Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6402 | Aug. 9, 2021, 9:15 a.m. | Aug. 9, 2021, 9:17 a.m. |
-
AcroRd32.exe "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe" C:\Users\test22\AppData\Local\Temp\free-mega-vip-roblox.pdf
2064-
Adobe_Updater.exe "C:\Program Files (x86)\Common Files\Adobe\Updater6\Adobe_Updater.exe" -doActionAppID=reader9rdr-en_US
2396 -
Adobe_Updater.exe "C:\Program Files (x86)\Common Files\Adobe\Updater6\Adobe_Updater.exe" -AU_LAUNCH_MODE=1 -AU_DISPLAY_LANG=en_US -AU_LAUNCH_APPID=reader9rdr-en_US
3048
-
-
explorer.exe C:\Windows\Explorer.EXE
1248
Name | Response | Post-Analysis Lookup |
---|---|---|
swupmf.adobe.com | 23.212.12.57 |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
request | GET http://swupmf.adobe.com/manifest/60/win/reader9rdr-en_US.upd |
request | GET http://swupmf.adobe.com/manifest/60/win/AdobeUpdater.upd |
parent_process | acrord32.exe | martian_process | "C:\Program Files (x86)\Common Files\Adobe\Updater6\Adobe_Updater.exe" -AU_LAUNCH_MODE=1 -AU_DISPLAY_LANG=en_US -AU_LAUNCH_APPID=reader9rdr-en_US | ||||||
parent_process | acrord32.exe | martian_process | "C:\Program Files (x86)\Common Files\Adobe\Updater6\Adobe_Updater.exe" -doActionAppID=reader9rdr-en_US |