Summary | ZeroBOX

ICARUS.Setup.exe

Emotet Gen1 NSIS Generic Malware Malicious Library UPX Malicious Packer Javascript_Blob Anti_VM BMP Format GIF Format Lnk Format icon PE64 dll PE File OS Processor Check PE32 DLL DllRegisterServer
Category Machine Started Completed
FILE s1_win7_x6401 June 5, 2024, 11:17 p.m. June 5, 2024, 11:19 p.m.
Size 26.5MB
Type PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
MD5 225fcf1e03e30b492bd0aef35969329b
SHA256 0db551ef78e9c43ca1e7991a2b6f3469b60e1301a091a6ad11febfb2698c7638
CRC32 504D3307
ssdeep 786432:EOyjIjdjHDaI8QiaySd7am4pNjLzpXhd1B1f:EOiIjdjjd8EepNdxd1Bx
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • NSIS_Installer - Null Soft Installer
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file

Suricata Alerts

Flow SID Signature Category
TCP 192.168.56.101:49180 -> 13.107.42.16:443 906200022 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49183 -> 13.107.42.16:443 906200022 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49189 -> 13.107.42.16:443 906200022 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49188 -> 13.107.42.16:443 906200022 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49191 -> 13.107.42.16:443 906200022 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49181 -> 13.107.42.16:443 906200022 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49198 -> 13.95.26.4:443 906200022 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49182 -> 13.107.42.16:443 906200022 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49192 -> 13.107.42.16:443 906200022 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 23.56.109.165:80 -> 192.168.56.101:49199 2018959 ET POLICY PE EXE or DLL Windows file download HTTP Potential Corporate Privacy Violation
TCP 192.168.56.101:49206 -> 13.107.42.16:443 906200022 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49209 -> 13.107.42.16:443 906200022 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49210 -> 13.107.42.16:443 906200022 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49205 -> 13.107.42.16:443 906200022 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49187 -> 51.104.15.252:443 906200054 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49178 -> 51.104.15.252:443 906200054 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49185 -> 51.104.15.252:443 906200054 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49195 -> 51.104.15.252:443 906200054 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined
TCP 192.168.56.101:49190 -> 51.104.15.252:443 906200054 SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee) undefined

Suricata TLS

Flow Issuer Subject Fingerprint
TLS 1.2
192.168.56.101:49180
13.107.42.16:443
C=US, O=Microsoft Corporation, CN=Microsoft Azure RSA TLS Issuing CA 03 C=US, ST=WA, L=Redmond, O=Microsoft Corporation, CN=*.config.skype.com 2a:d6:b5:27:8a:e8:2f:07:4f:9c:85:f1:4c:ee:95:0d:d3:0c:6b:a8
TLS 1.2
192.168.56.101:49183
13.107.42.16:443
C=US, O=Microsoft Corporation, CN=Microsoft Azure RSA TLS Issuing CA 03 C=US, ST=WA, L=Redmond, O=Microsoft Corporation, CN=*.config.skype.com 2a:d6:b5:27:8a:e8:2f:07:4f:9c:85:f1:4c:ee:95:0d:d3:0c:6b:a8
TLS 1.2
192.168.56.101:49189
13.107.42.16:443
C=US, O=Microsoft Corporation, CN=Microsoft Azure RSA TLS Issuing CA 03 C=US, ST=WA, L=Redmond, O=Microsoft Corporation, CN=*.config.skype.com 2a:d6:b5:27:8a:e8:2f:07:4f:9c:85:f1:4c:ee:95:0d:d3:0c:6b:a8
TLS 1.2
192.168.56.101:49188
13.107.42.16:443
C=US, O=Microsoft Corporation, CN=Microsoft Azure RSA TLS Issuing CA 03 C=US, ST=WA, L=Redmond, O=Microsoft Corporation, CN=*.config.skype.com 2a:d6:b5:27:8a:e8:2f:07:4f:9c:85:f1:4c:ee:95:0d:d3:0c:6b:a8
TLS 1.2
192.168.56.101:49191
13.107.42.16:443
C=US, O=Microsoft Corporation, CN=Microsoft Azure RSA TLS Issuing CA 03 C=US, ST=WA, L=Redmond, O=Microsoft Corporation, CN=*.config.skype.com 2a:d6:b5:27:8a:e8:2f:07:4f:9c:85:f1:4c:ee:95:0d:d3:0c:6b:a8
TLS 1.2
192.168.56.101:49181
13.107.42.16:443
C=US, O=Microsoft Corporation, CN=Microsoft Azure RSA TLS Issuing CA 03 C=US, ST=WA, L=Redmond, O=Microsoft Corporation, CN=*.config.skype.com 2a:d6:b5:27:8a:e8:2f:07:4f:9c:85:f1:4c:ee:95:0d:d3:0c:6b:a8
TLS 1.2
192.168.56.101:49198
13.95.26.4:443
C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft Update Secure Server CA 2.1 C=US, ST=WA, L=Redmond, O=Microsoft, OU=DSP, CN=api.cdp.microsoft.com ac:53:77:36:b6:a9:62:e6:d6:6d:ef:4e:92:bf:86:b0:5e:84:b8:e5
TLS 1.2
192.168.56.101:49182
13.107.42.16:443
C=US, O=Microsoft Corporation, CN=Microsoft Azure RSA TLS Issuing CA 03 C=US, ST=WA, L=Redmond, O=Microsoft Corporation, CN=*.config.skype.com 2a:d6:b5:27:8a:e8:2f:07:4f:9c:85:f1:4c:ee:95:0d:d3:0c:6b:a8
TLS 1.2
192.168.56.101:49192
13.107.42.16:443
C=US, O=Microsoft Corporation, CN=Microsoft Azure RSA TLS Issuing CA 03 C=US, ST=WA, L=Redmond, O=Microsoft Corporation, CN=*.config.skype.com 2a:d6:b5:27:8a:e8:2f:07:4f:9c:85:f1:4c:ee:95:0d:d3:0c:6b:a8
TLS 1.2
192.168.56.101:49206
13.107.42.16:443
C=US, O=Microsoft Corporation, CN=Microsoft Azure RSA TLS Issuing CA 03 C=US, ST=WA, L=Redmond, O=Microsoft Corporation, CN=*.config.skype.com 2a:d6:b5:27:8a:e8:2f:07:4f:9c:85:f1:4c:ee:95:0d:d3:0c:6b:a8
TLS 1.2
192.168.56.101:49209
13.107.42.16:443
C=US, O=Microsoft Corporation, CN=Microsoft Azure RSA TLS Issuing CA 03 C=US, ST=WA, L=Redmond, O=Microsoft Corporation, CN=*.config.skype.com 2a:d6:b5:27:8a:e8:2f:07:4f:9c:85:f1:4c:ee:95:0d:d3:0c:6b:a8
TLS 1.2
192.168.56.101:49210
13.107.42.16:443
C=US, O=Microsoft Corporation, CN=Microsoft Azure RSA TLS Issuing CA 03 C=US, ST=WA, L=Redmond, O=Microsoft Corporation, CN=*.config.skype.com 2a:d6:b5:27:8a:e8:2f:07:4f:9c:85:f1:4c:ee:95:0d:d3:0c:6b:a8
TLS 1.2
192.168.56.101:49205
13.107.42.16:443
C=US, O=Microsoft Corporation, CN=Microsoft Azure RSA TLS Issuing CA 03 C=US, ST=WA, L=Redmond, O=Microsoft Corporation, CN=*.config.skype.com 2a:d6:b5:27:8a:e8:2f:07:4f:9c:85:f1:4c:ee:95:0d:d3:0c:6b:a8

Time & API Arguments Status Return Repeated

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0
Time & API Arguments Status Return Repeated

IsDebuggerPresent

0 0
Time & API Arguments Status Return Repeated

GlobalMemoryStatusEx

1 1 0
section .ndata
request HEAD http://msedge.f.tlu.dl.delivery.mp.microsoft.com/filestreamingservice/files/3c775e75-aff8-4af1-aede-7a5c0349aa0b?P1=1718201907&P2=404&P3=2&P4=WiuGZ5IY9kx3eECOliePn%2bZR2Oa2T%2fIA6AoadHbz1e2TomQPzt6zla8iSDn3KibvVKZ7rCsNDdx37Vncvson%2bw%3d%3d
request GET http://msedge.f.tlu.dl.delivery.mp.microsoft.com/filestreamingservice/files/3c775e75-aff8-4af1-aede-7a5c0349aa0b?P1=1718201907&P2=404&P3=2&P4=WiuGZ5IY9kx3eECOliePn%2bZR2Oa2T%2fIA6AoadHbz1e2TomQPzt6zla8iSDn3KibvVKZ7rCsNDdx37Vncvson%2bw%3d%3d
request POST https://msedge.api.cdp.microsoft.com/api/v1.1/contents/Browser/namespaces/Default/names/msedgewebview-stable-win-x64/versions/latest?action=select
request POST https://msedge.api.cdp.microsoft.com/api/v1.1/internal/contents/Browser/namespaces/Default/names/msedgewebview-stable-win-x64/versions/125.0.2535.85/files?action=GenerateDownloadInfo&foregroundPriority=true
Time & API Arguments Status Return Repeated

NtProtectVirtualMemory

process_identifier: 2660
stack_dep_bypass: 0
stack_pivoted: 0
heap_dep_bypass: 0
length: 4096
protection: 64 (PAGE_EXECUTE_READWRITE)
base_address: 0x732d2000
process_handle: 0xffffffff
1 0 0

NtProtectVirtualMemory

process_identifier: 2660
stack_dep_bypass: 0
stack_pivoted: 0
heap_dep_bypass: 0
length: 4096
protection: 64 (PAGE_EXECUTE_READWRITE)
base_address: 0x732a5000
process_handle: 0xffffffff
1 0 0

NtProtectVirtualMemory

process_identifier: 2856
stack_dep_bypass: 0
stack_pivoted: 0
heap_dep_bypass: 0
length: 4096
protection: 64 (PAGE_EXECUTE_READWRITE)
base_address: 0x732d2000
process_handle: 0xffffffff
1 0 0

NtProtectVirtualMemory

process_identifier: 2856
stack_dep_bypass: 0
stack_pivoted: 0
heap_dep_bypass: 0
length: 4096
protection: 64 (PAGE_EXECUTE_READWRITE)
base_address: 0x72c73000
process_handle: 0xffffffff
1 0 0

NtProtectVirtualMemory

process_identifier: 2856
stack_dep_bypass: 0
stack_pivoted: 0
heap_dep_bypass: 0
length: 4096
protection: 64 (PAGE_EXECUTE_READWRITE)
base_address: 0x72bc2000
process_handle: 0xffffffff
1 0 0

NtProtectVirtualMemory

process_identifier: 2856
stack_dep_bypass: 0
stack_pivoted: 0
heap_dep_bypass: 0
length: 4096
protection: 64 (PAGE_EXECUTE_READWRITE)
base_address: 0x73c03000
process_handle: 0xffffffff
1 0 0

NtAllocateVirtualMemory

process_identifier: 2232
region_size: 4096
stack_dep_bypass: 0
stack_pivoted: 0
heap_dep_bypass: 0
protection: 64 (PAGE_EXECUTE_READWRITE)
base_address: 0x005a0000
allocation_type: 4096 (MEM_COMMIT)
process_handle: 0xffffffff
1 0 0
Time & API Arguments Status Return Repeated

GetDiskFreeSpaceExW

total_number_of_free_bytes: 0
free_bytes_available: 13219774464
root_path: C:\Users\test22\AppData\Local\Microsoft\Windows\Explorer
total_number_of_bytes: 0
1 1 0

GetDiskFreeSpaceExW

total_number_of_free_bytes: 0
free_bytes_available: 13219774464
root_path: C:\Users\test22\AppData\Local\Microsoft\Windows\Explorer
total_number_of_bytes: 0
1 1 0
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdate.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_nl.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ro.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdateOnDemand.exe
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ca-Es-VALENCIA.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_tr.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_pt-PT.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeComRegisterShellARM64.exe
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_is.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_kok.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_es.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_lv.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_da.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_id.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_am.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_zh-CN.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdateBroker.exe
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_et.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ur.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ms.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ml.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ga.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\psmachine_64.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_kn.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_kk.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fr-CA.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_gd.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_zh-TW.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_lo.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_km.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_tt.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fa.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_az.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_vi.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_sr-Cyrl-RS.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_quz.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_lb.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\psmachine.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ta.dll
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ICARUS Terminal\ICARUS Terminal.lnk
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_hi.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\psuser_arm64.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ka.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_it.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_sr.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bs.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_or.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdateComRegisterShell64.exe
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_es-419.dll
file C:\Users\test22\AppData\Local\Temp\nsxF4D0.tmp\System.dll
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ICARUS Terminal\ICARUS Terminal.lnk
file C:\Users\test22\Desktop\ICARUS Terminal.lnk
file C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
file C:\Users\test22\AppData\Local\Temp\nsxF4D0.tmp\System.dll
file C:\Users\test22\AppData\Local\Temp\nsxF4D0.tmp\InstallOptions.dll
Ikarus PUA.CoinMiner
Time & API Arguments Status Return Repeated

GetAdaptersAddresses

flags: 15
family: 0
111 0
Time & API Arguments Status Return Repeated

LookupPrivilegeValueW

system_name:
privilege_name: SeDebugPrivilege
1 1 0

LookupPrivilegeValueW

system_name:
privilege_name: SeDebugPrivilege
1 1 0

LookupPrivilegeValueW

system_name:
privilege_name: SeDebugPrivilege
1 1 0
process microsoftedgeupdate.exe
Time & API Arguments Status Return Repeated

RegOpenKeyExW

regkey_r: Software\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft Edge Update
base_handle: 0x80000002
key_handle: 0x00000000
options: 0
access: 0x000f023f
regkey: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft Edge Update
2 0

RegOpenKeyExW

regkey_r: Software\Microsoft\Windows\CurrentVersion\Uninstall
base_handle: 0x80000002
key_handle: 0x000001fc
options: 0
access: 0x000f023f
regkey: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall
1 0 0

RegOpenKeyExW

regkey_r: Microsoft Edge Update
base_handle: 0x000001fc
key_handle: 0x0000019c
options: 0
access: 0x000f023f
regkey: HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft Edge Update
1 0 0
cmdline "C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /ping PD94bWwgdmVyc2lvbj0iMS4wIiBlbmNvZGluZz0iVVRGLTgiPz48cmVxdWVzdCBwcm90b2NvbD0iMy4wIiB1cGRhdGVyPSJPbWFoYSIgdXBkYXRlcnZlcnNpb249IjEuMy4xNTMuNTMiIHNoZWxsX3ZlcnNpb249IjEuMy4xNTMuNTMiIGlzbWFjaGluZT0iMSIgc2Vzc2lvbmlkPSJ7MDk2NzQ3QjQtRUM4Qi00NjAwLTgyMzUtQTk5RTlCQ0RBQ0E4fSIgaW5zdGFsbHNvdXJjZT0ib3RoZXJpbnN0YWxsY21kIiByZXF1ZXN0aWQ9InsyMzI4MThBQi00NDVDLTRGRTctQTg3NC0yNkNGNTczQzVDMzR9IiBkZWR1cD0iY3IiIGRvbWFpbmpvaW5lZD0iMCI-PGh3IGxvZ2ljYWxfY3B1cz0iMiIgcGh5c21lbW9yeT0iNSIgZGlza190eXBlPSIwIiBzc2U9IjEiIHNzZTI9IjEiIHNzZTM9IjEiIHNzc2UzPSIxIiBzc2U0MT0iMSIgc3NlNDI9IjEiIGF2eD0iMSIvPjxvcyBwbGF0Zm9ybT0id2luIiB2ZXJzaW9uPSI2LjEuNzYwMS4wIiBzcD0iU2VydmljZSBQYWNrIDEiIGFyY2g9Ing2NCIvPjxvZW0gcHJvZHVjdF9tYW51ZmFjdHVyZXI9IkxFTk9WTyIgcHJvZHVjdF9uYW1lPSIyMjQxVzJVIi8-PGV4cCBldGFnPSIiLz48YXBwIGFwcGlkPSJ7RjNDNEZFMDAtRUZENS00MDNCLTk1NjktMzk4QTIwRjFCQTRBfSIgdmVyc2lvbj0iIiBuZXh0dmVyc2lvbj0iMS4zLjE1My41MyIgbGFuZz0iIiBicmFuZD0iIiBjbGllbnQ9IiI-PGV2ZW50IGV2ZW50dHlwZT0iMiIgZXZlbnRyZXN1bHQ9IjEiIGVycm9yY29kZT0iMCIgZXh0cmFjb2RlMT0iMCIgaW5zdGFsbF90aW1lX21zPSIzMTcyIi8-PC9hcHA-PC9yZXF1ZXN0Pg
service_name edgeupdate service_path C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\"C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" \svc
reg_key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E8F1B36-249F-4FC3-9994-974AFAA07B26}\InprocServer32\(Default) reg_value C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\psmachine_64.dll
reg_key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A2F5CB38-265F-4A02-9D1E-F25B664968AB}\InprocServer32\(Default) reg_value C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\psmachine_64.dll
reg_key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4A02D72-2A34-41DB-B37F-05DFDB27E933}\InProcServer32\(Default) reg_value C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\psmachine_64.dll
reg_key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E8F1B36-249F-4FC3-9994-974AFAA07B26}\InprocServer32\(Default) reg_value C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\psmachine_64.dll
reg_key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A2F5CB38-265F-4A02-9D1E-F25B664968AB}\InprocServer32\(Default) reg_value C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\psmachine_64.dll
reg_key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4A02D72-2A34-41DB-B37F-05DFDB27E933}\InProcServer32\(Default) reg_value C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\psmachine_64.dll
reg_key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9E8F1B36-249F-4FC3-9994-974AFAA07B26}\InprocServer32\(Default) reg_value C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\psmachine_64.dll
reg_key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A2F5CB38-265F-4A02-9D1E-F25B664968AB}\InprocServer32\(Default) reg_value C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\psmachine_64.dll
reg_key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B4A02D72-2A34-41DB-B37F-05DFDB27E933}\InProcServer32\(Default) reg_value C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\psmachine_64.dll
Time & API Arguments Status Return Repeated

CreateServiceW

service_start_name:
start_type: 2
password:
display_name: Microsoft Edge 업데이트 서비스 (edgeupdate)
filepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\"C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" \svc
service_name: edgeupdate
filepath_r: "C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /svc
desired_access: 983551
service_handle: 0x004cc7b0
error_control: 1
service_type: 16
service_manager_handle: 0x004cc7d8
1 5031856 0

CreateServiceW

service_start_name:
start_type: 3
password:
display_name: Microsoft Edge 업데이트 서비스 (edgeupdatem)
filepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\"C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" \medsvc
service_name: edgeupdatem
filepath_r: "C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /medsvc
desired_access: 983551
service_handle: 0x004cc850
error_control: 1
service_type: 16
service_manager_handle: 0x004ccaa8
1 5032016 0
file C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeUpdateComRegisterShell64.exe
Time & API Arguments Status Return Repeated

RegSetValueExA

key_handle: 0x00000358
regkey_r: ProxyEnable
reg_type: 4 (REG_DWORD)
value: 0
regkey: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable
1 0 0
file C:\Users\test22\AppData\Local\Temp\OutofProcReport27727511.txt
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdate.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_nl.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ro.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdateOnDemand.exe
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ca-Es-VALENCIA.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_tr.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_pt-PT.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeComRegisterShellARM64.exe
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_is.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_kok.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_es.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_lv.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_da.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_id.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_am.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_zh-CN.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_hi.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_et.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ur.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ms.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ml.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ga.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\psmachine_64.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\EdgeUpdate.dat
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_kk.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fr-CA.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_gd.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_zh-TW.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_lo.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_km.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_tt.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fa.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_az.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_vi.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_sr-Cyrl-RS.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_quz.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_lb.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\psmachine.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ta.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdateBroker.exe
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\psuser_arm64.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ka.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_it.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_sr.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bs.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_or.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdateComRegisterShell64.exe
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_es-419.dll
file C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\NOTICE.TXT
mutex Global\EdgeUpdate{F340B839-380B-4AA9-BA6F-B83F23E2DD05}
mutex Global\EdgeUpdate{DDDDEAEB-04CC-4BAA-9C63-CCA5FE38F688}
mutex Global\85c47a86-2346-11ef-948e-94de278c3274
mutex {08586C4E-62C4-4a4e-8271-C2A20530AF62}_M_S-1-5-21-3832866432-4053218753-3017428901-1001
mutex Global\85926924-2346-11ef-948e-94de278c3274
udp {u'src': u'192.168.56.101', u'dst': u'239.255.255.250', u'offset': 43696043, u'time': 52.79696583747864, u'dport': 1900, u'sport': 53853}
udp {u'src': u'8.8.8.8', u'dst': u'192.168.56.101', u'offset': 43703155, u'time': 56.65837788581848, u'dport': 61950, u'sport': 53}
udp {u'src': u'8.8.8.8', u'dst': u'192.168.56.101', u'offset': 185167892, u'time': 75.37427496910095, u'dport': 52815, u'sport': 53}
udp {u'src': u'8.8.8.8', u'dst': u'192.168.56.101', u'offset': 185168246, u'time': 74.19336581230164, u'dport': 54883, u'sport': 53}
Time & API Arguments Status Return Repeated

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeUpdate.exe
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdate.exe
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeUpdate.exe
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdate.exe
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdate.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdate.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdate.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdate.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeUpdateCore.exe
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdateCore.exe
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeUpdateCore.exe
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdateCore.exe
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeUpdateComRegisterShell64.exe
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdateComRegisterShell64.exe
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeUpdateComRegisterShell64.exe
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdateComRegisterShell64.exe
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeComRegisterShellARM64.exe
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeComRegisterShellARM64.exe
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeComRegisterShellARM64.exe
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeComRegisterShellARM64.exe
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\NOTICE.TXT
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\NOTICE.TXT
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\NOTICE.TXT
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\NOTICE.TXT
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\EdgeUpdate.dat
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\EdgeUpdate.dat
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\EdgeUpdate.dat
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\EdgeUpdate.dat
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_af.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_af.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_af.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_af.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_am.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_am.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_am.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_am.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ar.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ar.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ar.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ar.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_as.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_as.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_as.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_as.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_az.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_az.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_az.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_az.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bg.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bg.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bg.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bg.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bn.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bn.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bn.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bn.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bn-IN.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bn-IN.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bn-IN.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bn-IN.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bs.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bs.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bs.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bs.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ca.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ca.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ca.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ca.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ca-Es-VALENCIA.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ca-Es-VALENCIA.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ca-Es-VALENCIA.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ca-Es-VALENCIA.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_cs.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_cs.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_cs.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_cs.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_cy.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_cy.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_cy.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_cy.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_da.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_da.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_da.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_da.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_de.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_de.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_de.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_de.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_el.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_el.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_el.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_el.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_en.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_en.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_en.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_en.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_en-GB.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_en-GB.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_en-GB.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_en-GB.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_es.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_es.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_es.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_es.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_es-419.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_es-419.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_es-419.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_es-419.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_et.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_et.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_et.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_et.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_eu.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_eu.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_eu.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_eu.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fa.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fa.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fa.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fa.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fi.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fi.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fi.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fi.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fil.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fil.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fil.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fil.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fr.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fr.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fr.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fr.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fr-CA.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fr-CA.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fr-CA.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fr-CA.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ga.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ga.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ga.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ga.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_gd.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_gd.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_gd.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_gd.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_gl.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_gl.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_gl.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_gl.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_gu.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_gu.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_gu.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_gu.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_hi.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_hi.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_hi.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_hi.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_hr.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_hr.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_hr.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_hr.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_hu.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_hu.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_hu.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_hu.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_id.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_id.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_id.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_id.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_is.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_is.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_is.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_is.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_it.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_it.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_it.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_it.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_iw.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_iw.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_iw.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_iw.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ja.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ja.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ja.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ja.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ka.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ka.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ka.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ka.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_kk.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_kk.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_kk.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_kk.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_km.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_km.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_km.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_km.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_kn.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_kn.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_kn.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_kn.dll
1 1 0
Time & API Arguments Status Return Repeated

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeUpdate.exe
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdate.exe
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeUpdate.exe
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdate.exe
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdate.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdate.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdate.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdate.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeUpdateCore.exe
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdateCore.exe
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeUpdateCore.exe
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdateCore.exe
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeUpdateComRegisterShell64.exe
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdateComRegisterShell64.exe
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeUpdateComRegisterShell64.exe
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeUpdateComRegisterShell64.exe
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeComRegisterShellARM64.exe
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeComRegisterShellARM64.exe
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\MicrosoftEdgeComRegisterShellARM64.exe
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\MicrosoftEdgeComRegisterShellARM64.exe
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\NOTICE.TXT
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\NOTICE.TXT
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\NOTICE.TXT
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\NOTICE.TXT
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\EdgeUpdate.dat
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\EdgeUpdate.dat
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\EdgeUpdate.dat
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\EdgeUpdate.dat
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_af.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_af.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_af.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_af.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_am.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_am.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_am.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_am.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ar.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ar.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ar.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ar.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_as.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_as.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_as.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_as.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_az.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_az.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_az.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_az.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bg.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bg.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bg.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bg.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bn.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bn.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bn.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bn.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bn-IN.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bn-IN.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bn-IN.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bn-IN.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bs.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bs.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_bs.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_bs.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ca.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ca.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ca.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ca.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ca-Es-VALENCIA.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ca-Es-VALENCIA.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ca-Es-VALENCIA.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ca-Es-VALENCIA.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_cs.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_cs.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_cs.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_cs.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_cy.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_cy.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_cy.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_cy.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_da.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_da.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_da.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_da.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_de.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_de.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_de.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_de.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_el.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_el.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_el.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_el.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_en.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_en.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_en.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_en.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_en-GB.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_en-GB.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_en-GB.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_en-GB.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_es.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_es.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_es.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_es.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_es-419.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_es-419.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_es-419.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_es-419.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_et.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_et.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_et.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_et.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_eu.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_eu.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_eu.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_eu.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fa.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fa.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fa.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fa.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fi.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fi.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fi.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fi.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fil.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fil.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fil.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fil.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fr.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fr.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fr.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fr.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fr-CA.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fr-CA.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_fr-CA.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_fr-CA.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ga.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ga.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ga.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ga.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_gd.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_gd.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_gd.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_gd.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_gl.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_gl.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_gl.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_gl.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_gu.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_gu.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_gu.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_gu.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_hi.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_hi.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_hi.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_hi.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_hr.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_hr.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_hr.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_hr.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_hu.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_hu.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_hu.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_hu.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_id.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_id.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_id.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_id.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_is.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_is.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_is.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_is.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_it.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_it.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_it.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_it.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_iw.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_iw.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_iw.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_iw.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ja.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ja.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ja.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ja.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ka.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ka.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_ka.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_ka.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_kk.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_kk.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_kk.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_kk.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_km.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_km.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_km.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_km.dll
1 1 0

MoveFileWithProgressW

newfilepath_r: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_kn.dll
flags: 11
oldfilepath_r: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_kn.dll
newfilepath: C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.153.53\msedgeupdateres_kn.dll
oldfilepath: C:\Program Files (x86)\Microsoft\Temp\EU15B5.tmp\msedgeupdateres_kn.dll
1 1 0