| File name: | BraveBrowserSetup-BRV010.exe |
| Full analysis: | https://app.any.run/tasks/eecefddd-207d-4465-9967-333dba4d7e09 |
| Verdict: | Malicious activity |
| Threats: | Crypto mining malware is a resource-intensive threat that infiltrates computers with the purpose of mining cryptocurrencies. This type of threat can be deployed either on an infected machine or a compromised website. In both cases the miner will utilize the computing power of the device and its network bandwidth. |
| Analysis date: | July 27, 2024, 02:23:29 |
| OS: | Windows 10 Professional (build: 19045, 64 bit) |
| Tags: | |
| Indicators: | |
| MIME: | application/x-dosexec |
| File info: | PE32 executable (GUI) Intel 80386, for MS Windows |
| MD5: | ADE2D194C916C8B0199BAFF5CF1B3819 |
| SHA1: | 96EC3A266D5BDDB17F0E7663E74FFD857DBC6CC7 |
| SHA256: | 821D32B04D3701010164B982A61A929906F1DC7AD5F53ED4BE137127BB1D75DE |
| SSDEEP: | 49152:BtxYh7vDRzU6jOAuOtiEwR2FjJKurz7dzWDwjNtD2WaqBjWODZXczPBDxVB628yP:BQh7rmkO5OK2RJKurn4wjf2Wa0iyZXcN |
| .exe | | | Win64 Executable (generic) (64.6) |
|---|---|---|
| .dll | | | Win32 Dynamic Link Library (generic) (15.4) |
| .exe | | | Win32 Executable (generic) (10.5) |
| .exe | | | Generic Win/DOS Executable (4.6) |
| .exe | | | DOS Executable Generic (4.6) |
| MachineType: | Intel 386 or later, and compatibles |
|---|---|
| TimeStamp: | 2024:07:24 02:29:30+00:00 |
| ImageFileCharacteristics: | Executable, Large address aware, 32-bit |
| PEType: | PE32 |
| LinkerVersion: | 14.4 |
| CodeSize: | 105984 |
| InitializedDataSize: | 1149952 |
| UninitializedDataSize: | - |
| EntryPoint: | 0x6f17 |
| OSVersion: | 5.1 |
| ImageVersion: | - |
| SubsystemVersion: | 5.1 |
| Subsystem: | Windows GUI |
| FileVersionNumber: | 1.3.361.151 |
| ProductVersionNumber: | 1.3.361.151 |
| FileFlagsMask: | 0x003f |
| FileFlags: | Private build |
| FileOS: | Windows NT 32-bit |
| ObjectFileType: | Executable application |
| FileSubtype: | - |
| LanguageCode: | English (U.S.) |
| CharacterSet: | Unicode |
| CompanyName: | BraveSoftware Inc. |
| FileDescription: | BraveSoftware Update Setup |
| FileVersion: | 1.3.361.151 |
| InternalName: | BraveSoftware Update Setup |
| OriginalFileName: | BraveUpdateSetup.exe |
| ProductName: | BraveSoftware Update |
| ProductVersion: | 1.3.361.151 |
| LanguageId: | en |
| PrivateBuild: | - |
PID | CMD | Path | Indicators | Parent process | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 320 | "C:\Program Files\BraveSoftware\Brave-Browser\Application\127.1.68.128\Installer\chrmstp.exe" --type=crashpad-handler /prefetch:4 --monitor-self-annotation=ptype=crashpad-handler --database=C:\WINDOWS\TEMP\Crashpad --url=https://cr.brave.com --annotation=plat=Win64 --annotation=prod=Brave --annotation=ver=127.1.68.128 --initial-client-data=0x2b4,0x2b8,0x2bc,0x290,0x2c0,0x7ff678c83a70,0x7ff678c83a7c,0x7ff678c83a88 | C:\Program Files\BraveSoftware\Brave-Browser\Application\127.1.68.128\Installer\chrmstp.exe | chrmstp.exe | ||||||||||||
User: admin Company: Brave Software, Inc. Integrity Level: MEDIUM Description: Brave Installer Exit code: 0 Version: 127.1.68.128 Modules
| |||||||||||||||
| 528 | "C:\Program Files\BraveSoftware\Brave-Browser\Application\127.1.68.128\elevation_service.exe" | C:\Program Files\BraveSoftware\Brave-Browser\Application\127.1.68.128\elevation_service.exe | services.exe | ||||||||||||
User: SYSTEM Company: Brave Software, Inc. Integrity Level: SYSTEM Description: Brave Browser Exit code: 0 Version: 127.1.68.128 Modules
| |||||||||||||||
| 720 | "C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe" /svc | C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe | services.exe | ||||||||||||
User: SYSTEM Company: BraveSoftware Inc. Integrity Level: SYSTEM Description: BraveSoftware Update Exit code: 0 Version: 1.3.361.151 Modules
| |||||||||||||||
| 1136 | "C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe" --type=gpu-process --start-stack-profiler --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAEAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --field-trial-handle=1976,i,1369532908775334758,8078918947073979018,262144 --variations-seed-version=1 --mojo-platform-channel-handle=1972 /prefetch:2 | C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe | brave.exe | ||||||||||||
User: admin Company: Brave Software, Inc. Integrity Level: LOW Description: Brave Browser Version: 127.1.68.128 Modules
| |||||||||||||||
| 1156 | "C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe" --type=utility --utility-sub-type=unzip.mojom.Unzipper --lang=en-US --service-sandbox-type=service --field-trial-handle=5140,i,1369532908775334758,8078918947073979018,262144 --variations-seed-version=1 --mojo-platform-channel-handle=5488 /prefetch:8 | C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe | brave.exe | ||||||||||||
User: admin Company: Brave Software, Inc. Integrity Level: LOW Description: Brave Browser Exit code: 0 Version: 127.1.68.128 Modules
| |||||||||||||||
| 1188 | "C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe" /ping PD94bWwgdmVyc2lvbj0iMS4wIiBlbmNvZGluZz0iVVRGLTgiPz48cmVxdWVzdCBwcm90b2NvbD0iMy4wIiB1cGRhdGVyPSJPbWFoYSIgdXBkYXRlcnZlcnNpb249IjEuMy4zNjEuMTUxIiBzaGVsbF92ZXJzaW9uPSIxLjMuMzYxLjE1MSIgaXNtYWNoaW5lPSIxIiBzZXNzaW9uaWQ9InswN0ZGQUJCOC01RjVFLTRCN0YtQjdFQi0yRDIyMjQ5OTE0MjV9IiBpbnN0YWxsc291cmNlPSJ0YWdnZWRtaSIgdGVzdHNvdXJjZT0iYXV0byIgcmVxdWVzdGlkPSJ7MERDRDBBQUItNEVCQy00ODZBLUFEQzUtNEQ5QUQ0OTRDOTBDfSIgZGVkdXA9ImNyIiBkb21haW5qb2luZWQ9IjAiPjxodyBwaHlzbWVtb3J5PSI0IiBzc2U9IjEiIHNzZTI9IjEiIHNzZTM9IjEiIHNzc2UzPSIxIiBzc2U0MT0iMSIgc3NlNDI9IjEiIGF2eD0iMSIvPjxvcyBwbGF0Zm9ybT0id2luIiB2ZXJzaW9uPSIxMC4wLjE5MDQ1LjQwNDYiIHNwPSIiIGFyY2g9Ing2NCIvPjxhcHAgYXBwaWQ9IntBRkU2QTQ2Mi1DNTc0LTRCOEEtQUY0My00Q0M2MERGNDU2M0J9IiB2ZXJzaW9uPSIiIG5leHR2ZXJzaW9uPSIxMjcuMS42OC4xMjgiIGFwPSJyZWxlYXNlIiBsYW5nPSIiIGJyYW5kPSIiIGNsaWVudD0iIiBpbnN0YWxsYWdlPSItMSIgaW5zdGFsbGRhdGU9Ii0xIj48ZXZlbnQgZXZlbnR0eXBlPSI5IiBldmVudHJlc3VsdD0iMSIgZXJyb3Jjb2RlPSIwIiBleHRyYWNvZGUxPSIwIi8-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-PGV2ZW50IGV2ZW50dHlwZT0iNiIgZXZlbnRyZXN1bHQ9IjEiIGVycm9yY29kZT0iMCIgZXh0cmFjb2RlMT0iMCIvPjxldmVudCBldmVudHR5cGU9IjIiIGV2ZW50cmVzdWx0PSIxIiBlcnJvcmNvZGU9IjAiIGV4dHJhY29kZTE9IjE5NjYwOCIgc291cmNlX3VybF9pbmRleD0iMCIgdXBkYXRlX2NoZWNrX3RpbWVfbXM9IjM0MyIgZG93bmxvYWRfdGltZV9tcz0iNjk5MTAiIGRvd25sb2FkZWQ9IjEyMjcwNTQzMiIgdG90YWw9IjEyMjcwNTQzMiIgaW5zdGFsbF90aW1lX21zPSIxMzcxOSIvPjwvYXBwPjwvcmVxdWVzdD4 | C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe | BraveUpdate.exe | ||||||||||||
User: SYSTEM Company: BraveSoftware Inc. Integrity Level: SYSTEM Description: BraveSoftware Update Exit code: 0 Version: 1.3.361.151 Modules
| |||||||||||||||
| 1256 | "C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe" --type=utility --utility-sub-type=unzip.mojom.Unzipper --lang=en-US --service-sandbox-type=service --field-trial-handle=5628,i,1369532908775334758,8078918947073979018,262144 --variations-seed-version=1 --mojo-platform-channel-handle=5124 /prefetch:8 | C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe | brave.exe | ||||||||||||
User: admin Company: Brave Software, Inc. Integrity Level: LOW Description: Brave Browser Exit code: 0 Version: 127.1.68.128 Modules
| |||||||||||||||
| 1472 | "C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveUpdateComRegisterShell64.exe" | C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveUpdateComRegisterShell64.exe | — | BraveUpdate.exe | |||||||||||
User: admin Company: BraveSoftware Inc. Integrity Level: HIGH Description: BraveSoftware Update Exit code: 0 Version: 1.3.361.151 Modules
| |||||||||||||||
| 1712 | "C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe" /handoff "appguid={AFE6A462-C574-4B8A-AF43-4CC60DF4563B}&appname=Brave-Release&needsadmin=prefers&ap=release&installdataindex=default&referral=none" /installsource taggedmi /sessionid "{07FFABB8-5F5E-4B7F-B7EB-2D2224991425}" | C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe | — | BraveUpdate.exe | |||||||||||
User: admin Company: BraveSoftware Inc. Integrity Level: HIGH Description: BraveSoftware Update Exit code: 0 Version: 1.3.361.151 Modules
| |||||||||||||||
| 2088 | "C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe" --type=utility --utility-sub-type=unzip.mojom.Unzipper --lang=en-US --service-sandbox-type=service --field-trial-handle=5188,i,1369532908775334758,8078918947073979018,262144 --variations-seed-version=1 --mojo-platform-channel-handle=5324 /prefetch:8 | C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe | brave.exe | ||||||||||||
User: admin Company: Brave Software, Inc. Integrity Level: LOW Description: Brave Browser Exit code: 0 Version: 127.1.68.128 Modules
| |||||||||||||||
| (PID) Process: | (2888) BraveBrowserSetup-BRV010.exe | Key: | HKEY_CURRENT_USER\SOFTWARE\BraveSoftware\Promo |
| Operation: | write | Name: | StubInstallerPath |
Value: C:\Users\admin\AppData\Local\Temp\BraveBrowserSetup-BRV010.exe | |||
| (PID) Process: | (3196) BraveUpdate.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\BraveSoftware\Update |
| Operation: | write | Name: | path |
Value: C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe | |||
| (PID) Process: | (3196) BraveUpdate.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\BraveSoftware\Update |
| Operation: | write | Name: | UninstallCmdLine |
Value: "C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe" /uninstall | |||
| (PID) Process: | (3196) BraveUpdate.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\BraveSoftware\Update\Clients\{B131C935-9BE6-41DA-9599-1F776BEB8019} |
| Operation: | write | Name: | pv |
Value: 1.3.361.151 | |||
| (PID) Process: | (3196) BraveUpdate.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\BraveSoftware\Update\Clients\{B131C935-9BE6-41DA-9599-1F776BEB8019} |
| Operation: | write | Name: | name |
Value: Brave Update | |||
| (PID) Process: | (3196) BraveUpdate.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\BraveSoftware\Update\ClientState\{B131C935-9BE6-41DA-9599-1F776BEB8019} |
| Operation: | write | Name: | pv |
Value: 1.3.361.151 | |||
| (PID) Process: | (3196) BraveUpdate.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\BraveUpdate.exe |
| Operation: | write | Name: | DisableExceptionChainValidation |
Value: 0 | |||
| (PID) Process: | (6036) BraveUpdate.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\BraveSoftware\Update |
| Operation: | delete value | Name: | uid |
Value: | |||
| (PID) Process: | (6036) BraveUpdate.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\BraveSoftware\Update |
| Operation: | delete value | Name: | old-uid |
Value: | |||
| (PID) Process: | (6036) BraveUpdate.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\BraveUpdate.exe |
| Operation: | write | Name: | AppID |
Value: {08F15E98-0442-45D3-82F1-F67495CC51EB} | |||
PID | Process | Filename | Type | |
|---|---|---|---|---|
| 2888 | BraveBrowserSetup-BRV010.exe | C:\Users\admin\AppData\Local\Temp\GUMFFA9.tmp\BraveUpdate.exe | executable | |
MD5:C5B42EDAE98356154E23FC6E5840BDCA | SHA256:E04E5D93883BB2C425CA6DBC2298535D37C16957092F22E372E6FA8CAF7F0638 | |||
| 2888 | BraveBrowserSetup-BRV010.exe | C:\Users\admin\AppData\Local\Temp\GUMFFA9.tmp\psmachine.dll | executable | |
MD5:0AC19FCE899E19D13986172C129CE970 | SHA256:1BF34FD4EFC10711B32C97A9DE295B1681E6C3541E2665F58673B2DBD845EA78 | |||
| 2888 | BraveBrowserSetup-BRV010.exe | C:\Users\admin\AppData\Local\Temp\GUMFFA9.tmp\BraveUpdateComRegisterShellArm64.exe | executable | |
MD5:CEB3D93BF7DDF7521C8B59C175AEA6F4 | SHA256:2C6033C6D60A1D5D2B8F6F6DF3A432402211E3C2AE055AD8C63A6AACD5A687EB | |||
| 2888 | BraveBrowserSetup-BRV010.exe | C:\Users\admin\AppData\Local\Temp\GUMFFA9.tmp\psmachine_64.dll | executable | |
MD5:D532910207F409DB9184111D7E9AF8CC | SHA256:D5E548EA2968E3B094A72EF580590F00C597A2C77580DEE7C4A3439E12FF8A77 | |||
| 2888 | BraveBrowserSetup-BRV010.exe | C:\Users\admin\AppData\Local\Temp\GUMFFA9.tmp\BraveCrashHandler.exe | executable | |
MD5:B1A6B3879E84B44452F276CD34FE5D4E | SHA256:6B1BB548FA6AFCF178E1ABB03D0C64B96274583E4287A8C5A0965A53298C9D57 | |||
| 2888 | BraveBrowserSetup-BRV010.exe | C:\Users\admin\AppData\Local\Temp\GUMFFA9.tmp\BraveUpdateOnDemand.exe | executable | |
MD5:831A5FC9C6679ADB4DB84BC911630D7C | SHA256:E2306B71099D28955F13A32A9600E5E0B04A6A9223AF00E0B0699147F1CD17DB | |||
| 2888 | BraveBrowserSetup-BRV010.exe | C:\Users\admin\AppData\Local\Temp\GUMFFA9.tmp\goopdateres_bn.dll | executable | |
MD5:FB59BA0E25616E576292D596325620E6 | SHA256:C8A6CCACA3A49C2E6F78C435CFD242D73BFA6E31FCB64E2FC34265412A708466 | |||
| 2888 | BraveBrowserSetup-BRV010.exe | C:\Users\admin\AppData\Local\Temp\GUMFFA9.tmp\BraveUpdateComRegisterShell64.exe | executable | |
MD5:E0D94029AAA2C053D8AE4DCF440C0D2D | SHA256:D8365150B8FA73A51C1416CB78A4A08061B3399264443DB5740BA8B3EC79988C | |||
| 2888 | BraveBrowserSetup-BRV010.exe | C:\Users\admin\AppData\Local\Temp\GUMFFA9.tmp\goopdate.dll | executable | |
MD5:AA1CD2E77EE66177BA469D5A6A7679D1 | SHA256:3CD2EF3C433F52956D4034A22FA6468E9B6680319535D227A2CFF9F9A17A5FFA | |||
| 2888 | BraveBrowserSetup-BRV010.exe | C:\Users\admin\AppData\Local\Temp\GUMFFA9.tmp\psuser.dll | executable | |
MD5:6A67300F66D3C103508A5025C8AE8DB2 | SHA256:34C733E5B41EA8E7F1D8BD6AC35AC89320B6101665A23B5186A8A77175A4995C | |||
PID | Process | Method | HTTP Code | IP | URL | CN | Type | Size | Reputation |
|---|---|---|---|---|---|---|---|---|---|
4424 | svchost.exe | GET | 200 | 192.229.221.95:80 | http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D | unknown | — | — | whitelisted |
5368 | SearchApp.exe | GET | 200 | 192.229.221.95:80 | http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTrjrydRyt%2BApF3GSPypfHBxR5XtQQUs9tIpPmhxdiuNkHMEWNpYim8S8YCEAI5PUjXAkJafLQcAAsO18o%3D | unknown | — | — | whitelisted |
3676 | backgroundTaskHost.exe | GET | 200 | 192.229.221.95:80 | http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAn5bsKVVV8kdJ6vHl3O1J0%3D | unknown | — | — | whitelisted |
5368 | SearchApp.exe | GET | 200 | 192.229.221.95:80 | http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEApDqVCbATUviZV57HIIulA%3D | unknown | — | — | whitelisted |
6372 | backgroundTaskHost.exe | GET | 200 | 192.229.221.95:80 | http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAn5bsKVVV8kdJ6vHl3O1J0%3D | unknown | — | — | whitelisted |
4132 | OfficeClickToRun.exe | GET | 200 | 192.229.221.95:80 | http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEA77flR%2B3w%2FxBpruV2lte6A%3D | unknown | — | — | whitelisted |
PID | Process | IP | Domain | ASN | CN | Reputation |
|---|---|---|---|---|---|---|
1428 | svchost.exe | 51.104.136.2:443 | settings-win.data.microsoft.com | MICROSOFT-CORP-MSN-AS-BLOCK | IE | whitelisted |
4 | System | 192.168.100.255:138 | — | — | — | whitelisted |
5368 | SearchApp.exe | 131.253.33.254:443 | a-ring-fallback.msedge.net | MICROSOFT-CORP-MSN-AS-BLOCK | US | unknown |
5368 | SearchApp.exe | 184.86.251.19:443 | www.bing.com | Akamai International B.V. | DE | unknown |
5900 | slui.exe | 20.83.72.98:443 | — | MICROSOFT-CORP-MSN-AS-BLOCK | US | whitelisted |
6012 | MoUsoCoreWorker.exe | 51.104.136.2:443 | settings-win.data.microsoft.com | MICROSOFT-CORP-MSN-AS-BLOCK | IE | whitelisted |
2616 | RUXIMICS.exe | 51.104.136.2:443 | settings-win.data.microsoft.com | MICROSOFT-CORP-MSN-AS-BLOCK | IE | whitelisted |
3952 | svchost.exe | 239.255.255.250:1900 | — | — | — | whitelisted |
1248 | slui.exe | 20.83.72.98:443 | — | MICROSOFT-CORP-MSN-AS-BLOCK | US | whitelisted |
5696 | slui.exe | 20.83.72.98:443 | — | MICROSOFT-CORP-MSN-AS-BLOCK | US | whitelisted |
Domain | IP | Reputation |
|---|---|---|
t-ring-fdv2.msedge.net |
| unknown |
settings-win.data.microsoft.com |
| whitelisted |
a-ring-fallback.msedge.net |
| unknown |
www.bing.com |
| whitelisted |
google.com |
| whitelisted |
updates.bravesoftware.com |
| shared |
dl.brave.com |
| whitelisted |
updates-cdn.bravesoftware.com |
| whitelisted |
fp-afd-nocache-ccp.azureedge.net |
| whitelisted |
login.live.com |
| whitelisted |