| File name: | utorrent_2.2.1.exe |
| Full analysis: | https://app.any.run/tasks/df5bd19a-2128-4699-94ab-537173919d58 |
| Verdict: | Malicious activity |
| Threats: | A loader is malicious software that infiltrates devices to deliver malicious payloads. This malware is capable of infecting victims’ computers, analyzing their system information, and installing other types of threats, such as trojans or stealers. Criminals usually deliver loaders through phishing emails and links by relying on social engineering to trick users into downloading and running their executables. Loaders employ advanced evasion and persistence tactics to avoid detection. |
| Analysis date: | March 30, 2019, 02:17:02 |
| OS: | Windows 7 Professional Service Pack 1 (build: 7601, 32 bit) |
| Tags: | |
| Indicators: | |
| MIME: | application/x-dosexec |
| File info: | PE32 executable (GUI) Intel 80386, for MS Windows |
| MD5: | 6DBC20E7530C2EFFBEDB828645A9638F |
| SHA1: | B72377B175BAB8F36D44409585706894DF7030B5 |
| SHA256: | 740F943D3843BB352E52B2D3EFDD3C17CC1D44C9571BDF09136D6A1CB3B7BC3D |
| SSDEEP: | 196608:K604dQaORKjSIs9PD2FNUugG/LUQhbehFZJomAEXTjA1OPME1//EeaVwxnG960Q0:KMuEZsl6FeKZhbGoJWEk4H91e8wBcH |
| .exe | | | Inno Setup installer (77.7) |
|---|---|---|
| .exe | | | Win32 Executable Delphi generic (10) |
| .dll | | | Win32 Dynamic Link Library (generic) (4.6) |
| .exe | | | Win32 Executable (generic) (3.1) |
| .exe | | | Win16/32 Executable Delphi generic (1.4) |
| MachineType: | Intel 386 or later, and compatibles |
|---|---|
| TimeStamp: | 1992:06:20 00:22:17+02:00 |
| PEType: | PE32 |
| LinkerVersion: | 2.25 |
| CodeSize: | 41472 |
| InitializedDataSize: | 17920 |
| UninitializedDataSize: | - |
| EntryPoint: | 0xaa98 |
| OSVersion: | 1 |
| ImageVersion: | 6 |
| SubsystemVersion: | 4 |
| Subsystem: | Windows GUI |
| FileVersionNumber: | 0.0.0.0 |
| ProductVersionNumber: | 0.0.0.0 |
| FileFlagsMask: | 0x003f |
| FileFlags: | (none) |
| FileOS: | Win32 |
| ObjectFileType: | Executable application |
| FileSubtype: | - |
| LanguageCode: | Neutral |
| CharacterSet: | Unicode |
| Comments: | This installation was built with Inno Setup. |
| CompanyName: | |
| FileDescription: | Setup Setup |
| FileVersion: | |
| LegalCopyright: | |
| ProductName: | Setup |
| ProductVersion: |
| Architecture: | IMAGE_FILE_MACHINE_I386 |
|---|---|
| Subsystem: | IMAGE_SUBSYSTEM_WINDOWS_GUI |
| Compilation Date: | 19-Jun-1992 22:22:17 |
| Detected languages: |
|
| Comments: | This installation was built with Inno Setup. |
| CompanyName: | - |
| FileDescription: | Setup Setup |
| FileVersion: | - |
| LegalCopyright: | - |
| ProductName: | Setup |
| ProductVersion: | - |
| Magic number: | MZ |
|---|---|
| Bytes on last page of file: | 0x0050 |
| Pages in file: | 0x0002 |
| Relocations: | 0x0000 |
| Size of header: | 0x0004 |
| Min extra paragraphs: | 0x000F |
| Max extra paragraphs: | 0xFFFF |
| Initial SS value: | 0x0000 |
| Initial SP value: | 0x00B8 |
| Checksum: | 0x0000 |
| Initial IP value: | 0x0000 |
| Initial CS value: | 0x0000 |
| Overlay number: | 0x001A |
| OEM identifier: | 0x0000 |
| OEM information: | 0x0000 |
| Address of NE header: | 0x00000100 |
| Signature: | PE |
|---|---|
| Machine: | IMAGE_FILE_MACHINE_I386 |
| Number of sections: | 8 |
| Time date stamp: | 19-Jun-1992 22:22:17 |
| Pointer to Symbol Table: | 0x00000000 |
| Number of symbols: | 0 |
| Size of Optional Header: | 0x00E0 |
| Characteristics: |
|
Name | Virtual Address | Virtual Size | Raw Size | Charateristics | Entropy |
|---|---|---|---|---|---|
CODE | 0x00001000 | 0x0000A1D0 | 0x0000A200 | IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ | 6.64375 |
DATA | 0x0000C000 | 0x00000250 | 0x00000400 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE | 2.74012 |
BSS | 0x0000D000 | 0x00000E94 | 0x00000000 | IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE | 0 |
.idata | 0x0000E000 | 0x0000097C | 0x00000A00 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE | 4.48608 |
.tls | 0x0000F000 | 0x00000008 | 0x00000000 | IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE | 0 |
.rdata | 0x00010000 | 0x00000018 | 0x00000200 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_SHARED | 0.190489 |
.reloc | 0x00011000 | 0x0000091C | 0x00000000 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_SHARED | 0 |
.rsrc | 0x00012000 | 0x00002C00 | 0x00002C00 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_SHARED | 4.57503 |
Title | Entropy | Size | Codepage | Language | Type |
|---|---|---|---|---|---|
1 | 5.13965 | 1580 | UNKNOWN | English - United States | RT_MANIFEST |
2 | 3.47151 | 1384 | UNKNOWN | Dutch - Netherlands | RT_ICON |
3 | 3.91708 | 744 | UNKNOWN | Dutch - Netherlands | RT_ICON |
4 | 3.91366 | 2216 | UNKNOWN | Dutch - Netherlands | RT_ICON |
4089 | 3.21823 | 754 | UNKNOWN | UNKNOWN | RT_STRING |
4090 | 3.31515 | 780 | UNKNOWN | UNKNOWN | RT_STRING |
4091 | 3.25024 | 718 | UNKNOWN | UNKNOWN | RT_STRING |
4093 | 2.86149 | 104 | UNKNOWN | UNKNOWN | RT_STRING |
4094 | 3.20731 | 180 | UNKNOWN | UNKNOWN | RT_STRING |
4095 | 3.04592 | 174 | UNKNOWN | UNKNOWN | RT_STRING |
advapi32.dll |
comctl32.dll |
kernel32.dll |
oleaut32.dll |
user32.dll |
PID | CMD | Path | Indicators | Parent process | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 276 | "C:\Windows\System32\cmd.exe" /C netsh http add urlacl url=http://+:9007/ user=Everyone | C:\Windows\System32\cmd.exe | — | Lavasoft.WCAssistant.WinService.exe | |||||||||||
User: SYSTEM Company: Microsoft Corporation Integrity Level: SYSTEM Description: Windows Command Processor Exit code: 1 Version: 6.1.7601.17514 (win7sp1_rtm.101119-1850) Modules
| |||||||||||||||
| 792 | uTorrent.exe /BRINGTOFRONT | C:\Users\admin\AppData\Local\Temp\utt383D.tmp.exe | utt383D.tmp.exe | ||||||||||||
User: admin Company: BitTorrent Inc. Integrity Level: HIGH Description: µTorrent Exit code: 0 Version: 3.5.5.45146 Modules
| |||||||||||||||
| 1496 | "C:\Program Files\Lavasoft\Web Companion\Application\WebCompanion.exe" --silent --afterinstall | C:\Program Files\Lavasoft\Web Companion\Application\WebCompanion.exe | WebCompanionInstaller.exe | ||||||||||||
User: admin Company: Lavasoft Integrity Level: HIGH Description: Web Companion Exit code: 0 Version: 4.6.1974.3869 Modules
| |||||||||||||||
| 1520 | "C:\Program Files\Lavasoft\Web Companion\Application\WebCompanion.exe" --silent --install --geo= | C:\Program Files\Lavasoft\Web Companion\Application\WebCompanion.exe | WebCompanionInstaller.exe | ||||||||||||
User: admin Company: Lavasoft Integrity Level: HIGH Description: Web Companion Exit code: 0 Version: 4.6.1974.3869 Modules
| |||||||||||||||
| 1572 | "C:\Program Files\Lavasoft\Web Companion\Application\Ad-Aware Web Companion.exe" {993F5746-4C15-42BC-99C1-064A1764271B} | C:\Program Files\Lavasoft\Web Companion\Application\Ad-Aware Web Companion.exe | — | WebCompanion.exe | |||||||||||
User: admin Company: Integrity Level: HIGH Description: Ad-Aware Web Companion.exe Exit code: 0 Version: 4.6.1974.3869 Modules
| |||||||||||||||
| 1700 | .\WebCompanionInstaller.exe --partner=BT170902 --version=4.6.1974.3869 --prod --silent --partner=BT170902 --homepage=11 --search=7 | C:\Users\admin\AppData\Local\Temp\7zSAED4.tmp\WebCompanionInstaller.exe | offer-26B70F4C-A2D4-45F4-954E-FE68E13073D7.exe | ||||||||||||
User: admin Company: Lavasoft Integrity Level: HIGH Description: Web Companion Exit code: 0 Version: 4.6.1974.3869 Modules
| |||||||||||||||
| 1708 | "C:\Users\admin\AppData\Local\Temp\utorrent_2.2.1.exe" | C:\Users\admin\AppData\Local\Temp\utorrent_2.2.1.exe | explorer.exe | ||||||||||||
User: admin Company: Integrity Level: MEDIUM Description: Setup Setup Exit code: 0 Version: Modules
| |||||||||||||||
| 1916 | "C:\Users\admin\AppData\Local\Temp\is-QIFML.tmp\utorrent_2.2.1.tmp" /SL5="$400E8,11959346,57856,C:\Users\admin\AppData\Local\Temp\utorrent_2.2.1.exe" | C:\Users\admin\AppData\Local\Temp\is-QIFML.tmp\utorrent_2.2.1.tmp | — | utorrent_2.2.1.exe | |||||||||||
User: admin Integrity Level: MEDIUM Description: Setup/Uninstall Exit code: 0 Version: 51.52.0.0 Modules
| |||||||||||||||
| 2052 | "C:\Windows\System32\mshta.exe" "C:\Users\admin\AppData\Local\Temp\HYD40D9.tmp.1553912305\HTA\index.hta?utorrent" "C:\Users\admin\AppData\Local\Temp\utt383D.tmp.exe" /CLIENTARGS "/bringtofront" /LOG "C:\Users\admin\AppData\Local\Temp\HYD40D9.tmp.1553912305\index.hta.log" /PID "792" /CID "lLCveTQTvKEWNpMv" /VERSION "111915098" /BUCKET "0" /SSB "46" /COUNTRY "US" /OS "6.1" /BROWSERS "\"C:\Program Files\Mozilla Firefox\firefox.exe\",\"C:\Program Files\Google\Chrome\Application\chrome.exe\",C:\Program Files\Internet Explorer\iexplore.exe,\"C:\Program Files\Opera\Opera.exe\"" /ARCHITECTURE "32" /LANG "en" /USERNAME "admin" /SID "S-1-5-21-1302019708-1500728564-335382590-1000" /CLIENT "utorrent" | C:\Windows\System32\mshta.exe | utt383D.tmp.exe | ||||||||||||
User: admin Company: Microsoft Corporation Integrity Level: HIGH Description: Microsoft (R) HTML Application host Exit code: 0 Version: 8.00.7600.16385 (win7_rtm.090713-1255) Modules
| |||||||||||||||
| 2104 | "C:\Program Files\Common Files\Mortar\uninstall\helper.exe" /SetAsDefaultAppUser | C:\Program Files\Common Files\Mortar\uninstall\helper.exe | — | update.exe | |||||||||||
User: admin Company: Mozilla Corporation Integrity Level: HIGH Description: Firefox Helper Exit code: 2 Version: 3.6.3 Modules
| |||||||||||||||
| (PID) Process: | (3752) utorrent_2.2.1.tmp | Key: | HKEY_CURRENT_USER\Software\Microsoft\RestartManager\Session0000 |
| Operation: | write | Name: | Owner |
Value: A80E000030C008BF9EE6D401 | |||
| (PID) Process: | (3752) utorrent_2.2.1.tmp | Key: | HKEY_CURRENT_USER\Software\Microsoft\RestartManager\Session0000 |
| Operation: | write | Name: | SessionHash |
Value: EC61204B11E309E9CDD8AF7F28C841DF8F14CBD592413D8950B85A79F4C727DB | |||
| (PID) Process: | (3752) utorrent_2.2.1.tmp | Key: | HKEY_CURRENT_USER\Software\Microsoft\RestartManager\Session0000 |
| Operation: | write | Name: | Sequence |
Value: 1 | |||
| (PID) Process: | (3752) utorrent_2.2.1.tmp | Key: | HKEY_CURRENT_USER\Software\DownloadHelper |
| Operation: | write | Name: | Cro5Scn |
Value: M08130O9RRSC0X28STJW | |||
| (PID) Process: | (3752) utorrent_2.2.1.tmp | Key: | HKEY_CURRENT_USER\Software\DownloadHelper\ConvertHelper |
| Operation: | write | Name: | PVYDGIaUsl0 |
Value: 0a8eed90f3a8e8e0c53a2648e9:0 | |||
| (PID) Process: | (3752) utorrent_2.2.1.tmp | Key: | HKEY_CURRENT_USER\Software\DownloadHelper\ConvertHelper |
| Operation: | write | Name: | ngJYRmYwQt1 |
Value: 1c94fbcaf7aee9eece603055e1970015d14b:0 | |||
| (PID) Process: | (3752) utorrent_2.2.1.tmp | Key: | HKEY_CURRENT_USER\Software\DownloadHelper\ConvertHelper |
| Operation: | write | Name: | oHTAvecEaN2 |
Value: 1090f6d8e1bee3f7da762009eadc1d:0 | |||
| (PID) Process: | (3752) utorrent_2.2.1.tmp | Key: | HKEY_CURRENT_USER\Software\DownloadHelper\ConvertHelper |
| Operation: | write | Name: | XdBezoMMCl3 |
Value: 188ff3d2f3b5fce6c33a2648e9:0 | |||
| (PID) Process: | (3752) utorrent_2.2.1.tmp | Key: | HKEY_CURRENT_USER\Software\DownloadHelper\ConvertHelper |
| Operation: | write | Name: | TxeHJtixTP4 |
Value: 1690f4d5bcb8f4ee:0 | |||
| (PID) Process: | (3752) utorrent_2.2.1.tmp | Key: | HKEY_CURRENT_USER\Software\DownloadHelper\ConvertHelper |
| Operation: | write | Name: | jbYgIHmqBz5 |
Value: 1c9effdaf0b2efe0c7713609e7d604:0 | |||
PID | Process | Filename | Type | |
|---|---|---|---|---|
| 3752 | utorrent_2.2.1.tmp | C:\Users\admin\AppData\Local\Temp\is-2QF93.tmp\AccessibleMarshal.dll | — | |
MD5:— | SHA256:— | |||
| 3752 | utorrent_2.2.1.tmp | C:\Users\admin\AppData\Local\Temp\is-2QF93.tmp\application.ini | — | |
MD5:— | SHA256:— | |||
| 3752 | utorrent_2.2.1.tmp | C:\Users\admin\AppData\Local\Temp\is-2QF93.tmp\blocklist.xml | — | |
MD5:— | SHA256:— | |||
| 3752 | utorrent_2.2.1.tmp | C:\Users\admin\AppData\Local\Temp\is-2QF93.tmp\browserconfig.properties | — | |
MD5:— | SHA256:— | |||
| 3752 | utorrent_2.2.1.tmp | C:\Users\admin\AppData\Local\Temp\is-2QF93.tmp\crashreporter-override.ini | — | |
MD5:— | SHA256:— | |||
| 3752 | utorrent_2.2.1.tmp | C:\Users\admin\AppData\Local\Temp\is-2QF93.tmp\crashreporter.exe | — | |
MD5:— | SHA256:— | |||
| 3752 | utorrent_2.2.1.tmp | C:\Users\admin\AppData\Local\Temp\is-2QF93.tmp\crashreporter.ini | — | |
MD5:— | SHA256:— | |||
| 3752 | utorrent_2.2.1.tmp | C:\Users\admin\AppData\Local\Temp\is-2QF93.tmp\freebl3.chk | — | |
MD5:— | SHA256:— | |||
| 3752 | utorrent_2.2.1.tmp | C:\Users\admin\AppData\Local\Temp\is-2QF93.tmp\freebl3.dll | — | |
MD5:— | SHA256:— | |||
| 3752 | utorrent_2.2.1.tmp | C:\Users\admin\AppData\Local\Temp\is-2QF93.tmp\js3250.dll | — | |
MD5:— | SHA256:— | |||
PID | Process | Method | HTTP Code | IP | URL | CN | Type | Size | Reputation |
|---|---|---|---|---|---|---|---|---|---|
2884 | utorrent_2.2.1.exe | GET | 200 | 67.215.246.203:80 | http://update.utorrent.com/installstats.php?v=71524886&h=lLCveTQTvKEWNpMv&hn=1&w=1DB10106&bu=0&pr=0&showwarning | US | — | — | whitelisted |
2884 | utorrent_2.2.1.exe | GET | 200 | 67.215.246.203:80 | http://update.utorrent.com/installstats.php?v=71524886&h=lLCveTQTvKEWNpMv&hn=1&w=1DB10106&bu=0&pr=0&showinstall | US | — | — | whitelisted |
2884 | utorrent_2.2.1.exe | GET | 200 | 67.215.246.203:80 | http://update.utorrent.com/installstats.php?v=71524886&h=lLCveTQTvKEWNpMv&hn=1&w=1DB10106&bu=0&pr=0&tbe=0 | US | — | — | whitelisted |
2884 | utorrent_2.2.1.exe | GET | 200 | 67.215.246.203:80 | http://update.utorrent.com/updatestats.php?v=71524886&h=lLCveTQTvKEWNpMv&k=&ip=95.140.239.0&dns=31&con=15&dl=547&sz=168&error=HTTP%20Error%20404&dlurl=http%3a%2f%2fdownload.utorrent.com%2foffers%2fut_conduit-20110119.bmp&bin=emptybmp&p1=192.168.100.2&m1=0&p2=10.23.0.1&m2=28&p3=81.17.242.226&m3=29&p4=78.153.193.33&m4=32&p5=185.6.36.75&m5=39&p6=178.79.195.61&m6=39&p7=68.142.88.113&m7=44&p8=185.178.52.15&m8=46&p9=95.140.239.0&m9=47 | US | — | — | whitelisted |
2884 | utorrent_2.2.1.exe | GET | 200 | 67.215.246.203:80 | http://update.utorrent.com/installstats.php?v=71524886&h=lLCveTQTvKEWNpMv&hn=1&w=1DB10106&bu=0&pr=0&installresult=30079&exit=1369 | US | — | — | whitelisted |
4092 | update.exe | GET | 302 | 63.245.208.213:80 | http://fxfeeds.mozilla.com/firefox/headlines.xml | US | html | 256 b | whitelisted |
4092 | update.exe | POST | 200 | 172.217.16.163:80 | http://ocsp.pki.goog/GTSGIAG3 | US | der | 471 b | whitelisted |
4092 | update.exe | GET | 302 | 63.245.208.213:80 | http://fxfeeds.mozilla.com/en-US/firefox/headlines.xml | US | html | 232 b | whitelisted |
4092 | update.exe | GET | 200 | 108.59.2.206:80 | http://www.fallenteenangels.com/favicon.ico | US | image | 1.37 Kb | unknown |
2884 | utorrent_2.2.1.exe | GET | 200 | 67.215.246.203:80 | http://update.utorrent.com/installoffer.php?h=lLCveTQTvKEWNpMv&v=71524886&w=1DB10106&l=en&c=US&tb=0&bu=0&w64=0&db=iexplore.exe&cl=uTorrent&au=0 | US | text | 97 b | whitelisted |
PID | Process | IP | Domain | ASN | CN | Reputation |
|---|---|---|---|---|---|---|
4092 | update.exe | 63.245.208.213:80 | fxfeeds.mozilla.com | Mozilla Corporation | US | suspicious |
2884 | utorrent_2.2.1.exe | 95.140.239.0:80 | ll.download3.utorrent.com | Limelight Networks, Inc. | GB | suspicious |
4092 | update.exe | 95.101.176.233:80 | feeds.bbci.co.uk | Akamai Technologies, Inc. | — | whitelisted |
4092 | update.exe | 104.27.137.14:80 | allofteens.com | Cloudflare Inc | US | shared |
4092 | update.exe | 108.59.2.206:80 | fallenteenangels.com | Leaseweb USA, Inc. | US | unknown |
3336 | uTorrent.exe | 67.215.246.203:80 | update.utorrent.com | QuadraNet, Inc | US | suspicious |
3336 | uTorrent.exe | 87.248.222.128:80 | ll.download3.utorrent.com | Limelight Networks, Inc. | IT | suspicious |
3336 | uTorrent.exe | 95.140.239.44:80 | www.bittorrent.com | Limelight Networks, Inc. | GB | suspicious |
3336 | uTorrent.exe | 188.166.49.116:80 | www.mininova.org | Digital Ocean, Inc. | NL | suspicious |
— | — | 82.221.103.244:6881 | router.utorrent.com | Thor Data Center ehf | IS | suspicious |
Domain | IP | Reputation |
|---|---|---|
update.utorrent.com |
| whitelisted |
download.utorrent.com |
| suspicious |
ll.download3.utorrent.com |
| whitelisted |
sb-ssl.google.com |
| whitelisted |
ocsp.pki.goog |
| whitelisted |
fxfeeds.mozilla.com |
| whitelisted |
newsrss.bbc.co.uk |
| whitelisted |
feeds.bbci.co.uk |
| suspicious |
fallenteenangels.com |
| unknown |
www.fallenteenangels.com |
| unknown |
PID | Process | Class | Message |
|---|---|---|---|
2884 | utorrent_2.2.1.exe | Potential Corporate Privacy Violation | ET P2P Bittorrent P2P Client User-Agent (uTorrent) |
2884 | utorrent_2.2.1.exe | Potential Corporate Privacy Violation | ET P2P Bittorrent P2P Client User-Agent (uTorrent) |
2884 | utorrent_2.2.1.exe | Potential Corporate Privacy Violation | ET P2P BTWebClient UA uTorrent in use |
2884 | utorrent_2.2.1.exe | Potential Corporate Privacy Violation | ET P2P BTWebClient UA uTorrent in use |
2884 | utorrent_2.2.1.exe | Potential Corporate Privacy Violation | ET P2P BTWebClient UA uTorrent in use |
2884 | utorrent_2.2.1.exe | Potential Corporate Privacy Violation | ET P2P Bittorrent P2P Client User-Agent (uTorrent) |
2884 | utorrent_2.2.1.exe | Potential Corporate Privacy Violation | ET P2P Bittorrent P2P Client User-Agent (uTorrent) |
2884 | utorrent_2.2.1.exe | Potential Corporate Privacy Violation | ET P2P Bittorrent P2P Client User-Agent (uTorrent) |
3336 | uTorrent.exe | Potential Corporate Privacy Violation | ET P2P BTWebClient UA uTorrent in use |
3336 | uTorrent.exe | Potential Corporate Privacy Violation | ET P2P BTWebClient UA uTorrent in use |
Process | Message |
|---|---|
WebCompanionInstaller.exe | Detecting windows culture
|
WebCompanionInstaller.exe | 3/30/2019 2:19:09 AM :-> Starting installer 4.6.1974.3869 with: .\WebCompanionInstaller.exe --partner=BT170902 --version=4.6.1974.3869 --prod --silent --partner=BT170902 --homepage=11 --search=7, Run as admin: True
|
WebCompanionInstaller.exe | Preparing for installing Web Companion
|
WebCompanionInstaller.exe | 3/30/2019 2:19:10 AM :-> Generating Machine and Install Id ...
|
WebCompanionInstaller.exe | 3/30/2019 2:19:10 AM :-> Machine Id and Install Id has been generated
|
WebCompanionInstaller.exe | 3/30/2019 2:19:10 AM :-> Checking prerequisites ...
|
WebCompanionInstaller.exe | 3/30/2019 2:19:10 AM :-> Antivirus not detected
|
WebCompanionInstaller.exe | 3/30/2019 2:19:10 AM :-> vm_check False
|
WebCompanionInstaller.exe | 3/30/2019 2:19:11 AM :-> reg_check :False
|
WebCompanionInstaller.exe | 3/30/2019 2:19:11 AM :-> Installed .Net framework is V40
|