.mojom.Unzipper --lang=en-US --service-sandbox-type=service --disable-quic --subproc-heap-profiling --metrics-shmem-handle=9108,i,16765410103877596293,18390693252024152103,524288 --field-trial-handle=2080,i,1243732845961660959,13041536379786260397,262144 --variations-seed-version --mojo-platform-channel-handle=9100 /prefetch:8C:\Users\admin\AppData\Local\AceLauncher\Application\AceLauncher.exeAceLauncher.exe
User:
admin
Company:
Sunstream Labs
Integrity Level:
LOW
Description:
AceLauncher
Exit code:
0
Version:
134.0.6998.211
Modules
Images
c:\users\admin\appdata\local\acelauncher\application\acelauncher.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\users\admin\appdata\local\acelauncher\application\134.0.6998.211\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
932"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=unzip.mojom.Unzipper --lang=en-US --service-sandbox-type=service --disable-quic --string-annotations --always-read-main-dll --field-trial-handle=6136,i,4880206380901915134,2865547053057676279,262144 --variations-seed-version --mojo-platform-channel-handle=6996 /prefetch:8C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
133.0.3065.92
Modules
Images
c:\program files (x86)\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files (x86)\microsoft\edge\application\133.0.3065.92\msedge_elf.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msvcp_win.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\combase.dll
c:\windows\system32\rpcrt4.dll
936"C:\Users\admin\AppData\Local\AceLauncher\Application\AceLauncher.exe" --type=renderer --subproc-heap-profiling --disable-gpu-compositing --video-capture-use-gpu-memory-buffer --lang=en-US --device-scale-factor=1 --num-raster-threads=3 --enable-main-frame-before-activation --renderer-client-id=37 --metrics-shmem-handle=7224,i,6915159216049155815,17009227872615601166,2097152 --field-trial-handle=2080,i,1243732845961660959,13041536379786260397,262144 --variations-seed-version --mojo-platform-channel-handle=7460 /prefetch:1C:\Users\admin\AppData\Local\AceLauncher\Application\AceLauncher.exeAceLauncher.exe
User:
admin
Company:
Sunstream Labs
Integrity Level:
LOW
Description:
AceLauncher
Version:
134.0.6998.211
Modules
Images
c:\users\admin\appdata\local\acelauncher\application\acelauncher.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\users\admin\appdata\local\acelauncher\application\134.0.6998.211\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
1288"C:\Users\admin\AppData\Local\AceLauncher\Application\AceLauncher.exe" --type=utility --utility-sub-type=unzip.mojom.Unzipper --lang=en-US --service-sandbox-type=service --disable-quic --metrics-shmem-handle=6200,i,3801995604143732274,14934731435414017652,524288 --field-trial-handle=2084,i,3329585313454337202,7919936904302904826,262144 --variations-seed-version --mojo-platform-channel-handle=6220 /prefetch:8C:\Users\admin\AppData\Local\AceLauncher\Application\AceLauncher.exeAceLauncher.exe
User:
admin
Company:
Sunstream Labs
Integrity Level:
LOW
Description:
AceLauncher
Exit code:
0
Version:
134.0.6998.211
Modules
Images
c:\users\admin\appdata\local\acelauncher\application\acelauncher.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\users\admin\appdata\local\acelauncher\application\134.0.6998.211\chrome_elf.dll
c:\windows\system32\version.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\sechost.dll
1692"C:\Program Files\Taktak\Setup.exe" --type=crashpad-handler /prefetch:4 --monitor-self-annotation=ptype=crashpad-handler --database=C:\WINDOWS\SystemTemp\Crashpad --annotation=plat=Win64 --annotation=prod=Taktak --annotation=ver=138.0.7204.154 --initial-client-data=0x290,0x294,0x298,0x26c,0x29c,0x7ff6ef19dd78,0x7ff6ef19dd84,0x7ff6ef19dd90C:\Program Files\Taktak\Setup.exeSetup.exe
User:
admin
Company:
Ahrefs Pte Ltd.
Integrity Level:
HIGH
Description:
Taktak Installer
Version:
138.0.7204.154
Modules
Images
c:\program files\taktak\setup.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\bcrypt.dll
1696"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --string-annotations --video-capture-use-gpu-memory-buffer --lang=en-US --js-flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=3 --enable-main-frame-before-activation --renderer-client-id=6 --always-read-main-dll --field-trial-handle=3592,i,4880206380901915134,2865547053057676279,262144 --variations-seed-version --mojo-platform-channel-handle=3608 /prefetch:1C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Version:
133.0.3065.92
Modules
Images
c:\program files (x86)\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files (x86)\microsoft\edge\application\133.0.3065.92\msedge_elf.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msvcp_win.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\combase.dll
c:\windows\system32\rpcrt4.dll
1880"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=unzip.mojom.Unzipper --lang=en-US --service-sandbox-type=service --disable-quic --string-annotations --always-read-main-dll --field-trial-handle=5500,i,4880206380901915134,2865547053057676279,262144 --variations-seed-version --mojo-platform-channel-handle=6992 /prefetch:8C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
133.0.3065.92
Modules
Images
c:\program files (x86)\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files (x86)\microsoft\edge\application\133.0.3065.92\msedge_elf.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msvcp_win.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\combase.dll
c:\windows\system32\rpcrt4.dll
Total events
35 473
Read events
34 976
Write events
470
Delete events
27

Modification events

(PID) Process:(7636) Print_AceLauncher.tmpKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
Operation:writeName:Owner
Value:
D41D0000F2C989B88534DC01
(PID) Process:(7636) Print_AceLauncher.tmpKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
Operation:writeName:SessionHash
Value:
BC54FFAC8A3B2393B9816D2FC1435A0D5ACEC91A9D00E583DFB5854AD7299FDB
(PID) Process:(7636) Print_AceLauncher.tmpKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
Operation:writeName:Sequence
Value:
1
(PID) Process:(7636) Print_AceLauncher.tmpKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
Operation:writeName:ProxyBypass
Value:
1
(PID) Process:(7636) Print_AceLauncher.tmpKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
Operation:writeName:IntranetName
Value:
1
(PID) Process:(7636) Print_AceLauncher.tmpKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
Operation:writeName:UNCAsIntranet
Value:
1
(PID) Process:(7636) Print_AceLauncher.tmpKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
Operation:writeName:AutoDetect
Value:
0
(PID) Process:(7636) Print_AceLauncher.tmpKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
Operation:delete valueName:Sequence
Value:

(PID) Process:(7636) Print_AceLauncher.tmpKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
Operation:delete valueName:SessionHash
Value:
咼곿㮊錣膹⽭䏁൚칚᫉菥뗟䪅⧗�
(PID) Process:(7636) Print_AceLauncher.tmpKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\RestartManager\Session0000
Operation:delete valueName:Owner
Value:
Executable files
114
Suspicious files
1 123
Text files
228
Unknown types
0

Dropped files

PID
Process
Filename
Type
4688Print_AceLauncher.tmpC:\Users\admin\AppData\Local\Temp\is-N5F92.tmp\is-3URN0.tmp
MD5:
SHA256:
4688Print_AceLauncher.tmpC:\Users\admin\AppData\Local\Temp\is-N5F92.tmp\mini_installer.exe
MD5:
SHA256:
4688Print_AceLauncher.tmpC:\Users\admin\AppData\Local\Temp\is-N5F92.tmp\SetupHelper\Microsoft.Data.Sqlite.dllexecutable
MD5:3E9D50FB205CBFF3459A769F909FFE14
SHA256:BB8A21A25DF7276C8ABB85B16685ED42E847DE682CC1F61E60CAB39EC671D4AB
4688Print_AceLauncher.tmpC:\Users\admin\AppData\Local\Temp\is-N5F92.tmp\SetupHelper\AceLauncherInstaller.exe.configxml
MD5:2A2DF45A07478A1C77D5834C21F3D7FD
SHA256:051099983B896673909E01A1F631B6652ABB88DA95C9F06F3EFEF4BE033091FA
4688Print_AceLauncher.tmpC:\Users\admin\AppData\Local\Temp\is-N5F92.tmp\SetupHelper\Newtonsoft.Json.dllexecutable
MD5:195FFB7167DB3219B217C4FD439EEDD6
SHA256:E1E27AF7B07EEEDF5CE71A9255F0422816A6FC5849A483C6714E1B472044FA9D
4688Print_AceLauncher.tmpC:\Users\admin\AppData\Local\Temp\is-N5F92.tmp\SetupHelper\Microsoft.Extensions.Logging.Abstractions.dllexecutable
MD5:FA43B31FAC519D4537325B2D77595C3F
SHA256:CE4721EB7591C77EC23650C079C25730BC9E4F2AF440ED0CE913258151434CDA
4688Print_AceLauncher.tmpC:\Users\admin\AppData\Local\Temp\is-N5F92.tmp\SetupHelper\AceLauncherInstaller.pdbbinary
MD5:33F71DCDB3D560C7160DA0011A36470D
SHA256:1A8887399FBD04E725B869AEF956E48E796C7EAF16B55FC6B1A3CA289CCA190F
7636Print_AceLauncher.tmpC:\Users\admin\AppData\Local\Temp\is-T3IUH.tmp\_isetup\_setup64.tmpexecutable
MD5:E4211D6D009757C078A9FAC7FF4F03D4
SHA256:388A796580234EFC95F3B1C70AD4CB44BFDDC7BA0F9203BF4902B9929B136F95
4688Print_AceLauncher.tmpC:\Users\admin\AppData\Local\Temp\is-N5F92.tmp\SetupHelper\AceLauncherShared.dllexecutable
MD5:FC1453743954835B8178CA879EDEB750
SHA256:3ACE8CF544FC1C59C3343DA511E0D4FBA4FEDE5224BF93B00A2C839AEA10D378
4688Print_AceLauncher.tmpC:\Users\admin\AppData\Local\Temp\is-N5F92.tmp\SetupHelper\AceLauncherInstaller.exeexecutable
MD5:1F7CD9A09C82C1E500B66A62425C4AA9
SHA256:09DD58674CA057E253E1BCECA009BE8881E92C8746E882C29DD85AD61C32C38C
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
52
TCP/UDP connections
508
DNS requests
606
Threats
16

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
2404
svchost.exe
GET
200
172.66.2.5:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
2404
svchost.exe
GET
200
172.66.2.5:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
7716
backgroundTaskHost.exe
GET
200
172.66.2.5:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTrjrydRyt%2BApF3GSPypfHBxR5XtQQUs9tIpPmhxdiuNkHMEWNpYim8S8YCEAI5PUjXAkJafLQcAAsO18o%3D
unknown
whitelisted
7800
backgroundTaskHost.exe
GET
200
172.66.2.5:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAn5bsKVVV8kdJ6vHl3O1J0%3D
unknown
whitelisted
7136
backgroundTaskHost.exe
GET
200
172.66.2.5:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAn5bsKVVV8kdJ6vHl3O1J0%3D
unknown
whitelisted
4488
msedge.exe
GET
200
150.171.28.11:80
http://edge.microsoft.com/browsernetworktime/time/1/current?cup2key=2:gUz4B_I7eUrBxrTWWop3593-8qgAuogMDm98E8n-ouE&cup2hreq=e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
unknown
whitelisted
5192
AceLauncher.exe
GET
200
172.66.2.5:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBT3xL4LQLXDRDM9P665TW442vrsUQQUReuir%2FSSy4IxLVGLp6chnfNtyA8CEA6bGI750C3n79tQ4ghAGFo%3D
unknown
whitelisted
8840
AceLauncher.exe
GET
200
142.250.186.174:80
http://clients2.google.com/time/1/current?cup2key=8:mg1WcpSwYPHnoO2RKJsOrhiHI7DVR0Wa2GCaS-Fc3VI&cup2hreq=e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
unknown
whitelisted
10216
AceLauncher.exe
GET
200
142.250.186.174:80
http://clients2.google.com/time/1/current?cup2key=8:Md3-RiwCxAdXjRjMsr8AVGEmaYCrWuhmPgvlCU_otyE&cup2hreq=e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
unknown
whitelisted
5192
AceLauncher.exe
GET
200
172.66.2.5:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTfIs%2BLjDtGwQ09XEB1Yeq%2BtX%2BBgQQU7NfjgtJxXWRM3y5nP%2Be6mK4cD08CEAitQLJg0pxMn17Nqb2Trtk%3D
unknown
whitelisted
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
4
System
192.168.100.255:137
whitelisted
7160
RUXIMICS.exe
40.127.240.158:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
6016
MoUsoCoreWorker.exe
40.127.240.158:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
5224
SearchApp.exe
95.101.136.201:443
www.bing.com
Akamai International B.V.
GB
whitelisted
4688
Print_AceLauncher.tmp
52.203.92.28:443
analytics.acelauncher.com
AMAZON-AES
US
unknown
4
System
192.168.100.255:138
whitelisted
6016
MoUsoCoreWorker.exe
4.231.128.59:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
5948
svchost.exe
4.231.128.59:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
2404
svchost.exe
20.190.159.130:443
login.live.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
2404
svchost.exe
172.66.2.5:80
ocsp.digicert.com
US
whitelisted

DNS requests

Domain
IP
Reputation
settings-win.data.microsoft.com
  • 40.127.240.158
  • 4.231.128.59
whitelisted
www.bing.com
  • 95.101.136.201
  • 95.101.136.194
whitelisted
google.com
  • 142.250.185.78
whitelisted
analytics.acelauncher.com
  • 52.203.92.28
unknown
login.live.com
  • 20.190.159.130
  • 20.190.159.75
  • 20.190.159.4
  • 20.190.159.2
  • 40.126.31.2
  • 40.126.31.73
  • 40.126.31.131
  • 40.126.31.1
  • 20.190.159.128
  • 40.126.31.128
  • 40.126.31.0
  • 20.190.159.73
  • 40.126.31.130
  • 20.190.159.68
  • 142.250.186.97
whitelisted
ocsp.digicert.com
  • 172.66.2.5
  • 162.159.142.9
whitelisted
client.wns.windows.com
  • 172.211.123.250
whitelisted
arc.msn.com
  • 20.223.35.26
whitelisted
fd.api.iris.microsoft.com
  • 20.223.35.26
whitelisted
slscr.update.microsoft.com
  • 74.178.240.61
whitelisted

Threats

PID
Process
Class
Message
4488
msedge.exe
Not Suspicious Traffic
INFO [ANY.RUN] Google Tag Manager analytics (googletagmanager .com)
4488
msedge.exe
Not Suspicious Traffic
INFO [ANY.RUN] Google Tag Manager analytics (googletagmanager .com)
4488
msedge.exe
Not Suspicious Traffic
INFO [ANY.RUN] Google Tag Manager analytics (googletagmanager .com)
Potentially Bad Traffic
ET INFO Possible Chrome Plugin install
10216
AceLauncher.exe
Not Suspicious Traffic
INFO [ANY.RUN] Cloudflare content delivery network (cdnjs .cloudflare .com)
10216
AceLauncher.exe
Not Suspicious Traffic
INFO [ANY.RUN] Cloudflare content delivery network (cdnjs .cloudflare .com)
Possibly Unwanted Program Detected
ADWARE [ANY.RUN] InnoSetup Installer
10216
AceLauncher.exe
Device Retrieving External IP Address Detected
INFO [ANY.RUN] External IP Check (ip-api .com)
10216
AceLauncher.exe
Misc activity
INFO [ANY.RUN] Possible short link service (t .co)
10216
AceLauncher.exe
Misc activity
INFO [ANY.RUN] Possible short link service (t .co)
No debug info