File name: | SEStub.exe |
Full analysis: | https://app.any.run/tasks/b51c23b6-4c99-446f-8b7b-a6fcf28d4de3 |
Verdict: | Malicious activity |
Analysis date: | July 06, 2025, 02:28:42 |
OS: | Windows 10 Professional (build: 19044, 64 bit) |
Indicators: | |
MIME: | application/vnd.microsoft.portable-executable |
File info: | PE32 executable (GUI) Intel 80386, for MS Windows, 5 sections |
MD5: | DCEBE71FF2EB3119843C4C7B4B39CD7A |
SHA1: | 327AF7B26F831901184664F26F3D9053C3194C57 |
SHA256: | AEB546EFFFC24CE38224E369B6ECC5F8C57A871429390406C4FA570ADC9CBA17 |
SSDEEP: | 98304:+Y5n6qUThfuHWHZIsN1/qpXYrm+Nk2cUPtZmyyszoq3aC5rPPKBXHoWarec2zaAN:gAd+GebppZpriR |
.exe | | | Win32 Executable MS Visual C++ (generic) (42.2) |
---|---|---|
.exe | | | Win64 Executable (generic) (37.3) |
.dll | | | Win32 Dynamic Link Library (generic) (8.8) |
.exe | | | Win32 Executable (generic) (6) |
.exe | | | Generic Win/DOS Executable (2.7) |
MachineType: | Intel 386 or later, and compatibles |
---|---|
TimeStamp: | 2012:04:18 22:14:56+00:00 |
ImageFileCharacteristics: | Executable, 32-bit |
PEType: | PE32 |
LinkerVersion: | 10 |
CodeSize: | 225280 |
InitializedDataSize: | 83968 |
UninitializedDataSize: | - |
EntryPoint: | 0x17092 |
OSVersion: | 5.1 |
ImageVersion: | - |
SubsystemVersion: | 5.1 |
Subsystem: | Windows GUI |
FileVersionNumber: | 15.5.0.0 |
ProductVersionNumber: | 15.5.0.0 |
FileFlagsMask: | 0x003f |
FileFlags: | (none) |
FileOS: | Windows NT 32-bit |
ObjectFileType: | Executable application |
FileSubtype: | - |
LanguageCode: | English (U.S.) |
CharacterSet: | Unicode |
CompanyName: | Intel(R) Corporation |
FileDescription: | Intel(R) PROSet/Wireless SEStub Setup Program |
FileVersion: | 15, 5, 0, 0 |
InternalName: | SEStub |
LegalCopyright: | Copyright © Intel Corporation 2006-2011 |
OriginalFileName: | SEStub.exe |
ProductName: | Intel(R) PROSet/Wireless |
ProductVersion: | 15, 5, 0, 0 |
PID | CMD | Path | Indicators | Parent process | |||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
2428 | "C:\Users\admin\Desktop\SEStub.exe" | C:\Users\admin\Desktop\SEStub.exe | — | explorer.exe | |||||||||||
User: admin Company: Intel(R) Corporation Integrity Level: MEDIUM Description: Intel(R) PROSet/Wireless SEStub Setup Program Exit code: 3221226540 Version: 15, 5, 0, 0 Modules
| |||||||||||||||
3908 | Msiexec /I "C:\WINDOWS\Installer\_{64FD4757-7186-4F12-9AA8-5EE809CAB282}\Intel Bluetooth.msi" /l*v "C:\Users\admin\AppData\Local\Temp\iProInstLogs\Bluetooth\iProInstLog_20250706022859.txt" REBOOT=ReallySuppress SETUP_SOURCE="C:\Users\admin\AppData\Local\Temp\sef5C68.tmp\" | C:\Windows\SysWOW64\msiexec.exe | Setup.exe | ||||||||||||
User: admin Company: Microsoft Corporation Integrity Level: HIGH Description: Windows® installer Version: 5.0.19041.3636 (WinBuild.160101.0800) Modules
| |||||||||||||||
4132 | "C:\Users\admin\Desktop\SEStub.exe" | C:\Users\admin\Desktop\SEStub.exe | explorer.exe | ||||||||||||
User: admin Company: Intel(R) Corporation Integrity Level: HIGH Description: Intel(R) PROSet/Wireless SEStub Setup Program Version: 15, 5, 0, 0 Modules
| |||||||||||||||
4236 | C:\Windows\syswow64\MsiExec.exe -Embedding DE931F14A1B4E3E99A04F02A094D0DDA C | C:\Windows\SysWOW64\msiexec.exe | — | msiexec.exe | |||||||||||
User: admin Company: Microsoft Corporation Integrity Level: HIGH Description: Windows® installer Version: 5.0.19041.3636 (WinBuild.160101.0800) Modules
| |||||||||||||||
5372 | C:\WINDOWS\system32\msiexec.exe /V | C:\Windows\System32\msiexec.exe | — | services.exe | |||||||||||
User: SYSTEM Company: Microsoft Corporation Integrity Level: SYSTEM Description: Windows® installer Version: 5.0.19041.1 (WinBuild.160101.0800) Modules
| |||||||||||||||
5552 | C:\Users\admin\AppData\Local\Temp\sef5C68.tmp\Setup.exe | C:\Users\admin\AppData\Local\Temp\sef5C68.tmp\Setup.exe | SEStub.exe | ||||||||||||
User: admin Company: Intel® Corporation Integrity Level: HIGH Description: Intel(R) Wireless Bluetooth(R) Version: 1.0.0.3 Modules
| |||||||||||||||
6512 | C:\WINDOWS\System32\slui.exe -Embedding | C:\Windows\System32\slui.exe | svchost.exe | ||||||||||||
User: admin Company: Microsoft Corporation Integrity Level: MEDIUM Description: Windows Activation Client Exit code: 0 Version: 10.0.19041.1 (WinBuild.160101.0800) Modules
|
(PID) Process: | (3908) msiexec.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates |
Operation: | delete value | Name: | 02FAF3E291435468607857694DF5E45B68851868 |
Value: | |||
(PID) Process: | (3908) msiexec.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\02FAF3E291435468607857694DF5E45B68851868 |
Operation: | write | Name: | Blob |
Value: 0400000001000000100000001D3554048578B03F42424DBF20730A3F7E0000000100000008000000000063F58926D701140000000100000014000000ADBD987A34B426F7FAC42654EF03BDE024CB541A0B00000001000000260000005300650063007400690067006F00200028004100640064005400720075007300740029000000090000000100000054000000305206082B0601050507030206082B06010505070303060A2B0601040182370A030406082B0601050507030406082B0601050507030606082B0601050507030706082B0601050507030106082B060105050703080F000000010000001400000009B9105C5BBA24343CA7F341C624E183F6EE7C1B03000000010000001400000002FAF3E291435468607857694DF5E45B6885186819000000010000001000000045ED9BBC5E43D3B9ECD63C060DB78E5C53000000010000004300000030413022060C2B06010401B231010201050130123010060A2B0601040182373C0101030200C0301B060567810C010330123010060A2B0601040182373C0101030200C0620000000100000020000000687FA451382278FFF0C8B11F8D43D576671C6EB2BCEAB413FB83D965D06D2FF21D000000010000001000000006F9583C00A763C23FB9E065A3366D5568000000010000000800000000409120D035D90120000000010000003A040000308204363082031EA003020102020101300D06092A864886F70D0101050500306F310B300906035504061302534531143012060355040A130B416464547275737420414231263024060355040B131D41646454727573742045787465726E616C20545450204E6574776F726B312230200603550403131941646454727573742045787465726E616C20434120526F6F74301E170D3030303533303130343833385A170D3230303533303130343833385A306F310B300906035504061302534531143012060355040A130B416464547275737420414231263024060355040B131D41646454727573742045787465726E616C20545450204E6574776F726B312230200603550403131941646454727573742045787465726E616C20434120526F6F7430820122300D06092A864886F70D01010105000382010F003082010A0282010100B7F71A33E6F200042D39E04E5BED1FBC6C0FCDB5FA23B6CEDE9B113397A4294C7D939FBD4ABC93ED031AE38FCFE56D505AD69729945A80B0497ADB2E95FDB8CABF37382D1E3E9141AD7056C7F04F3FE8329E74CAC89054E9C65F0F789D9A403C0EAC61AA5E148F9E87A16A50DCD79A4EAF05B3A671949C71B350600AC7139D38078602A8E9A869261890AB4CB04F23AB3A4F84D8DFCE9FE1696FBBD742D76B44E4C7ADEE6D415F725A710837B37965A459A09437F7002F0DC29272DAD03872DB14A845C45D2A7DB7B4D6C4EEACCD1344B7C92BDD430025FA61B9696A582311B7A7338F567559F5CD29D746B70A2B65B6D3426F15B2B87BFBEFE95D53D5345A270203010001A381DC3081D9301D0603551D0E04160414ADBD987A34B426F7FAC42654EF03BDE024CB541A300B0603551D0F040403020106300F0603551D130101FF040530030101FF3081990603551D2304819130818E8014ADBD987A34B426F7FAC42654EF03BDE024CB541AA173A471306F310B300906035504061302534531143012060355040A130B416464547275737420414231263024060355040B131D41646454727573742045787465726E616C20545450204E6574776F726B312230200603550403131941646454727573742045787465726E616C20434120526F6F74820101300D06092A864886F70D01010505000382010100B09BE08525C2D623E20F9606929D41989CD9847981D91E5B14072336658FB0D877BBAC416C47608351B0F9323DE7FCF62613C78016A5BF5AFC87CF787989219AE24C070A8635BCF2DE51C4D296B7DC7E4EEE70FD1C39EB0C0251142D8EBD16E0C1DF4675E724ADECF442B48593701067BA9D06354A18D32B7ACC5142A17A63D1E6BBA1C52BC236BE130DE6BD637E797BA7090D40AB6ADD8F8AC3F6F68C1A420551D445F59FA76221681520433C99E77CBD24D8A9911773883F561B313818B4710F9ACDC80E9E8E2E1BE18C9883CB1F31F1444CC604734976600FC7F8BD17806B2EE9CC4C0E5A9A790F200A2ED59E63261E559294D882175A7BD0BCC78F4E8604 | |||
(PID) Process: | (3908) msiexec.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\02FAF3E291435468607857694DF5E45B68851868 |
Operation: | write | Name: | Blob |
Value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| |||
(PID) Process: | (3908) msiexec.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{618736E0-3C3D-11CF-810C-00AA00389B71}\TypeLib |
Operation: | write | Name: | Version |
Value: 1.1 | |||
(PID) Process: | (3908) msiexec.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{618736E0-3C3D-11CF-810C-00AA00389B71}\TypeLib |
Operation: | write | Name: | Version |
Value: 1.1 | |||
(PID) Process: | (3908) msiexec.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Volatile\00\MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{03022430-ABC4-11D0-BDE2-00AA001A1953}\TypeLib |
Operation: | write | Name: | Version |
Value: 1.1 | |||
(PID) Process: | (3908) msiexec.exe | Key: | HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Volatile\00\MACHINE\SOFTWARE\Classes\Interface\{03022430-ABC4-11D0-BDE2-00AA001A1953}\TypeLib |
Operation: | write | Name: | Version |
Value: 1.1 |
PID | Process | Filename | Type | |
---|---|---|---|---|
4132 | SEStub.exe | C:\Users\admin\AppData\Local\Temp\sef5C68.tmp\Intel Bluetooth.msi | — | |
MD5:— | SHA256:— | |||
4132 | SEStub.exe | C:\Users\admin\AppData\Local\Temp\sef5C68.tmp\Lang\setupARA.dll | executable | |
MD5:8A09AD5392087FF2D3197DF959E5EF69 | SHA256:2FC1C3EA4E6E7EE190ADDEA5EFB0FF2090B3C07F776F5A237427DA780D5D55D6 | |||
4132 | SEStub.exe | C:\Users\admin\AppData\Local\Temp\sef5C68.tmp\Lang\setupCHT.dll | executable | |
MD5:FED3D54C583EEB09456B7C27D1D04BB3 | SHA256:FC1010972BF39C0AE97F1F8F6EE108FE10794551E8EF06A602C546663ED3B80E | |||
4132 | SEStub.exe | C:\Users\admin\AppData\Local\Temp\sef5C68.tmp\Lang\setupDAN.dll | executable | |
MD5:4FF0D48BBE55269CD9D97C7118F137F0 | SHA256:7F2D3E4C2DF9F4FEE320A52E3AF6C890AA5DA7282D9C0B76C60BA60E22E4BF43 | |||
4132 | SEStub.exe | C:\Users\admin\AppData\Local\Temp\sef5C68.tmp\Lang\setupELL.dll | executable | |
MD5:74BE611AAB931EC5FE2A2AC9FCC622BF | SHA256:B21A7A2C8839298BBF484207DB0EC2F411C878F294D8ACA10FA947816F639AA9 | |||
4132 | SEStub.exe | C:\Users\admin\AppData\Local\Temp\sef5C68.tmp\Lang\setupCSY.dll | executable | |
MD5:0057CBEB5BAE69CF0E65779DD3AAB0F3 | SHA256:2107E542529B62557F4F645706374A426C0693D87865E79B008F62B0EA43A523 | |||
4132 | SEStub.exe | C:\Users\admin\AppData\Local\Temp\sef5C68.tmp\Lang\setupCHS.dll | executable | |
MD5:F9D4E23CA73166AC22F022441DAD4A66 | SHA256:1CF485C258BCDD58223CFC29CA5053522202EDCAF5D80CC1F81E2D363AED147B | |||
4132 | SEStub.exe | C:\Users\admin\AppData\Local\Temp\sef5C68.tmp\Lang\setupITA.dll | executable | |
MD5:A6968A30D646FDB28E2D70BA3D551D7E | SHA256:90470900384F71E906D22DA0D487608AFE2D30CCDAE1AD9ABE73686DE21E1408 | |||
4132 | SEStub.exe | C:\Users\admin\AppData\Local\Temp\sef5C68.tmp\Lang\setupDEU.dll | executable | |
MD5:5A6A4C0E34F373629C9C90C83AB3A20B | SHA256:C53ADB14B46AF4B57B72D365B2A7B885DCFFB77C8E5C691943FE2E30D0CF3FC7 | |||
5552 | Setup.exe | C:\Windows\Installer\_{64FD4757-7186-4F12-9AA8-5EE809CAB282}\Intel Bluetooth.msi | — | |
MD5:— | SHA256:— |
PID | Process | Method | HTTP Code | IP | URL | CN | Type | Size | Reputation |
---|---|---|---|---|---|---|---|---|---|
3908 | msiexec.exe | GET | 200 | 104.18.38.233:80 | http://ocsp.trust-provider.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBR8sWZUnKvbRO5iJhat9GV793rVlAQUrb2YejS0Jvf6xCZU7wO94CTLVBoCEHkXSqkUFzb%2BFafKnyz%2FRYg%3D | unknown | — | — | whitelisted |
3908 | msiexec.exe | GET | 404 | 172.64.149.23:80 | http://crl.trust-provider.com/AddTrustExternalCARoot.crl | unknown | — | — | whitelisted |
3908 | msiexec.exe | GET | 301 | 23.212.208.238:80 | http://www.intel.com/repository/CRL/Intel%20External%20Basic%20Policy%20CA(1).crl | unknown | — | — | whitelisted |
3908 | msiexec.exe | GET | 200 | 104.18.38.233:80 | http://ocsp.trust-provider.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBR8sWZUnKvbRO5iJhat9GV793rVlAQUrb2YejS0Jvf6xCZU7wO94CTLVBoCEHkXSqkUFzb%2BFafKnyz%2FRYg%3D | unknown | — | — | whitelisted |
3908 | msiexec.exe | GET | 403 | 2.16.168.106:80 | http://certificates.intel.com/repository/CRL/Intel%20External%20Basic%20Policy%20CA(1).crl | unknown | — | — | whitelisted |
3908 | msiexec.exe | GET | 301 | 23.212.208.238:80 | http://www.intel.com/repository/CRL/Intel%20External%20Basic%20Issuing%20CA%203B(2).crl | unknown | — | — | whitelisted |
3908 | msiexec.exe | GET | 403 | 2.16.168.106:80 | http://certificates.intel.com/repository/CRL/Intel%20External%20Basic%20Policy%20CA(1).crl | unknown | — | — | whitelisted |
3908 | msiexec.exe | GET | 403 | 2.16.168.106:80 | http://certificates.intel.com/repository/CRL/Intel%20External%20Basic%20Issuing%20CA%203B(2).crl | unknown | — | — | whitelisted |
3908 | msiexec.exe | GET | 403 | 2.16.168.106:80 | http://certificates.intel.com/repository/CRL/Intel%20External%20Basic%20Issuing%20CA%203B(2).crl | unknown | — | — | whitelisted |
— | — | POST | 500 | 40.91.76.224:443 | https://activation-v2.sls.microsoft.com/SLActivateProduct/SLActivateProduct.asmx?configextension=Retail | unknown | xml | 512 b | whitelisted |
PID | Process | IP | Domain | ASN | CN | Reputation |
---|---|---|---|---|---|---|
— | — | 20.73.194.208:443 | settings-win.data.microsoft.com | MICROSOFT-CORP-MSN-AS-BLOCK | NL | whitelisted |
4 | System | 192.168.100.255:137 | — | — | — | whitelisted |
4 | System | 192.168.100.255:138 | — | — | — | whitelisted |
3908 | msiexec.exe | 104.18.38.233:80 | ocsp.trust-provider.com | CLOUDFLARENET | — | whitelisted |
3908 | msiexec.exe | 172.64.149.23:80 | ocsp.trust-provider.com | CLOUDFLARENET | US | whitelisted |
3908 | msiexec.exe | 23.212.208.238:80 | www.intel.com | AKAMAI-AS | AU | whitelisted |
3908 | msiexec.exe | 2.16.168.106:80 | certificates.intel.com | Akamai International B.V. | RU | whitelisted |
6648 | slui.exe | 40.91.76.224:443 | activation-v2.sls.microsoft.com | MICROSOFT-CORP-MSN-AS-BLOCK | US | whitelisted |
2940 | svchost.exe | 2.23.197.184:80 | x1.c.lencr.org | CW Vodafone Group PLC | GB | whitelisted |
6512 | slui.exe | 40.91.76.224:443 | activation-v2.sls.microsoft.com | MICROSOFT-CORP-MSN-AS-BLOCK | US | whitelisted |
Domain | IP | Reputation |
---|---|---|
settings-win.data.microsoft.com |
| whitelisted |
google.com |
| whitelisted |
ocsp.trust-provider.com |
| whitelisted |
crl.trust-provider.com |
| whitelisted |
www.intel.com |
| whitelisted |
certificates.intel.com |
| whitelisted |
activation-v2.sls.microsoft.com |
| whitelisted |
x1.c.lencr.org |
| whitelisted |
self.events.data.microsoft.com |
| whitelisted |
Process | Message |
---|---|
Setup.exe | SetupInfo::GetOSLanguageIDProInst(): langID_OS = 0409, langID_Res = 0409, langID = 0409
|
Setup.exe | Setup - InitInstance starting |
Setup.exe | ProInst - LangId = 0409, ENU [lang\setupENU.dll]
|
Setup.exe | SetupInfo::GetOSLanguageIDProInst(): langID_OS = 0409, langID_Res = 0409, langID = 0409
|
Setup.exe | ParseXMLData: Missing product name, key, or prefix! |
Setup.exe | SetupInfo::QuerySupportedOS: Queried database C:\Users\admin\AppData\Local\Temp\sef5C68.tmp\Intel Bluetooth.msi for supported OS Windows7;Windows8;Windows8.1
|
Setup.exe | Setup - progress dialog initialization Thread and timer started |
Setup.exe | Setup - Timer tick and file size [0] |
Setup.exe | Setup - GetMSICurrentFileSize fails! |
Setup.exe | Setup - GetMSICurrent directory[C:\WINDOWS\Installer\Intel Bluetooth.msi]! |