flash

http://citadoncw.citadon.com/support/CitadonCW/downloads/8.1.7/setup.exe

Status: finished
Submission Time: 15.01.2020 00:18:26
Clean

Comments

Tags

Details

  • Analysis ID:
    201044
  • API (Web) ID:
    299878
  • Analysis Started:
    15.01.2020 00:18:26
  • Analysis Finished:
    15.01.2020 00:27:43
  • Technologies:
Full Report Engine Info Verdict Score Reports

System: Windows 10 64 bit (version 1803) with Office 2016, Adobe Reader DC 19, Chrome 70, Firefox 63, Java 8.171, Flash 30.0.0.113

clean
10/100

IPs

IP Country Detection
64.41.150.60
United States

Domains

Name IP Detection
citadoncw.citadon.com
64.41.150.60

URLs

Name Detection
http://citadoncw.citadon.com/support/CitadonCW/downloads/8.1.7/setup.exeyR
http://citadoncw.citadon.com/support/CitadonCW/downloads/8.1.7/setup.exevR
http://citadoncw.citadon.com/support/CitadonCW/downloads/8.1.7/setup.execR
Click to see the 7 hidden entries
https://%hx.rra0
http://citadoncw.citadon.com/support/CitadonCW/downloads/8.1.7/setup.exeaR
http://citadoncw.citadon.com/support/CitadonCW/downloads/8.1.7/setup.exepR
http://citadoncw.citadon.com/support/CitadonCW/downloads/8.1.7/setup.exe
http://citadoncw.citadon.com/support/CitadonCW/downloads/8.1.7/setup.exenited
http://www.citadon.com
http://www.citadon.com/support/CitadonCW/index.html

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Temp\MSI4568.tmp
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\_is7F1B\0x0409.ini
data
#
C:\Users\user\AppData\Local\Temp\_is7F1B\Citadon CW.msi
data
#
Click to see the 14 hidden entries
C:\Users\user\AppData\Local\Temp\_is7F1B\ISScript8.Msi
data
#
C:\Users\user\AppData\Local\Temp\_is7F1B\Setup.INI
data
#
C:\Users\user\AppData\Local\Temp\_is7F1B\_ISMSIDEL.INI
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\{9AD8EC0B-F59F-4F63-AD05-3DE87B248F99}\IGdi.dll
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\{9AD8EC0B-F59F-4F63-AD05-3DE87B248F99}\ISRT.DLL
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\{9AD8EC0B-F59F-4F63-AD05-3DE87B248F99}\IsConfig.INI
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\{9AD8EC0B-F59F-4F63-AD05-3DE87B248F99}\String1033.txt
Little-endian UTF-16 Unicode text, with CRLF, CR line terminators
#
C:\Users\user\AppData\Local\Temp\{9AD8EC0B-F59F-4F63-AD05-3DE87B248F99}\_ISRES.DLL
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\{9AD8EC0B-F59F-4F63-AD05-3DE87B248F99}\_ISUSER.DLL
PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\{9AD8EC0B-F59F-4F63-AD05-3DE87B248F99}\install_1.bmp
PC bitmap, Windows 3.x format, 200 x 59 x 24
#
C:\Users\user\AppData\Local\Temp\{9AD8EC0B-F59F-4F63-AD05-3DE87B248F99}\setup.inx
data
#
C:\Users\user\AppData\Local\Temp\~7EEB.tmp
data
#
C:\Users\user\Desktop\cmdline.out
ASCII text, with CRLF line terminators
#
C:\Users\user\Desktop\download\setup.exe
PE32 executable (GUI) Intel 80386, for MS Windows
#