URL:

mouse-jiggler.en.download.it

Full analysis: https://app.any.run/tasks/70f571e8-ca36-402a-bcb6-d3efb14211b5
Verdict: Malicious activity
Threats:

Stealers are a group of malicious software that are intended for gaining unauthorized access to users’ information and transferring it to the attacker. The stealer malware category includes various types of programs that focus on their particular kind of data, including files, passwords, and cryptocurrency. Stealers are capable of spying on their targets by recording their keystrokes and taking screenshots. This type of malware is primarily distributed as part of phishing campaigns.

Analysis date: July 02, 2025, 08:19:57
OS: Windows 10 Professional (build: 19044, 64 bit)
Tags:
stealer
opera
tool
Indicators:
MD5:

FC7B6204C234016CC6DD310678BEF3CB

SHA1:

20B5AB63A114E484600DB49F829EBC8F67E42FC9

SHA256:

B22AABB400DD0E8D322EE4C8A4864807755C27DB25E3AA71895F17778C35FF6A

SSDEEP:

3:3QW9HIBzKWQ:T9oBzlQ

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    • Steals credentials from Web Browsers

      • setup.exe (PID: 2428)
      • setup.exe (PID: 3952)
      • setup.exe (PID: 2212)
      • setup.exe (PID: 4960)
      • assistant_installer.exe (PID: 8036)
      • assistant_installer.exe (PID: 6260)
      • setup.exe (PID: 6896)
      • setup.exe (PID: 5780)
      • installer.exe (PID: 2664)
      • installer.exe (PID: 5012)
      • assistant_installer.exe (PID: 7844)
      • assistant_installer.exe (PID: 7996)
      • assistant_installer.exe (PID: 7948)
      • assistant_installer.exe (PID: 5400)
      • opera_crashreporter.exe (PID: 7744)
      • opera.exe (PID: 4836)
      • opera_crashreporter.exe (PID: 3888)
      • opera.exe (PID: 7116)
      • opera_crashreporter.exe (PID: 3288)
      • opera.exe (PID: 4520)
      • opera.exe (PID: 3724)
      • opera_crashreporter.exe (PID: 5900)
      • opera.exe (PID: 4816)
      • opera_crashreporter.exe (PID: 1948)
      • browser_assistant.exe (PID: 7172)
      • browser_assistant.exe (PID: 6492)
      • opera_crashreporter.exe (PID: 4104)
      • opera_crashreporter.exe (PID: 7852)
      • opera.exe (PID: 7784)
      • opera.exe (PID: 7892)
      • opera.exe (PID: 8040)
      • opera_autoupdate.exe (PID: 8908)
      • opera_autoupdate.exe (PID: 7832)
      • opera_autoupdate.exe (PID: 420)
      • opera_autoupdate.exe (PID: 8916)
      • installer.exe (PID: 7884)
      • installer.exe (PID: 7704)
      • opera_autoupdate.exe (PID: 8848)
      • opera_autoupdate.exe (PID: 8532)
    • Actions looks like stealing of personal data

      • setup.exe (PID: 2428)
      • opera_crashreporter.exe (PID: 3888)
      • opera_crashreporter.exe (PID: 7744)
      • opera.exe (PID: 7116)
      • opera_crashreporter.exe (PID: 3288)
      • browser_assistant.exe (PID: 6492)
      • opera.exe (PID: 7892)
      • opera.exe (PID: 8040)
      • opera_autoupdate.exe (PID: 8908)
      • opera_autoupdate.exe (PID: 7832)
      • opera_autoupdate.exe (PID: 8848)
      • opera_autoupdate.exe (PID: 8532)
    • Changes the autorun value in the registry

      • assistant_installer.exe (PID: 7844)
      • opera.exe (PID: 7116)
      • opera.exe (PID: 7892)
  • SUSPICIOUS

    • Executable content was dropped or overwritten

      • OperaSetup.exe (PID: 1164)
      • setup.exe (PID: 3952)
      • setup.exe (PID: 2212)
      • setup.exe (PID: 7992)
      • setup.exe (PID: 4960)
      • setup.exe (PID: 2428)
      • Assistant_118.0.5461.41_Setup.exe_sfx.exe (PID: 7472)
      • OperaSetup (1).exe (PID: 4572)
      • setup.exe (PID: 6896)
      • setup.exe (PID: 7852)
      • setup.exe (PID: 5780)
      • installer.exe (PID: 2664)
      • installer.exe (PID: 5012)
      • assistant_installer.exe (PID: 7844)
      • installer.exe (PID: 7704)
      • installer.exe (PID: 7884)
      • opera_autoupdate.exe (PID: 8916)
      • installer.exe (PID: 8364)
    • Reads security settings of Internet Explorer

      • setup.exe (PID: 2428)
      • setup.exe (PID: 5780)
      • installer.exe (PID: 5012)
      • browser_assistant.exe (PID: 6492)
    • Application launched itself

      • setup.exe (PID: 2428)
      • setup.exe (PID: 4960)
      • assistant_installer.exe (PID: 6260)
      • setup.exe (PID: 5780)
      • installer.exe (PID: 5012)
      • assistant_installer.exe (PID: 7844)
      • assistant_installer.exe (PID: 7948)
      • browser_assistant.exe (PID: 6492)
      • opera.exe (PID: 7116)
      • opera.exe (PID: 7892)
      • opera_autoupdate.exe (PID: 8908)
      • opera_autoupdate.exe (PID: 8916)
      • installer.exe (PID: 7704)
      • opera_autoupdate.exe (PID: 8532)
    • Starts itself from another location

      • setup.exe (PID: 2428)
      • setup.exe (PID: 5780)
    • Process drops legitimate windows executable

      • Assistant_118.0.5461.41_Setup.exe_sfx.exe (PID: 7472)
      • assistant_installer.exe (PID: 7844)
    • There is functionality for taking screenshot (YARA)

      • setup.exe (PID: 2428)
    • Searches for installed software

      • installer.exe (PID: 5012)
      • browser_assistant.exe (PID: 6492)
    • Creates a software uninstall entry

      • installer.exe (PID: 5012)
    • Reads the date of Windows installation

      • installer.exe (PID: 5012)
      • opera.exe (PID: 7892)
    • Reads Mozilla Firefox installation path

      • opera.exe (PID: 7892)
    • The process executes via Task Scheduler

      • opera_autoupdate.exe (PID: 8916)
    • The process checks if it is being run in the virtual environment

      • opera.exe (PID: 7892)
  • INFO

    • Application launched itself

      • msedge.exe (PID: 3788)
    • Reads Environment values

      • identity_helper.exe (PID: 7892)
    • Checks supported languages

      • identity_helper.exe (PID: 7892)
      • OperaSetup.exe (PID: 1164)
      • setup.exe (PID: 2428)
      • setup.exe (PID: 3952)
      • setup.exe (PID: 7992)
      • setup.exe (PID: 2212)
      • setup.exe (PID: 4960)
      • Assistant_118.0.5461.41_Setup.exe_sfx.exe (PID: 7472)
      • OperaSetup (1).exe (PID: 4572)
      • assistant_installer.exe (PID: 6260)
      • assistant_installer.exe (PID: 8036)
      • setup.exe (PID: 6896)
      • setup.exe (PID: 5780)
      • setup.exe (PID: 7852)
      • installer.exe (PID: 5012)
      • installer.exe (PID: 2664)
      • assistant_installer.exe (PID: 7844)
      • assistant_installer.exe (PID: 7996)
      • assistant_installer.exe (PID: 7948)
      • assistant_installer.exe (PID: 5400)
      • browser_assistant.exe (PID: 6492)
      • opera.exe (PID: 7116)
      • opera.exe (PID: 4836)
      • opera_crashreporter.exe (PID: 7744)
      • opera_crashreporter.exe (PID: 3888)
      • browser_assistant.exe (PID: 7172)
      • opera.exe (PID: 4520)
      • opera.exe (PID: 6152)
      • opera_crashreporter.exe (PID: 3288)
      • opera.exe (PID: 6780)
      • opera.exe (PID: 3724)
      • opera.exe (PID: 5248)
      • opera_crashreporter.exe (PID: 5900)
      • opera.exe (PID: 4816)
      • opera_crashreporter.exe (PID: 1948)
      • opera_crashreporter.exe (PID: 4104)
      • opera.exe (PID: 7784)
      • opera_crashreporter.exe (PID: 7852)
      • opera.exe (PID: 8040)
      • opera.exe (PID: 7892)
      • opera.exe (PID: 7236)
      • opera.exe (PID: 7708)
      • opera.exe (PID: 5504)
      • opera.exe (PID: 7944)
      • opera.exe (PID: 4768)
      • opera.exe (PID: 7116)
      • opera.exe (PID: 7000)
      • opera.exe (PID: 6536)
      • opera.exe (PID: 3564)
      • opera_gx_splash.exe (PID: 7480)
      • opera.exe (PID: 8856)
      • opera.exe (PID: 8872)
      • opera.exe (PID: 7628)
      • opera.exe (PID: 9004)
      • opera.exe (PID: 9044)
      • opera.exe (PID: 7852)
      • opera.exe (PID: 2996)
      • opera.exe (PID: 2192)
      • opera.exe (PID: 8280)
      • opera.exe (PID: 3952)
      • opera.exe (PID: 728)
      • opera.exe (PID: 3388)
      • opera.exe (PID: 8848)
      • opera.exe (PID: 8072)
      • opera.exe (PID: 7832)
      • opera.exe (PID: 6404)
      • opera.exe (PID: 2432)
      • opera.exe (PID: 4748)
      • opera.exe (PID: 7848)
      • opera.exe (PID: 2348)
      • opera.exe (PID: 6340)
      • opera.exe (PID: 2404)
      • opera.exe (PID: 6552)
      • opera.exe (PID: 7884)
      • opera.exe (PID: 5020)
      • opera.exe (PID: 868)
      • opera.exe (PID: 3876)
      • opera.exe (PID: 8460)
      • opera_autoupdate.exe (PID: 7832)
      • opera.exe (PID: 2228)
      • opera.exe (PID: 8432)
      • opera.exe (PID: 6380)
      • opera_autoupdate.exe (PID: 8908)
      • opera_autoupdate.exe (PID: 8916)
      • opera_autoupdate.exe (PID: 420)
      • installer.exe (PID: 7884)
      • opera.exe (PID: 8664)
      • installer.exe (PID: 7704)
      • opera.exe (PID: 1268)
      • opera.exe (PID: 8340)
      • opera.exe (PID: 7696)
      • opera.exe (PID: 6348)
      • opera.exe (PID: 8868)
      • opera.exe (PID: 4960)
      • opera.exe (PID: 6540)
      • opera.exe (PID: 8256)
      • opera.exe (PID: 3952)
      • opera.exe (PID: 3900)
      • opera.exe (PID: 4044)
      • opera.exe (PID: 2220)
      • opera.exe (PID: 4100)
      • opera.exe (PID: 7528)
      • opera.exe (PID: 8880)
      • opera.exe (PID: 2116)
      • opera.exe (PID: 8532)
      • installer.exe (PID: 8364)
      • opera_autoupdate.exe (PID: 8848)
      • opera_autoupdate.exe (PID: 8532)
    • Reads the computer name

      • identity_helper.exe (PID: 7892)
      • setup.exe (PID: 2428)
      • setup.exe (PID: 4960)
      • assistant_installer.exe (PID: 6260)
      • setup.exe (PID: 5780)
      • assistant_installer.exe (PID: 7844)
      • installer.exe (PID: 5012)
      • assistant_installer.exe (PID: 7948)
      • opera.exe (PID: 4836)
      • browser_assistant.exe (PID: 6492)
      • opera.exe (PID: 7116)
      • opera.exe (PID: 4520)
      • opera.exe (PID: 5248)
      • opera.exe (PID: 6152)
      • opera.exe (PID: 4816)
      • opera.exe (PID: 7784)
      • opera.exe (PID: 7892)
      • opera.exe (PID: 3724)
      • opera.exe (PID: 7944)
      • opera.exe (PID: 8040)
      • opera_gx_splash.exe (PID: 7480)
      • opera.exe (PID: 7848)
      • opera_autoupdate.exe (PID: 8908)
      • opera_autoupdate.exe (PID: 8916)
      • installer.exe (PID: 7704)
      • opera_autoupdate.exe (PID: 8532)
    • The sample compiled with english language support

      • OperaSetup.exe (PID: 1164)
      • setup.exe (PID: 3952)
      • setup.exe (PID: 7992)
      • setup.exe (PID: 4960)
      • setup.exe (PID: 2212)
      • setup.exe (PID: 2428)
      • Assistant_118.0.5461.41_Setup.exe_sfx.exe (PID: 7472)
      • OperaSetup (1).exe (PID: 4572)
      • setup.exe (PID: 5780)
      • setup.exe (PID: 7852)
      • setup.exe (PID: 6896)
      • installer.exe (PID: 2664)
      • installer.exe (PID: 5012)
      • assistant_installer.exe (PID: 7844)
      • installer.exe (PID: 7704)
      • installer.exe (PID: 7884)
      • installer.exe (PID: 8364)
    • Creates files or folders in the user directory

      • setup.exe (PID: 2428)
      • setup.exe (PID: 3952)
      • setup.exe (PID: 4960)
      • installer.exe (PID: 5012)
      • assistant_installer.exe (PID: 7844)
      • opera.exe (PID: 7116)
      • opera.exe (PID: 7892)
      • opera.exe (PID: 8040)
      • opera_autoupdate.exe (PID: 7832)
      • opera_autoupdate.exe (PID: 8908)
      • browser_assistant.exe (PID: 6492)
      • opera_autoupdate.exe (PID: 8916)
    • Checks proxy server information

      • setup.exe (PID: 2428)
      • setup.exe (PID: 5780)
      • opera.exe (PID: 7116)
      • opera.exe (PID: 7892)
      • browser_assistant.exe (PID: 6492)
      • opera_autoupdate.exe (PID: 8908)
      • opera_autoupdate.exe (PID: 8916)
      • opera_autoupdate.exe (PID: 8532)
    • Create files in a temporary directory

      • OperaSetup.exe (PID: 1164)
      • setup.exe (PID: 2428)
      • setup.exe (PID: 3952)
      • setup.exe (PID: 7992)
      • setup.exe (PID: 4960)
      • setup.exe (PID: 2212)
      • Assistant_118.0.5461.41_Setup.exe_sfx.exe (PID: 7472)
      • setup.exe (PID: 5780)
      • OperaSetup (1).exe (PID: 4572)
      • setup.exe (PID: 6896)
      • installer.exe (PID: 5012)
      • setup.exe (PID: 7852)
      • installer.exe (PID: 2664)
      • opera.exe (PID: 7116)
      • opera.exe (PID: 7892)
      • installer.exe (PID: 7704)
      • installer.exe (PID: 7884)
      • opera_autoupdate.exe (PID: 8916)
      • installer.exe (PID: 8364)
    • Executable content was dropped or overwritten

      • msedge.exe (PID: 3788)
    • Reads the software policy settings

      • setup.exe (PID: 2428)
      • installer.exe (PID: 5012)
      • browser_assistant.exe (PID: 6492)
    • Reads the machine GUID from the registry

      • setup.exe (PID: 2428)
      • installer.exe (PID: 5012)
      • opera.exe (PID: 7116)
      • opera.exe (PID: 7892)
      • browser_assistant.exe (PID: 6492)
      • opera_autoupdate.exe (PID: 7832)
      • opera_autoupdate.exe (PID: 8908)
      • opera_autoupdate.exe (PID: 8916)
      • opera_autoupdate.exe (PID: 420)
      • opera_autoupdate.exe (PID: 8532)
      • opera_autoupdate.exe (PID: 8848)
    • Launching a file from a Registry key

      • assistant_installer.exe (PID: 7844)
      • opera.exe (PID: 7116)
      • opera.exe (PID: 7892)
    • Manual execution by a user

      • assistant_installer.exe (PID: 7948)
    • OPERA mutex has been found

      • opera.exe (PID: 7116)
      • opera.exe (PID: 7892)
      • browser_assistant.exe (PID: 6492)
      • opera_autoupdate.exe (PID: 8908)
      • opera_autoupdate.exe (PID: 8916)
      • opera_autoupdate.exe (PID: 8532)
    • Process checks computer location settings

      • opera.exe (PID: 7116)
      • opera.exe (PID: 7892)
      • opera.exe (PID: 4768)
      • opera.exe (PID: 8848)
      • opera.exe (PID: 8856)
      • opera.exe (PID: 8872)
      • opera.exe (PID: 9004)
      • opera.exe (PID: 7852)
      • opera.exe (PID: 8280)
      • opera.exe (PID: 9044)
      • opera.exe (PID: 6380)
      • opera.exe (PID: 8664)
      • opera.exe (PID: 1268)
      • opera.exe (PID: 8868)
      • opera.exe (PID: 3900)
      • opera.exe (PID: 2220)
      • opera.exe (PID: 4100)
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
291
Monitored processes
152
Malicious processes
27
Suspicious processes
20

Behavior graph

Click at the process to see the details
start iexplore.exe no specs msedge.exe msedge.exe no specs msedge.exe no specs msedge.exe msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs identity_helper.exe no specs identity_helper.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs msedge.exe no specs operasetup.exe setup.exe setup.exe setup.exe msedge.exe no specs msedge.exe no specs msedge.exe no specs setup.exe setup.exe msedge.exe no specs msedge.exe no specs assistant_118.0.5461.41_setup.exe_sfx.exe msedge.exe no specs msedge.exe no specs assistant_installer.exe assistant_installer.exe operasetup (1).exe setup.exe setup.exe setup.exe slui.exe no specs installer.exe installer.exe assistant_installer.exe assistant_installer.exe assistant_installer.exe assistant_installer.exe browser_assistant.exe opera.exe opera.exe opera_crashreporter.exe opera_crashreporter.exe browser_assistant.exe opera.exe opera.exe no specs opera.exe no specs opera_crashreporter.exe opera.exe no specs opera.exe opera_crashreporter.exe opera.exe opera.exe opera_crashreporter.exe opera_crashreporter.exe opera.exe opera_crashreporter.exe opera.exe no specs opera.exe opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera_gx_splash.exe no specs unsecapp.exe no specs msedge.exe no specs msedge.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera_autoupdate.exe opera_autoupdate.exe opera.exe no specs opera.exe no specs opera_autoupdate.exe installer.exe opera_autoupdate.exe installer.exe opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs opera.exe no specs msedge.exe no specs installer.exe opera_autoupdate.exe opera_autoupdate.exe msedge.exe no specs svchost.exe

Process information

PID
CMD
Path
Indicators
Parent process
420C:\Users\admin\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe --type=crashpad-handler /prefetch:4 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Crash Reports" "--crash-count-file=C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\crash_count.txt" --url=https://crashstats-collector-2.opera.com/ --annotation=channel=Stable --annotation=plat=Win64 --annotation=prod=OperaDesktop --annotation=ver=120.0.5543.38 --initial-client-data=0x234,0x238,0x23c,0x210,0x240,0x7ff6235bc888,0x7ff6235bc894,0x7ff6235bc8a0C:\Users\admin\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe
opera_autoupdate.exe
User:
admin
Company:
Opera Software
Integrity Level:
MEDIUM
Description:
Opera auto-updater
Exit code:
0
Version:
120.0.5543.38
Modules
Images
c:\users\admin\appdata\local\programs\opera\autoupdate\opera_autoupdate.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\bcrypt.dll
c:\windows\system32\oleaut32.dll
684"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --string-annotations --disable-gpu-compositing --video-capture-use-gpu-memory-buffer --lang=en-US --js-flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=20 --always-read-main-dll --field-trial-handle=7508,i,6777522739310345435,7484961353378060925,262144 --variations-seed-version --mojo-platform-channel-handle=3816 /prefetch:1C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
133.0.3065.92
Modules
Images
c:\program files (x86)\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files (x86)\microsoft\edge\application\133.0.3065.92\msedge_elf.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msvcp_win.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\combase.dll
c:\windows\system32\rpcrt4.dll
728"C:\Users\admin\AppData\Local\Programs\Opera\opera.exe" --type=utility --utility-sub-type=data_decoder.mojom.DataDecoderService --lang=en-US --service-sandbox-type=service --enable-quic --no-pre-read-main-dll --with-feature:address-bar-dropdown-autocompleted-domains=on --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=off --with-feature:ai-tab-management=on --with-feature:ai-writing-mode-in-context-menu=on --with-feature:amp-requests-stats=on --with-feature:aria-in-tab-view=on --with-feature:bluesky-in-sidebar=on --with-feature:cashback-assistant=off --with-feature:certificate-transparency-enforcement=on --with-feature:continue-on-booking=on --with-feature:continue-on-shopping-via-amp=off --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-amazon-us-associates=off --with-feature:continue-shopping-explore=off --with-feature:continue-shopping-structured-partners=on --with-feature:discord-in-sidebar=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:in-house-autocomplete-send=on --with-feature:installer-experiment-test=off --with-feature:keywords-from-backend=on --with-feature:native-crypto-wallet=on --with-feature:opera-startpage-special=on --with-feature:realtime-impressions-reporting=on --with-feature:run-at-startup-default=on --with-feature:sd-suggestions-external=on --with-feature:sitecheck-age=on --with-feature:slack-in-sidebar=on --with-feature:specific-keywords=on --with-feature:startpage-opening-animation=off --with-feature:startpage-sync-banner=on --with-feature:suggestion-redirect-handler=on --with-feature:translator=on --with-feature:vpn-pro-v4-support=on --field-trial-handle=1948,i,1221398792964388563,14880790438709158088,262144 --enable-features=CertificateTransparencyAskBeforeEnabling,UpdatableKeyPins --disable-features=AutoPictureInPictureForVideoPlayback,AutoPictureInPictureVideoHeuristics,MediaSessionEnterPictureInPicture,PlatformSoftwareH264EncoderInGpu --variations-seed-version --mojo-platform-channel-handle=7068 /prefetch:8C:\Users\admin\AppData\Local\Programs\Opera\opera.exeopera.exe
User:
admin
Company:
Opera Software
Integrity Level:
LOW
Description:
Opera Internet Browser
Exit code:
0
Version:
120.0.5543.38
Modules
Images
c:\users\admin\appdata\local\programs\opera\opera.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\users\admin\appdata\local\programs\opera\120.0.5543.38\opera_elf.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\winmm.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shcore.dll
c:\windows\system32\combase.dll
768"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=edge_collections.mojom.CollectionsDataManager --lang=en-US --service-sandbox-type=collections --disable-quic --string-annotations --always-read-main-dll --field-trial-handle=7524,i,6777522739310345435,7484961353378060925,262144 --variations-seed-version --mojo-platform-channel-handle=7620 /prefetch:8C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
133.0.3065.92
Modules
Images
c:\program files (x86)\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files (x86)\microsoft\edge\application\133.0.3065.92\msedge_elf.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msvcp_win.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\combase.dll
c:\windows\system32\rpcrt4.dll
868"C:\Users\admin\AppData\Local\Programs\Opera\opera.exe" --type=utility --utility-sub-type=data_decoder.mojom.DataDecoderService --lang=en-US --service-sandbox-type=service --enable-quic --no-pre-read-main-dll --with-feature:address-bar-dropdown-autocompleted-domains=on --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=off --with-feature:ai-tab-management=on --with-feature:ai-writing-mode-in-context-menu=on --with-feature:amp-requests-stats=on --with-feature:aria-in-tab-view=on --with-feature:bluesky-in-sidebar=on --with-feature:cashback-assistant=off --with-feature:certificate-transparency-enforcement=on --with-feature:continue-on-booking=on --with-feature:continue-on-shopping-via-amp=off --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-amazon-us-associates=off --with-feature:continue-shopping-explore=off --with-feature:continue-shopping-structured-partners=on --with-feature:discord-in-sidebar=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:in-house-autocomplete-send=on --with-feature:installer-experiment-test=off --with-feature:keywords-from-backend=on --with-feature:native-crypto-wallet=on --with-feature:opera-startpage-special=on --with-feature:realtime-impressions-reporting=on --with-feature:run-at-startup-default=on --with-feature:sd-suggestions-external=on --with-feature:sitecheck-age=on --with-feature:slack-in-sidebar=on --with-feature:specific-keywords=on --with-feature:startpage-opening-animation=off --with-feature:startpage-sync-banner=on --with-feature:suggestion-redirect-handler=on --with-feature:translator=on --with-feature:vpn-pro-v4-support=on --field-trial-handle=1948,i,1221398792964388563,14880790438709158088,262144 --enable-features=CertificateTransparencyAskBeforeEnabling,UpdatableKeyPins --disable-features=AutoPictureInPictureForVideoPlayback,AutoPictureInPictureVideoHeuristics,MediaSessionEnterPictureInPicture,PlatformSoftwareH264EncoderInGpu --variations-seed-version --mojo-platform-channel-handle=6304 /prefetch:8C:\Users\admin\AppData\Local\Programs\Opera\opera.exeopera.exe
User:
admin
Company:
Opera Software
Integrity Level:
LOW
Description:
Opera Internet Browser
Exit code:
0
Version:
120.0.5543.38
Modules
Images
c:\users\admin\appdata\local\programs\opera\opera.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\users\admin\appdata\local\programs\opera\120.0.5543.38\opera_elf.dll
c:\windows\system32\bcryptprimitives.dll
c:\windows\system32\winmm.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shcore.dll
c:\windows\system32\combase.dll
888"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --disable-quic --string-annotations --always-read-main-dll --field-trial-handle=2232,i,6777522739310345435,7484961353378060925,262144 --variations-seed-version --mojo-platform-channel-handle=2688 /prefetch:3C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
msedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Microsoft Edge
Version:
133.0.3065.92
Modules
Images
c:\program files (x86)\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files (x86)\microsoft\edge\application\133.0.3065.92\msedge_elf.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msvcp_win.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\combase.dll
c:\windows\system32\rpcrt4.dll
952"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=renderer --string-annotations --extension-process --renderer-sub-type=extension --video-capture-use-gpu-memory-buffer --lang=en-US --js-flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=7 --always-read-main-dll --field-trial-handle=4288,i,6777522739310345435,7484961353378060925,262144 --variations-seed-version --mojo-platform-channel-handle=4304 /prefetch:2C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Exit code:
0
Version:
133.0.3065.92
Modules
Images
c:\program files (x86)\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files (x86)\microsoft\edge\application\133.0.3065.92\msedge_elf.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msvcp_win.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\combase.dll
c:\windows\system32\rpcrt4.dll
984"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=gpu-process --string-annotations --gpu-preferences=UAAAAAAAAADgAAAEAAAAAAAAAAAAAAAAAABgAAEAAAAAAAAAAAAAAAAAAAACAAAAAAAAAAAAAAAAAAAAAAAAABAAAAAAAAAAEAAAAAAAAAAIAAAAAAAAAAgAAAAAAAAA --always-read-main-dll --field-trial-handle=2656,i,6777522739310345435,7484961353378060925,262144 --variations-seed-version --mojo-platform-channel-handle=2576 /prefetch:2C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Version:
133.0.3065.92
Modules
Images
c:\program files (x86)\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files (x86)\microsoft\edge\application\133.0.3065.92\msedge_elf.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msvcp_win.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\combase.dll
c:\windows\system32\rpcrt4.dll
1028"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=en-US --service-sandbox-type=service --disable-quic --string-annotations --always-read-main-dll --field-trial-handle=2828,i,6777522739310345435,7484961353378060925,262144 --variations-seed-version --mojo-platform-channel-handle=2700 /prefetch:8C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exemsedge.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
LOW
Description:
Microsoft Edge
Version:
133.0.3065.92
Modules
Images
c:\program files (x86)\microsoft\edge\application\msedge.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\program files (x86)\microsoft\edge\application\133.0.3065.92\msedge_elf.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msvcp_win.dll
c:\windows\system32\ucrtbase.dll
c:\windows\system32\combase.dll
c:\windows\system32\rpcrt4.dll
1164"C:\Users\admin\Downloads\OperaSetup.exe" C:\Users\admin\Downloads\OperaSetup.exe
msedge.exe
User:
admin
Integrity Level:
MEDIUM
Description:
Opera installer SFX
Exit code:
0
Version:
120.0.5543.38
Modules
Images
c:\users\admin\downloads\operasetup.exe
c:\windows\system32\ntdll.dll
c:\windows\syswow64\ntdll.dll
c:\windows\system32\wow64.dll
c:\windows\system32\wow64win.dll
c:\windows\system32\wow64cpu.dll
c:\windows\syswow64\kernel32.dll
c:\windows\syswow64\kernelbase.dll
c:\windows\syswow64\apphelp.dll
c:\windows\syswow64\user32.dll
Total events
30 484
Read events
29 836
Write events
636
Delete events
12

Modification events

(PID) Process:(6524) iexplore.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Content
Operation:writeName:CachePrefix
Value:
(PID) Process:(6524) iexplore.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\Cookies
Operation:writeName:CachePrefix
Value:
Cookie:
(PID) Process:(6524) iexplore.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\History
Operation:writeName:CachePrefix
Value:
Visited:
(PID) Process:(6524) iexplore.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main
Operation:writeName:CompatibilityFlags
Value:
0
(PID) Process:(6524) iexplore.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Zones
Operation:writeName:SecuritySafe
Value:
1
(PID) Process:(6524) iexplore.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main
Operation:writeName:DisableFirstRunCustomize
Value:
1
(PID) Process:(3788) msedge.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Edge\BLBeacon
Operation:writeName:failed_count
Value:
0
(PID) Process:(3788) msedge.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Edge\BLBeacon
Operation:writeName:state
Value:
2
(PID) Process:(3788) msedge.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Edge\BLBeacon
Operation:writeName:state
Value:
1
(PID) Process:(3788) msedge.exeKey:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowProperties\393972
Operation:writeName:WindowTabManagerFileMappingId
Value:
{03ADF568-2E34-413D-A123-5693F2F6CCCA}
Executable files
38
Suspicious files
776
Text files
632
Unknown types
195

Dropped files

PID
Process
Filename
Type
3788msedge.exeC:\Users\admin\AppData\Local\Microsoft\Edge\User Data\Default\ClientCertificates\LOG.old~RF176570.TMP
MD5:
SHA256:
3788msedge.exeC:\Users\admin\AppData\Local\Microsoft\Edge\User Data\Default\ClientCertificates\LOG.old
MD5:
SHA256:
3788msedge.exeC:\Users\admin\AppData\Local\Microsoft\Edge\User Data\Default\discounts_db\LOG.old~RF176580.TMP
MD5:
SHA256:
3788msedge.exeC:\Users\admin\AppData\Local\Microsoft\Edge\User Data\Default\parcel_tracking_db\LOG.old~RF176580.TMP
MD5:
SHA256:
3788msedge.exeC:\Users\admin\AppData\Local\Microsoft\Edge\User Data\Default\discounts_db\LOG.old
MD5:
SHA256:
3788msedge.exeC:\Users\admin\AppData\Local\Microsoft\Edge\User Data\Default\parcel_tracking_db\LOG.old
MD5:
SHA256:
3788msedge.exeC:\Users\admin\AppData\Local\Microsoft\Edge\User Data\Default\PersistentOriginTrials\LOG.old~RF1765af.TMP
MD5:
SHA256:
3788msedge.exeC:\Users\admin\AppData\Local\Microsoft\Edge\User Data\Default\PersistentOriginTrials\LOG.old
MD5:
SHA256:
3788msedge.exeC:\Users\admin\AppData\Local\Microsoft\Edge\User Data\Default\commerce_subscription_db\LOG.old~RF17659f.TMP
MD5:
SHA256:
3788msedge.exeC:\Users\admin\AppData\Local\Microsoft\Edge\User Data\Default\commerce_subscription_db\LOG.old
MD5:
SHA256:
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
24
TCP/UDP connections
223
DNS requests
220
Threats
30

HTTP requests

PID
Process
Method
HTTP Code
IP
URL
CN
Type
Size
Reputation
888
msedge.exe
GET
200
150.171.28.11:80
http://edge.microsoft.com/browsernetworktime/time/1/current?cup2key=2:a_bJDd7GrvzQ7nJ9f7k9vMa6JUT4ZInmFKcks7bp3Q4&cup2hreq=e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
unknown
whitelisted
1268
svchost.exe
GET
200
2.16.168.124:80
http://crl.microsoft.com/pki/crl/products/MicRooCerAut2011_2011_03_22.crl
unknown
whitelisted
1268
svchost.exe
GET
200
95.101.149.131:80
http://www.microsoft.com/pkiops/crl/MicSecSerCA2011_2011-10-18.crl
unknown
whitelisted
7072
svchost.exe
GET
200
2.23.77.188:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSAUQYBMq2awn1Rh6Doh%2FsBYgFV7gQUA95QNVbRTLtm8KPiGxvDl7I90VUCEAJ0LqoXyo4hxxe7H%2Fz9DKA%3D
unknown
whitelisted
8060
SIHClient.exe
GET
200
95.101.149.131:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Product%20Root%20Certificate%20Authority%202018.crl
unknown
whitelisted
8060
SIHClient.exe
GET
200
95.101.149.131:80
http://www.microsoft.com/pkiops/crl/Microsoft%20ECC%20Update%20Secure%20Server%20CA%202.1.crl
unknown
whitelisted
3788
msedge.exe
GET
200
2.23.77.188:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBT3xL4LQLXDRDM9P665TW442vrsUQQUReuir%2FSSy4IxLVGLp6chnfNtyA8CEA6bGI750C3n79tQ4ghAGFo%3D
unknown
whitelisted
3788
msedge.exe
GET
200
2.23.77.188:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBTfIs%2BLjDtGwQ09XEB1Yeq%2BtX%2BBgQQU7NfjgtJxXWRM3y5nP%2Be6mK4cD08CEAitQLJg0pxMn17Nqb2Trtk%3D
unknown
whitelisted
3788
msedge.exe
GET
200
2.23.77.188:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBSRXerF0eFeSWRripTgTkcJWMm7iQQUaDfg67Y7%2BF8Rhvv%2BYXsIiGX0TkICEAkd76%2BHl%2BdEje5x5DkdF8w%3D
unknown
whitelisted
2428
setup.exe
GET
200
2.23.77.188:80
http://ocsp.digicert.com/MFEwTzBNMEswSTAJBgUrDgMCGgUABBQ50otx%2Fh0Ztl%2Bz8SiPI7wEWVxDlQQUTiJUIBiV5uNu5g%2F6%2BrkS7QYXjzkCEAz1vQYrVgL0erhQLCPM8GY%3D
unknown
whitelisted
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

PID
Process
IP
Domain
ASN
CN
Reputation
5944
MoUsoCoreWorker.exe
40.127.240.158:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
4
System
192.168.100.255:137
whitelisted
1268
svchost.exe
40.127.240.158:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
4860
RUXIMICS.exe
40.127.240.158:443
settings-win.data.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
IE
whitelisted
4
System
192.168.100.255:138
whitelisted
888
msedge.exe
13.107.42.16:443
config.edge.skype.com
MICROSOFT-CORP-MSN-AS-BLOCK
US
whitelisted
888
msedge.exe
150.171.28.11:80
edge.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
US
whitelisted
888
msedge.exe
142.250.184.195:443
fonts.gstatic.com
GOOGLE
US
whitelisted
888
msedge.exe
104.22.57.224:443
mouse-jiggler.en.download.it
CLOUDFLARENET
suspicious
888
msedge.exe
150.171.27.11:443
edge.microsoft.com
MICROSOFT-CORP-MSN-AS-BLOCK
US
whitelisted

DNS requests

Domain
IP
Reputation
settings-win.data.microsoft.com
  • 40.127.240.158
  • 51.104.136.2
whitelisted
google.com
  • 172.217.16.206
whitelisted
edge.microsoft.com
  • 150.171.28.11
  • 150.171.27.11
whitelisted
config.edge.skype.com
  • 13.107.42.16
whitelisted
mouse-jiggler.en.download.it
  • 104.22.57.224
  • 172.67.26.92
  • 104.22.56.224
unknown
copilot.microsoft.com
  • 2.16.241.220
  • 2.16.241.224
whitelisted
static.download.it
  • 104.22.56.224
  • 172.67.26.92
  • 104.22.57.224
unknown
www.bing.com
  • 2.16.241.212
  • 2.16.241.206
  • 2.16.241.201
  • 2.16.241.207
  • 2.16.241.205
  • 2.16.241.218
  • 2.16.241.204
  • 2.16.241.200
  • 2.16.241.223
whitelisted
fonts.googleapis.com
  • 142.250.185.202
whitelisted
www.googletagmanager.com
  • 142.250.184.200
  • 142.250.185.232
whitelisted

Threats

PID
Process
Class
Message
888
msedge.exe
Not Suspicious Traffic
INFO [ANY.RUN] Google Tag Manager analytics (googletagmanager .com)
888
msedge.exe
Not Suspicious Traffic
INFO [ANY.RUN] Google Tag Manager analytics (googletagmanager .com)
888
msedge.exe
Not Suspicious Traffic
INFO [ANY.RUN] Google Tag Manager analytics (googletagmanager .com)
888
msedge.exe
Not Suspicious Traffic
INFO [ANY.RUN] Google Tag Manager analytics (googletagmanager .com)
Misc activity
SUSPICIOUS [ANY.RUN] JavaScript Obfuscation (ParseInt)
Misc activity
SUSPICIOUS [ANY.RUN] JavaScript Obfuscation (ParseInt)
Misc activity
SUSPICIOUS [ANY.RUN] JavaScript Obfuscation (ParseInt)
Misc activity
SUSPICIOUS [ANY.RUN] JavaScript Obfuscation (ParseInt)
Misc activity
SUSPICIOUS [ANY.RUN] JavaScript Obfuscation (ParseInt)
Potentially Bad Traffic
ET INFO Possible Chrome Plugin install
Process
Message
assistant_installer.exe
[0702/082048.336:INFO:assistant_installer_main.cc(168)] Running assistant installer with command line "C:\Users\admin\AppData\Local\Temp\.opera\a4c9b123-44d4-46e4-bfcd-a4d159bf8bc3 Opera Installer Temp\opera_package_202507020820371\assistant\assistant_installer.exe" --version
assistant_installer.exe
[0702/082100.854:INFO:assistant_installer_main.cc(168)] Running assistant installer with command line "C:\Users\admin\AppData\Local\Temp\.opera\a4c9b123-44d4-46e4-bfcd-a4d159bf8bc3 Opera Installer Temp\opera_package_202507020820371\assistant\assistant_installer.exe" --installfolder="C:\Users\admin\AppData\Local\Programs\Opera\assistant" --copyonly=0 --allusers=0
assistant_installer.exe
[0702/082100.917:INFO:assistant_installer.cc(304)] Setting up the registry
assistant_installer.exe
[0702/082101.006:INFO:assistant_installer.cc(355)] Creating scheduled task
assistant_installer.exe
[0702/082101.072:INFO:assistant_installer_main.cc(168)] Running assistant installer with command line "C:\Users\admin\AppData\Local\Programs\Opera\assistant\assistant_installer.exe" --installfolder="C:\Users\admin\AppData\Local\Programs\Opera\assistant" --run-assistant --allusers=0
assistant_installer.exe
[0702/082101.073:INFO:assistant_installer.cc(265)] Running Assistant
browser_assistant.exe
[0702/082103.071:ERROR:tracking_data_utils.cc(72)] Can't read edition: missing value.
browser_assistant.exe
[0702/082104.457:INFO:browser_installation_event_reporter.cc(142)] Installed browsers:
browser_assistant.exe
[0702/082104.457:INFO:browser_installation_event_reporter.cc(144)] Firefox
browser_assistant.exe
[0702/082104.457:INFO:browser_installation_event_reporter.cc(144)] Chrome