| File name: | clown.png |
| Full analysis: | https://app.any.run/tasks/bc16eaa0-39f3-4bd7-935f-afa26d603c4a |
| Verdict: | No threats detected |
| Analysis date: | May 10, 2020, 12:07:05 |
| OS: | Windows 7 Professional Service Pack 1 (build: 7601, 32 bit) |
| MIME: | image/png |
| File info: | PNG image data, 28 x 28, 8-bit/color RGBA, non-interlaced |
| MD5: | 210E15BB1AECDB8377AED336DB7964B5 |
| SHA1: | 2862C3050FFFDCA1593D24B33AA47012E52A2AC8 |
| SHA256: | 82A3B6D147339E41E86F3F1D893D9C3B129BFF1B5DDD97915C497297BFEC7AA0 |
| SSDEEP: | 48:ghIKnNJJx6nF0V7eoqIWaAnVfrwp10Oky4oaFbfgRC8V:iJx/V7nqIWaAnd4xky4oaJfgRjV |
| .png | | | Portable Network Graphics (100) |
|---|
| ImageWidth: | 28 |
|---|---|
| ImageHeight: | 28 |
| BitDepth: | 8 |
| ColorType: | RGB with Alpha |
| Compression: | Deflate/Inflate |
| Filter: | Adaptive |
| Interlace: | Noninterlaced |
| SRGBRendering: | Relative Colorimetric |
| ImageSize: | 28x28 |
|---|---|
| Megapixels: | 0.000784 |
PID | CMD | Path | Indicators | Parent process | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 2372 | "C:\Windows\System32\rundll32.exe" "C:\Program Files\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen C:\Users\admin\AppData\Local\Temp\clown.png | C:\Windows\System32\rundll32.exe | — | explorer.exe | |||||||||||
User: admin Company: Microsoft Corporation Integrity Level: MEDIUM Description: Windows host process (Rundll32) Exit code: 0 Version: 6.1.7600.16385 (win7_rtm.090713-1255) Modules
| |||||||||||||||
| (PID) Process: | (2372) rundll32.exe | Key: | HKEY_CURRENT_USER\Software\Microsoft\Direct3D\MostRecentApplication |
| Operation: | write | Name: | Name |
Value: rundll32.exe | |||