| File name: | FLRegKey.reg |
| Full analysis: | https://app.any.run/tasks/676a88cd-24e2-4d15-a8fe-0bbd096edffd |
| Verdict: | No threats detected |
| Analysis date: | October 23, 2019, 11:58:55 |
| OS: | Windows 7 Professional Service Pack 1 (build: 7601, 32 bit) |
| Indicators: | |
| MIME: | text/plain |
| File info: | ASCII text, with very long lines, with CRLF line terminators |
| MD5: | 85EC38634E3C402608D805C29C876CC1 |
| SHA1: | DF3AEB31ECCDB4EC0351A47270B1E4BF3CADEC61 |
| SHA256: | CFB4C1CF0B61C3B37CFFA3366CC2C85DF06D5086C56C2FC560D8AB743D1BCFC3 |
| SSDEEP: | 96:u2Rsk/NnlLWApqxrye0BFmVQ/mZq2sQwIDc6uXHxNkf6K8lgyLVPEHWc:/jCtCO1UE67Xc |
| .reg | | | Windows Registry Data (Ver. 4.0) (53.3) |
|---|---|---|
| .reg | | | Windows Registry Data (46.6) |
PID | CMD | Path | Indicators | Parent process | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 640 | "C:\Windows\regedit.exe" "C:\Users\admin\AppData\Local\Temp\FLRegKey.reg" | C:\Windows\regedit.exe | — | explorer.exe | |||||||||||
User: admin Company: Microsoft Corporation Integrity Level: MEDIUM Description: Registry Editor Exit code: 3221226540 Version: 6.1.7600.16385 (win7_rtm.090713-1255) Modules
| |||||||||||||||
| 1296 | "C:\Windows\system32\notepad.exe" "C:\Users\admin\AppData\Local\Temp\FLRegKey.reg" | C:\Windows\system32\notepad.exe | — | explorer.exe | |||||||||||
User: admin Company: Microsoft Corporation Integrity Level: MEDIUM Description: Notepad Exit code: 0 Version: 6.1.7600.16385 (win7_rtm.090713-1255) Modules
| |||||||||||||||
| 2124 | "C:\Windows\regedit.exe" "C:\Users\admin\AppData\Local\Temp\FLRegKey.reg" | C:\Windows\regedit.exe | explorer.exe | ||||||||||||
User: admin Company: Microsoft Corporation Integrity Level: HIGH Description: Registry Editor Exit code: 0 Version: 6.1.7600.16385 (win7_rtm.090713-1255) Modules
| |||||||||||||||
| (PID) Process: | (2124) regedit.exe | Key: | HKEY_CURRENT_USER\Software\Image-Line\Registrations\DirectWave |
| Operation: | write | Name: | ILRegKey |
Value: a7d80ed400966ab859abdc399bc14174496a5de483bb0392765bf04f92b4a57b | |||
| (PID) Process: | (2124) regedit.exe | Key: | HKEY_CURRENT_USER\Software\Image-Line\Registrations\Drumaxx |
| Operation: | write | Name: | ILRegKey |
Value: 77ecc550faab885d7a2c3094f84bebb5b3bdbf432348b3cf1ed1dd46c4b1ff9c | |||
| (PID) Process: | (2124) regedit.exe | Key: | HKEY_CURRENT_USER\Software\Image-Line\Registrations\DrumSynth Live |
| Operation: | write | Name: | ILRegKey |
Value: 11bdb70ddb9cc766373a81a352fca65ebb643f6dbb7c9866207733b013860040 | |||
| (PID) Process: | (2124) regedit.exe | Key: | HKEY_CURRENT_USER\Software\Image-Line\Registrations\Fruity DX10 |
| Operation: | write | Name: | ILRegKey |
Value: 87d6585c897f2e6752a00258f6a9d5d691a5c1b0c26445955ae0ca7cc076d86d | |||
| (PID) Process: | (2124) regedit.exe | Key: | HKEY_CURRENT_USER\Software\Image-Line\Registrations\Edison |
| Operation: | write | Name: | ILRegKey |
Value: f06e7ed68740aaf8757322a36e51e0cd3caf8096bb3e4060687c97a99a9457ba | |||
| (PID) Process: | (2124) regedit.exe | Key: | HKEY_CURRENT_USER\Software\Image-Line\Registrations\GMS |
| Operation: | write | Name: | ILRegKey |
Value: 9b99196aee8ee7f9cf8a4b7e3d248b6b8b7dc66155840c2dfb9473e18f9ecaee | |||
| (PID) Process: | (2124) regedit.exe | Key: | HKEY_CURRENT_USER\Software\Image-Line\Registrations\GrooveMachine |
| Operation: | write | Name: | ILRegKey |
Value: 2ef251432f10fde7bcdab4cd69628f9bfac789a92325faaffadc03bde93bc2d6 | |||
| (PID) Process: | (2124) regedit.exe | Key: | HKEY_CURRENT_USER\Software\Image-Line\Registrations\Gross Beat |
| Operation: | write | Name: | ILRegKey |
Value: 803e84ff1541f79bb22075ce81943c2849f8417001496d6852a99ff215c02ba6 | |||
| (PID) Process: | (2124) regedit.exe | Key: | HKEY_CURRENT_USER\Software\Image-Line\Registrations\Hardcore |
| Operation: | write | Name: | ILRegKey |
Value: 65ffaf6be67164af4fb112a154a8b8392bf92519bb3bb3430aa591f802cd8fb7 | |||
| (PID) Process: | (2124) regedit.exe | Key: | HKEY_CURRENT_USER\Software\Image-Line\Registrations\Harmless |
| Operation: | write | Name: | ILRegKey |
Value: 587171e85e50b3a5c07f5cab651864264a0c7dd52b47345401da9538f6ac9490 | |||