| File name: | Adobe Master Collection CC 2019 v3 Winx64.torrent |
| Full analysis: | https://app.any.run/tasks/57706916-a24f-489d-bb4c-ee6e3e05ce46 |
| Verdict: | No threats detected |
| Analysis date: | May 02, 2019, 16:12:16 |
| OS: | Windows 7 Professional Service Pack 1 (build: 7601, 32 bit) |
| Indicators: | |
| MIME: | application/x-bittorrent |
| File info: | BitTorrent file |
| MD5: | 273C0E3B66A6D16C43D880C0D627A03C |
| SHA1: | 87929C0103D08D3B0CD63C666167BF7304B18E1C |
| SHA256: | 7302BD40679F97DE0E61F6BEAB516DBEFC097146E9B378AF4C6672721DB7E4AD |
| SSDEEP: | 3072:kgIbSpreWTajRQ6ZjxlTWvfalhrVFJtunyqq3swHRI8N9cDDoBCZNVKyX:kgIbSprenjRxZdlTW3aPxsRhwzjcD1Nz |
| .torrent | | | Torrent (trackerless) (57.6) |
|---|---|---|
| .torrent | | | Torrent (42.3) |
| Announce: | http://tracker.cgpeers.to:420/u5e0lia5drirga576cacaxaqv20b4n75/announce |
|---|---|
| Creator: | Tixati v2.53 |
| CreateDate: | 2019:03:03 17:22:12+01:00 |
| Encoding: | UTF-8 |
| File1Length: | 19465 MB |
| File1Path: | Adobe.Master.Collection.CC.2019.v3.RU-EN.vol1.iso |
| File2Length: | 85 bytes |
| File2Path: | Adobe.Master.Collection.CC.2019.v3.RU-EN.vol1.md5 |
| File3Length: | 129 bytes |
| File3Path: | Adobe.Master.Collection.CC.2019.v3.RU-EN.vol1.sfv |
| File4Length: | 93 bytes |
| File4Path: | Adobe.Master.Collection.CC.2019.v3.RU-EN.vol1.sha |
| File5Length: | 9771 MB |
| File5Path: | Adobe.Master.Collection.CC.2019.v3.RU-EN.vol2.iso |
| File6Length: | 85 bytes |
| File6Path: | Adobe.Master.Collection.CC.2019.v3.RU-EN.vol2.md5 |
| File7Length: | 129 bytes |
| File7Path: | Adobe.Master.Collection.CC.2019.v3.RU-EN.vol2.sfv |
| File8Length: | 93 bytes |
| File8Path: | Adobe.Master.Collection.CC.2019.v3.RU-EN.vol2.sha |
| File9Length: | 4.7 kB |
| File9Path: | m0nkrus.nfo |
| Name: | Adobe Master Collection CC 2019 v3 Winx64 |
| PieceLength: | 4194304 |
| Pieces: | (Binary data 146180 bytes, use -b option to extract) |
| Private: | 1 |
PID | CMD | Path | Indicators | Parent process | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 2268 | "C:\Program Files\Opera\Opera.exe" "C:\Users\admin\AppData\Local\Temp\Adobe Master Collection CC 2019 v3 Winx64.torrent" | C:\Program Files\Opera\Opera.exe | rundll32.exe | ||||||||||||
User: admin Company: Opera Software Integrity Level: MEDIUM Description: Opera Internet Browser Exit code: 0 Version: 1748 Modules
| |||||||||||||||
| 2608 | "C:\Windows\system32\rundll32.exe" C:\Windows\system32\shell32.dll,OpenAs_RunDLL C:\Users\admin\AppData\Local\Temp\Adobe Master Collection CC 2019 v3 Winx64.torrent | C:\Windows\system32\rundll32.exe | — | explorer.exe | |||||||||||
User: admin Company: Microsoft Corporation Integrity Level: MEDIUM Description: Windows host process (Rundll32) Exit code: 0 Version: 6.1.7600.16385 (win7_rtm.090713-1255) Modules
| |||||||||||||||
| 3568 | "C:\Program Files\Opera\Opera.exe" "C:\Users\admin\Documents\Adobe Master Collection CC 2019 v3 Winx64.torrent" | C:\Program Files\Opera\Opera.exe | — | Opera.exe | |||||||||||
User: admin Company: Opera Software Integrity Level: MEDIUM Description: Opera Internet Browser Exit code: 0 Version: 1748 Modules
| |||||||||||||||
| (PID) Process: | (2608) rundll32.exe | Key: | HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.torrent\OpenWithProgids |
| Operation: | write | Name: | uTorrent |
Value: | |||
| (PID) Process: | (2608) rundll32.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\MuiCache |
| Operation: | write | Name: | LangID |
Value: 0904 | |||
| (PID) Process: | (2608) rundll32.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\MuiCache |
| Operation: | write | Name: | C:\Program Files\Opera\Opera.exe |
Value: Opera Internet Browser | |||
| (PID) Process: | (2608) rundll32.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\MuiCache |
| Operation: | write | Name: | C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe |
Value: Adobe Acrobat Reader DC | |||
| (PID) Process: | (2608) rundll32.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\MuiCache |
| Operation: | write | Name: | C:\Windows\eHome\ehshell.exe |
Value: Windows Media Center | |||
| (PID) Process: | (2608) rundll32.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\MuiCache |
| Operation: | write | Name: | C:\Program Files\Internet Explorer\iexplore.exe |
Value: Internet Explorer | |||
| (PID) Process: | (2608) rundll32.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\MuiCache |
| Operation: | write | Name: | C:\Windows\system32\mspaint.exe |
Value: Paint | |||
| (PID) Process: | (2608) rundll32.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\MuiCache |
| Operation: | write | Name: | C:\Windows\system32\NOTEPAD.EXE |
Value: Notepad | |||
| (PID) Process: | (2608) rundll32.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\MuiCache |
| Operation: | write | Name: | C:\PROGRA~1\MICROS~1\Office14\OIS.EXE |
Value: Microsoft Office 2010 | |||
| (PID) Process: | (2608) rundll32.exe | Key: | HKEY_CLASSES_ROOT\Local Settings\Software\Microsoft\Windows\Shell\MuiCache |
| Operation: | write | Name: | C:\Program Files\Windows Photo Viewer\PhotoViewer.dll |
Value: Windows Photo Viewer | |||
PID | Process | Filename | Type | |
|---|---|---|---|---|
| 2268 | Opera.exe | C:\Users\admin\AppData\Roaming\Opera\Opera\sessions\oprC40D.tmp | — | |
MD5:— | SHA256:— | |||
| 2268 | Opera.exe | C:\Users\admin\AppData\Roaming\Opera\Opera\oprC40E.tmp | — | |
MD5:— | SHA256:— | |||
| 2268 | Opera.exe | C:\Users\admin\AppData\Roaming\Opera\Opera\oprC538.tmp | — | |
MD5:— | SHA256:— | |||
| 2268 | Opera.exe | C:\Users\admin\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\O0PZPDWR4KGJJ1M7XJNC.temp | — | |
MD5:— | SHA256:— | |||
| 2268 | Opera.exe | C:\Users\admin\AppData\Roaming\Opera\Opera\sessions\opr2B17.tmp | — | |
MD5:— | SHA256:— | |||
| 2268 | Opera.exe | C:\Users\admin\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\16ec093b8f51508f.customDestinations-ms | binary | |
MD5:— | SHA256:— | |||
| 2268 | Opera.exe | C:\Users\admin\AppData\Roaming\Opera\Opera\operaprefs.ini | text | |
MD5:— | SHA256:— | |||
| 2268 | Opera.exe | C:\Users\admin\AppData\Roaming\Opera\Opera\tasks.xml | xml | |
MD5:— | SHA256:— | |||
| 2268 | Opera.exe | C:\Users\admin\AppData\Local\Opera\Opera\cache\sesn\opr00001.tmp | xml | |
MD5:— | SHA256:— | |||
| 2268 | Opera.exe | C:\Users\admin\AppData\Roaming\Opera\Opera\opssl6.dat | binary | |
MD5:— | SHA256:— | |||
PID | Process | Method | HTTP Code | IP | URL | CN | Type | Size | Reputation |
|---|---|---|---|---|---|---|---|---|---|
2268 | Opera.exe | GET | 200 | 66.225.197.197:80 | http://crl4.digicert.com/DigiCertHighAssuranceEVRootCA.crl | US | der | 543 b | whitelisted |
2268 | Opera.exe | GET | 200 | 93.184.220.29:80 | http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTPJvUY%2Bsl%2Bj4yzQuAcL2oQno5fCgQUUWj%2FkK8CB3U8zNllZGKiErhZcjsCEAOXQPQlVpLtFek%2BmcpabOk%3D | US | der | 471 b | whitelisted |
PID | Process | IP | Domain | ASN | CN | Reputation |
|---|---|---|---|---|---|---|
— | — | 82.145.215.40:443 | certs.opera.com | Opera Software AS | — | whitelisted |
— | — | 93.184.220.29:80 | ocsp.digicert.com | MCI Communications Services, Inc. d/b/a Verizon Business | US | whitelisted |
— | — | 66.225.197.197:80 | crl4.digicert.com | CacheNetworks, Inc. | US | whitelisted |
Domain | IP | Reputation |
|---|---|---|
certs.opera.com |
| whitelisted |
ocsp.digicert.com |
| whitelisted |
crl4.digicert.com |
| whitelisted |