IOC Report
SecuriteInfo.com.BScope.TrojanDownloader.Adload.19603.9288.exe

loading gif

Files

File Path
Type
Category
Malicious
SecuriteInfo.com.BScope.TrojanDownloader.Adload.19603.9288.exe
PE32 executable (GUI) Intel 80386, for MS Windows
initial sample
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\aussdrv.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 90522 bytes, 1 file, at 0x2c +A "aussdrv.dll", number 1, 9 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cn_ipf770_series_glossyphotopaper170gsm.ic_
Microsoft Cabinet archive data, Windows 2000/XP setup, 582358 bytes, 1 file, at 0x2c +A "cn_ipf770_series_glossyphotopaper170gsm.icc", number 1, 21 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cn_ipf770_series_glossyphotopaperhg170.ic_
Microsoft Cabinet archive data, Windows 2000/XP setup, 581177 bytes, 1 file, at 0x2c +A "cn_ipf770_series_glossyphotopaperhg170.icc", number 1, 21 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cn_ipf770_series_glossyphotopaperhg255.ic_
Microsoft Cabinet archive data, Windows 2000/XP setup, 580011 bytes, 1 file, at 0x2c +A "cn_ipf770_series_glossyphotopaperhg255.icc", number 1, 21 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cn_ipf770_series_photopaperplussemi-gloss.ic_
Microsoft Cabinet archive data, Windows 2000/XP setup, 587774 bytes, 1 file, at 0x2c +A "cn_ipf770_series_photopaperplussemi-gloss.icc", number 1, 21 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cn_ipf770_series_premiumglossypaper2-280.ic_
Microsoft Cabinet archive data, Windows 2000/XP setup, 584569 bytes, 1 file, at 0x2c +A "cn_ipf770_series_premiumglossypaper2-280.icc", number 1, 21 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cn_ipf770_series_premiumsemiglossypaper2-280.ic_
Microsoft Cabinet archive data, Windows 2000/XP setup, 584241 bytes, 1 file, at 0x2c +A "cn_ipf770_series_premiumsemiglossypaper2-280.icc", number 1, 21 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cn_ipf770_series_satinphotopaper170gsm.ic_
Microsoft Cabinet archive data, Windows 2000/XP setup, 582113 bytes, 1 file, at 0x2c +A "cn_ipf770_series_satinphotopaper170gsm.icc", number 1, 21 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cn_ipf770_series_semi-glossyphotopaperhg170.ic_
Microsoft Cabinet archive data, Windows 2000/XP setup, 581294 bytes, 1 file, at 0x2c +A "cn_ipf770_series_semi-glossyphotopaperhg170.icc", number 1, 21 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cn_ipf770_series_semi-glossyphotopaperhg255.ic_
Microsoft Cabinet archive data, Windows 2000/XP setup, 580024 bytes, 1 file, at 0x2c +A "cn_ipf770_series_semi-glossyphotopaperhg255.icc", number 1, 21 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnw407.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 912357 bytes, 1 file, at 0x2c +A "cnw407.dll", number 1, 142 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnw409.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 910565 bytes, 1 file, at 0x2c +A "cnw409.dll", number 1, 142 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnw40a.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 912695 bytes, 1 file, at 0x2c +A "cnw40a.dll", number 1, 142 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnw40c.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 912931 bytes, 1 file, at 0x2c +A "cnw40c.dll", number 1, 142 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnw410.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 911981 bytes, 1 file, at 0x2c +A "cnw410.dll", number 1, 142 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnw411.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 908647 bytes, 1 file, at 0x2c +A "cnw411.dll", number 1, 141 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnw412.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 908147 bytes, 1 file, at 0x2c +A "cnw412.dll", number 1, 141 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnw416.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 912745 bytes, 1 file, at 0x2c +A "cnw416.dll", number 1, 142 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnw419.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 913781 bytes, 1 file, at 0x2c +A "cnw419.dll", number 1, 142 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnw804.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 908215 bytes, 1 file, at 0x2c +A "cnw804.dll", number 1, 140 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwa15ac.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 323401 bytes, 1 file, at 0x2c +RA "cnwa15ac.chm", number 1, 11 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwa15af.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 335995 bytes, 1 file, at 0x2c +RA "cnwa15af.chm", number 1, 11 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwa15ag.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 337315 bytes, 1 file, at 0x2c +RA "cnwa15ag.chm", number 1, 11 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwa15ai.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 335675 bytes, 1 file, at 0x2c +RA "cnwa15ai.chm", number 1, 11 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwa15aj.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 344943 bytes, 1 file, at 0x2c +RA "cnwa15aj.chm", number 1, 11 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwa15ao.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 335721 bytes, 1 file, at 0x2c +RA "cnwa15ao.chm", number 1, 11 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwa15ap.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 313797 bytes, 1 file, at 0x2c +RA "cnwa15ap.chm", number 1, 11 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwa15ar.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 329311 bytes, 1 file, at 0x2c +RA "cnwa15ar.chm", number 1, 11 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwa15as.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 330539 bytes, 1 file, at 0x2c +RA "cnwa15as.chm", number 1, 11 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwa15au.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 313797 bytes, 1 file, at 0x2c +RA "cnwa15au.chm", number 1, 11 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwfcgco.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 360997 bytes, 1 file, at 0x2c +A "cnwfcgco.dll", number 1, 31 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwfdpkj.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 34551 bytes, 1 file, at 0x2c +A "cnwfdpkj.dll", number 1, 3 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwfdpkk.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 34551 bytes, 1 file, at 0x2c +A "cnwfdpkk.dll", number 1, 3 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwiosif.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 39919 bytes, 1 file, at 0x2c +A "cnwiosif.dll", number 1, 3 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwiwebi.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 38279 bytes, 1 file, at 0x2c +A "cnwiwebi.dll", number 1, 3 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwm.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 640923 bytes, 1 file, at 0x2c +A "cnwm.dll", number 1, 54 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwmui.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 1036321 bytes, 1 file, at 0x2c +A "cnwmui.dll", number 1, 112 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwp0rsw.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 420171 bytes, 1 file, at 0x2c +A "cnwp0rsw.dll", number 1, 39 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwvprev.ex_
Microsoft Cabinet archive data, Windows 2000/XP setup, 507273 bytes, 1 file, at 0x2c +A "cnwvprev.exe", number 1, 56 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwvr407.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 224745 bytes, 1 file, at 0x2c +A "cnwvr407.dll", number 1, 72 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwvr409.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 224413 bytes, 1 file, at 0x2c +A "cnwvr409.dll", number 1, 72 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwvr40a.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 224619 bytes, 1 file, at 0x2c +A "cnwvr40a.dll", number 1, 72 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwvr40c.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 224653 bytes, 1 file, at 0x2c +A "cnwvr40c.dll", number 1, 72 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwvr410.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 224633 bytes, 1 file, at 0x2c +A "cnwvr410.dll", number 1, 72 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwvr411.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 224469 bytes, 1 file, at 0x2c +A "cnwvr411.dll", number 1, 72 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwvr412.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 224749 bytes, 1 file, at 0x2c +A "cnwvr412.dll", number 1, 72 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwvr416.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 224701 bytes, 1 file, at 0x2c +A "cnwvr416.dll", number 1, 72 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwvr419.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 224991 bytes, 1 file, at 0x2c +A "cnwvr419.dll", number 1, 72 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwvr804.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 224503 bytes, 1 file, at 0x2c +A "cnwvr804.dll", number 1, 72 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnww77jm.ci_
Microsoft Cabinet archive data, Windows 2000/XP setup, 4171289 bytes, 1 file, at 0x2c +A "cnww77jm.cip", number 1, 150 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc10dw1.ex_
Microsoft Cabinet archive data, Windows 2000/XP setup, 367883 bytes, 1 file, at 0x2c +A "cpc10dw1.exe", number 1, 31 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc10ew1.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 342443 bytes, 1 file, at 0x2c +A "cpc10ew1.dll", number 1, 38 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc10qw1.ex_
Microsoft Cabinet archive data, Windows 2000/XP setup, 404403 bytes, 1 file, at 0x2c +A "cpc10qw1.exe", number 1, 45 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc10sw1.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 124957 bytes, 1 file, at 0x2c +A "cpc10sw1.dll", number 1, 9 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc10vw1.ex_
Microsoft Cabinet archive data, Windows 2000/XP setup, 319873 bytes, 1 file, at 0x2c +A "cpc10vw1.exe", number 1, 28 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1csw1.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 21031 bytes, 1 file, at 0x2c +A "cpc1csw1.chm", number 1, 1 datablock, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1csw1.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 59227 bytes, 1 file, at 0x2c +A "cpc1csw1.dll", number 1, 18 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1dew1.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 60795 bytes, 1 file, at 0x2c +A "cpc1dew1.dll", number 1, 19 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1esw1.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 60583 bytes, 1 file, at 0x2c +A "cpc1esw1.dll", number 1, 19 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1frw1.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 60507 bytes, 1 file, at 0x2c +A "cpc1frw1.dll", number 1, 19 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1itw1.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 60319 bytes, 1 file, at 0x2c +A "cpc1itw1.dll", number 1, 19 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1jpw1.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 25613 bytes, 1 file, at 0x2c +A "cpc1jpw1.chm", number 1, 2 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1jpw1.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 59305 bytes, 1 file, at 0x2c +A "cpc1jpw1.dll", number 1, 18 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1krw1.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 59733 bytes, 1 file, at 0x2c +A "cpc1krw1.dll", number 1, 18 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1ruw1.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 20955 bytes, 1 file, at 0x2c +A "cpc1ruw1.chm", number 1, 1 datablock, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1ruw1.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 60847 bytes, 1 file, at 0x2c +A "cpc1ruw1.dll", number 1, 19 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1usw1.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 59933 bytes, 1 file, at 0x2c +A "cpc1usw1.dll", number 1, 19 datablocks, 0xf03 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Data1.cab
Microsoft Cabinet archive data, many, 744649 bytes, 21 files, at 0x2c +A "CN\setuprsc.dll" +A "CN\uinstrsc.dll", number 1, 98 datablocks, 0x1503 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Data2.cab
Microsoft Cabinet archive data, many, 7140158 bytes, 95 files, at 0x2c +A "Canon CIW Extension.dll" +A "cnpdsdk.dll", number 1, 1409 datablocks, 0x1503 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\DDI\CAB1.CAB
Microsoft Cabinet archive data, many, 599735 bytes, 5 files, at 0x2c +A "CDDI_SDK.dll" +A "CDDITCPIP.ext", number 1, 47 datablocks, 0x1 compression
dropped
malicious
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\CHECKSUM
ASCII text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\6WW77JM.INF
Windows setup INFormation
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\6WW77JM.cat
data
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\License_Chinese_Simplified.txt
ISO-8859 text, with very long lines (556), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\License_English.txt
ASCII text, with very long lines (993), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\License_French.txt
Non-ISO extended-ASCII text, with very long lines (1165), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\License_German.txt
ISO-8859 text, with very long lines (1154), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\License_Italian.txt
Non-ISO extended-ASCII text, with very long lines (1028), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\License_Japanese.txt
Non-ISO extended-ASCII text, with very long lines (518), with CRLF, NEL line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\License_Korean.txt
ISO-8859 text, with very long lines (530), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\License_Portuguese.txt
ISO-8859 text, with very long lines (996), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\License_Russian.txt
ISO-8859 text, with very long lines (1182), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\License_Spanish.txt
ISO-8859 text, with very long lines (1087), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\ReadMe_Chinese_Simplified.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\ReadMe_English.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\ReadMe_French.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\ReadMe_German.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\ReadMe_Italian.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\ReadMe_Japanese.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\ReadMe_Korean.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\ReadMe_Portuguese.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\ReadMe_Russian.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\ReadMe_Spanish.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnwilm64.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 6835 bytes, 1 file, at 0x2c +A "cnwilm64.dll", number 1, 1 datablock, 0xf03 compression
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnww77jm.up_
Microsoft Cabinet archive data, Windows 2000/XP setup, 11721 bytes, 1 file, at 0x2c +A "cnww77jm.upd", number 1, 2 datablocks, 0xf03 compression
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnww77jm.xp_
Microsoft Cabinet archive data, Windows 2000/XP setup, 2177 bytes, 1 file, at 0x2c +A "cnww77jm.xpd", number 1, 1 datablock, 0xf03 compression
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnww77km.up_
Microsoft Cabinet archive data, Windows 2000/XP setup, 11721 bytes, 1 file, at 0x2c +A "cnww77km.upd", number 1, 2 datablocks, 0xf03 compression
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnww77km.xp_
Microsoft Cabinet archive data, Windows 2000/XP setup, 2177 bytes, 1 file, at 0x2c +A "cnww77km.xpd", number 1, 1 datablock, 0xf03 compression
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnxp0log.dl_
Microsoft Cabinet archive data, Windows 2000/XP setup, 801 bytes, 1 file, at 0x2c +A "cnxp0log.dll", number 1, 1 datablock, 0xf03 compression
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cnzsrgbc.ic_
Microsoft Cabinet archive data, Windows 2000/XP setup, 4521 bytes, 1 file, at 0x2c +A "cnzsrgbc.icc", number 1, 1 datablock, 0xf03 compression
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1dew1.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 21185 bytes, 1 file, at 0x2c +A "cpc1dew1.chm", number 1, 1 datablock, 0xf03 compression
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1esw1.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 20921 bytes, 1 file, at 0x2c +A "cpc1esw1.chm", number 1, 1 datablock, 0xf03 compression
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1frw1.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 20717 bytes, 1 file, at 0x2c +A "cpc1frw1.chm", number 1, 1 datablock, 0xf03 compression
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1itw1.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 20741 bytes, 1 file, at 0x2c +A "cpc1itw1.chm", number 1, 1 datablock, 0xf03 compression
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1krw1.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 22229 bytes, 1 file, at 0x2c +A "cpc1krw1.chm", number 1, 1 datablock, 0xf03 compression
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Driver\cpc1usw1.ch_
Microsoft Cabinet archive data, Windows 2000/XP setup, 20721 bytes, 1 file, at 0x2c +A "cpc1usw1.chm", number 1, 1 datablock, 0xf03 compression
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\CHECKSUM
ASCII text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Data\UninstFiles.ini
ASCII text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Data\cnwiicef.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Data\cnwiidci.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Data\getinfo.ini
Generic INItialization configuration [OldVersionUtility]
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Data\instpack.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Data\reg
ASCII text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\MUI.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Readme_Chinese_Simplified.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Readme_English.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Readme_French.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Readme_German.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Readme_Italian.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Readme_Japanese.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Readme_Korean.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Readme_Portuguese.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Readme_Russian.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Readme_Spanish.txt
Unicode text, UTF-8 (with BOM) text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Setup.exe
PE32 executable (GUI) Intel 80386, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\Setup.ini
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\EULA\EC_French.txt
Unicode text, UTF-16, little-endian text, with very long lines (1165), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\EULA\EC_German.txt
Unicode text, UTF-16, little-endian text, with very long lines (1154), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\EULA\EC_Italian.txt
Unicode text, UTF-16, little-endian text, with very long lines (1028), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\EULA\EC_Portuguese.txt
Unicode text, UTF-16, little-endian text, with very long lines (996), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\EULA\EC_Russian.txt
Unicode text, UTF-16, little-endian text, with very long lines (1182), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\EULA\EC_Spanish.txt
Unicode text, UTF-16, little-endian text, with very long lines (1087), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\EULA\JP_Japanese.txt
Unicode text, UTF-16, little-endian text, with very long lines (518), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\EULA\US_English.txt
Unicode text, UTF-16, little-endian text, with very long lines (993), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\EULA\US_Korean.txt
Unicode text, UTF-16, little-endian text, with very long lines (516), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\EULA\US_SimplifiedChinese.txt
Unicode text, UTF-16, little-endian text, with very long lines (516), with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\STRING\EC_French.ini
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\STRING\EC_German.ini
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\STRING\EC_Italian.ini
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\STRING\EC_Portuguese.ini
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\STRING\EC_Russian.ini
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\STRING\EC_Spanish.ini
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\STRING\JP_Japanese.ini
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\STRING\US_English.ini
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\STRING\US_Korean.ini
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Extra\res\STRING\US_SimplifiedChinese.ini
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\ANIMIMG\USBANIM.AV_
MS Compress archive data, SZDD variant, i is last character of original name, original size: 2396160 bytes
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\DDI\CNWIDSCK.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\DDI\CNWIDSK.INI
Generic INItialization configuration [OLDCONFIG]
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\DDI\XML\SLPDiscoveryGA1.xml
XML 1.0 document, ASCII text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\DDI\XML\SNMPDiscoveryGA1.xml
exported SGML document, ASCII text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\DDI\cnwdsck6.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\ENVINI.INI
Generic INItialization configuration [Canon iPF770_x64]
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\EULAC.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\EULAF.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\EULAG.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\EULAI.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\EULAJ.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\EULAO.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\EULAP.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\EULAR.RTF
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\EULAS.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\EULAU.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\INSDRV.INI
Generic INItialization configuration [DriverSetPath]
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\InsCmn.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\SetupUIC.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\SetupUIF.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\SetupUIG.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\SetupUII.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\SetupUIJ.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\SetupUIO.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\SetupUIP.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\SetupUIR.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\SetupUIS.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\SetupUIU.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\UNINSTAL.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\UninsUIC.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\UninsUIF.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\UninsUIG.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\UninsUII.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\UninsUIJ.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\UninsUIO.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\UninsUIP.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\UninsUIR.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\UninsUIS.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\UninsUIU.dll
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\MISC\Uninst.ini
Generic INItialization configuration [Profiles]
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\CHECKSUM
ASCII text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Drv\100\cnwgdi10.hdi
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Drv\101\cnwgdi10.hdi
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Drv\102\cnwgdi10.hdi
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Drv\110\cnwgdi11.hdi
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Drv\111\cnwgdi11.hdi
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Drv\120\cnwgdi12.hdi
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Drv\91\cnwgdi9.hdi
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Drv\92\cnwgdi9.hdi
PE32+ executable (DLL) (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Eula\EULA_C.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Eula\EULA_E.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Eula\EULA_F.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Eula\EULA_G.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Eula\EULA_I.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Eula\EULA_J.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Eula\EULA_K.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Eula\EULA_P.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Eula\EULA_R.RTF
Rich Text Format data, version 1, ANSI, code page 1252, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Eula\EULA_S.RTF
Rich Text Format data, version 1, ANSI, code page 932, default language ID 1033
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Readme\Readme_Chinese_Simplified.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Readme\Readme_English.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Readme\Readme_French.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Readme\Readme_German.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Readme\Readme_Italian.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Readme\Readme_Japanese.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Readme\Readme_Korean.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Readme\Readme_Portuguese.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Readme\Readme_Russian.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Readme\Readme_Spanish.txt
Unicode text, UTF-16, little-endian text, with CRLF line terminators
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Setup.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\Uninstal.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\cnwgdicp.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\OptDrv\cnwgdicp.ini
Generic INItialization configuration [SupportLanguage]
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Setup.exe
PE32+ executable (GUI) x86-64, for MS Windows
dropped
C:\Users\user\Desktop\iPF770Series-Drv-Win64-491\64bit\Setup.ini
Generic INItialization configuration [SupportOS]
dropped
There are 213 hidden files, click here to show them.

Processes

Path
Cmdline
Malicious
C:\Users\user\Desktop\SecuriteInfo.com.BScope.TrojanDownloader.Adload.19603.9288.exe
"C:\Users\user\Desktop\SecuriteInfo.com.BScope.TrojanDownloader.Adload.19603.9288.exe"
malicious

URLs

Name
IP
Malicious
http://www.winzip.com
unknown
http://crl.thawte.com/ThawteTimestampingCA.crl0
unknown
http://ocsp.thawte.com0
unknown

Memdumps

Base Address
Regiontype
Protect
Malicious
34DE000
heap
page read and write
1DF000
stack
page read and write
340A000
heap
page read and write
400000
unkown
page readonly
17F000
stack
page read and write
99000
stack
page read and write
34B5000
heap
page read and write
426000
unkown
page readonly
3595000
heap
page read and write
417000
unkown
page write copy
2C26000
unkown
page readonly
E26000
unkown
page readonly
140000
heap
page read and write
34D7000
heap
page read and write
E26000
unkown
page readonly
33D3000
heap
page read and write
180000
heap
page read and write
35A4000
heap
page read and write
2226000
unkown
page readonly
34B9000
heap
page read and write
33D3000
heap
page read and write
34CD000
heap
page read and write
340B000
heap
page read and write
3405000
heap
page read and write
413000
unkown
page readonly
DC000
stack
page read and write
1826000
unkown
page readonly
34C9000
heap
page read and write
150000
heap
page read and write
2226000
unkown
page readonly
35AB000
heap
page read and write
33F2000
heap
page read and write
401000
unkown
page execute read
426000
unkown
page readonly
340A000
heap
page read and write
2C26000
unkown
page readonly
417000
unkown
page read and write
35AE000
heap
page read and write
35A0000
heap
page read and write
34D4000
heap
page read and write
401000
unkown
page execute read
400000
unkown
page readonly
1CE000
stack
page read and write
1826000
unkown
page readonly
340A000
heap
page read and write
1826000
unkown
page readonly
3426000
heap
page read and write
3406000
heap
page read and write
423000
unkown
page read and write
33E9000
heap
page read and write
2226000
unkown
page readonly
33DC000
heap
page read and write
413000
unkown
page readonly
E26000
unkown
page readonly
426000
unkown
page readonly
2C26000
unkown
page readonly
There are 46 hidden memdumps, click here to show them.