Size | 618.0KB |
---|---|
Type | HTML document, ASCII text, with very long lines (324) |
MD5 | a566a6357791becf710bb107f93b9eda |
SHA1 | 07b96ea4c1f4677db912f4ecf6376ca29fd5574c |
SHA256 | a6639e82aa558d8df01f55284df00378b7a338bc087b4d65066f1c6c7e986997 |
SHA512 |
419c911aa0bf3d0a21c7c849aa1745e6d7fbf3621df4ca959c64d4ea0b334af391f42ff852bccf5ea957df6cb19bd6a4ba8dea767593e8d7cc2cd65f59e56e33
|
CRC32 | 780A28F2 |
ssdeep | None |
Yara | None matched |
Please notice: The scoring system is currently still in development and should be considered an alpha feature.
Expecting different results? Send us this analysis and we will inspect it. Click here
Category | Started | Completed | Duration | Routing | Logs |
---|---|---|---|---|---|
FILE | April 14, 2025, 10:44 a.m. | April 14, 2025, 10:50 a.m. | 395 seconds | internet |
Show Analyzer Log Show Cuckoo Log |
2025-04-11 16:36:06,030 [analyzer] DEBUG: Starting analyzer from: C:\tmp4w2pkt 2025-04-11 16:36:06,062 [analyzer] DEBUG: Pipe server name: \??\PIPE\yozdwizGPkZhZWsIbbn 2025-04-11 16:36:06,062 [analyzer] DEBUG: Log pipe server name: \??\PIPE\lnmHdYJCTCVzQrnTRNHwm 2025-04-11 16:36:06,062 [analyzer] DEBUG: No analysis package specified, trying to detect it automagically. 2025-04-11 16:36:06,125 [analyzer] INFO: Automatically selected analysis package "ie" 2025-04-11 16:36:06,546 [analyzer] DEBUG: Started auxiliary module Curtain 2025-04-11 16:36:06,562 [analyzer] DEBUG: Started auxiliary module DbgView 2025-04-11 16:36:07,296 [analyzer] DEBUG: Started auxiliary module Disguise 2025-04-11 16:36:07,500 [analyzer] DEBUG: Loaded monitor into process with pid 508 2025-04-11 16:36:07,500 [analyzer] DEBUG: Started auxiliary module DumpTLSMasterSecrets 2025-04-11 16:36:07,500 [analyzer] DEBUG: Started auxiliary module Human 2025-04-11 16:36:07,500 [analyzer] DEBUG: Started auxiliary module InstallCertificate 2025-04-11 16:36:07,500 [analyzer] DEBUG: Started auxiliary module Reboot 2025-04-11 16:36:07,592 [analyzer] DEBUG: Started auxiliary module RecentFiles 2025-04-11 16:36:07,592 [analyzer] DEBUG: Started auxiliary module Screenshots 2025-04-11 16:36:07,592 [analyzer] DEBUG: Started auxiliary module Sysmon 2025-04-11 16:36:07,592 [analyzer] DEBUG: Started auxiliary module LoadZer0m0n 2025-04-11 16:36:07,608 [modules.packages.ie] INFO: Submitted file is missing extension, adding .html 2025-04-11 16:36:07,780 [lib.api.process] INFO: Successfully executed process from path 'C:\\Program Files\\Internet Explorer\\iexplore.exe' with arguments [u'C:\\Users\\ADMINI~1\\AppData\\Local\\Temp\\a6639e82aa558d8df01f55284df00378b7a338bc087b4d65066f1c6c7e986997.html'] and pid 600 2025-04-11 16:36:07,967 [analyzer] DEBUG: Loaded monitor into process with pid 600 2025-04-11 16:36:10,155 [analyzer] DEBUG: Following legitimate IE11 process: "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:600 CREDAT:275457 /prefetch:2! 2025-04-11 16:36:10,217 [analyzer] INFO: Injected into process with pid 2820 and name u'iexplore.exe' 2025-04-11 16:36:10,296 [lib.api.process] ERROR: Failed to dump memory of 32-bit process with pid 2820. 2025-04-11 16:36:10,421 [analyzer] INFO: Added new file to list with pid 600 and path C:\Users\Administrator\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{4DD1CB21-16E2-11F0-99EB-0CEAD772813F}.dat 2025-04-11 16:36:10,467 [analyzer] DEBUG: Loaded monitor into process with pid 2820 2025-04-11 16:36:10,467 [analyzer] INFO: Added new file to list with pid 600 and path C:\Users\Administrator\AppData\Local\Temp\~DF42CB9D9E65632C18.TMP 2025-04-11 16:36:10,765 [analyzer] DEBUG: Error resolving function mshtml!CDocument_write through our custom callback. 2025-04-11 16:36:10,765 [analyzer] DEBUG: Error resolving function mshtml!CElement_put_innerHTML through our custom callback. 2025-04-11 16:36:10,765 [analyzer] DEBUG: Error resolving function mshtml!CHyperlink_SetUrlComponent through our custom callback. 2025-04-11 16:36:10,765 [analyzer] DEBUG: Error resolving function mshtml!CIFrameElement_CreateElement through our custom callback. 2025-04-11 16:36:10,765 [analyzer] DEBUG: Error resolving function mshtml!CImgElement_put_src through our custom callback. 2025-04-11 16:36:10,765 [analyzer] DEBUG: Error resolving function mshtml!CScriptElement_put_src through our custom callback. 2025-04-11 16:36:10,765 [analyzer] DEBUG: Error resolving function mshtml!CWindow_AddTimeoutCode through our custom callback. 2025-04-11 16:36:10,765 [analyzer] DEBUG: Error resolving function mshtml!CDocument_write through our custom callback. 2025-04-11 16:36:10,765 [analyzer] DEBUG: Error resolving function mshtml!CElement_put_innerHTML through our custom callback. 2025-04-11 16:36:10,780 [analyzer] DEBUG: Error resolving function mshtml!CHyperlink_SetUrlComponent through our custom callback. 2025-04-11 16:36:10,780 [analyzer] DEBUG: Error resolving function mshtml!CIFrameElement_CreateElement through our custom callback. 2025-04-11 16:36:10,780 [analyzer] DEBUG: Error resolving function mshtml!CImgElement_put_src through our custom callback. 2025-04-11 16:36:10,780 [analyzer] DEBUG: Error resolving function mshtml!CScriptElement_put_src through our custom callback. 2025-04-11 16:36:10,780 [analyzer] DEBUG: Error resolving function mshtml!CWindow_AddTimeoutCode through our custom callback. 2025-04-11 16:36:11,140 [analyzer] INFO: Added new file to list with pid 600 and path C:\Users\Administrator\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{4DD1CB23-16E2-11F0-99EB-0CEAD772813F}.dat 2025-04-11 16:36:11,155 [analyzer] INFO: Added new file to list with pid 600 and path C:\Users\Administrator\AppData\Local\Temp\~DFE8A6E0D77A860A1C.TMP 2025-04-11 16:36:11,233 [analyzer] DEBUG: Error resolving function mshtml!CDocument_write through our custom callback. 2025-04-11 16:36:11,233 [analyzer] DEBUG: Error resolving function mshtml!CElement_put_innerHTML through our custom callback. 2025-04-11 16:36:11,233 [analyzer] DEBUG: Error resolving function mshtml!CHyperlink_SetUrlComponent through our custom callback. 2025-04-11 16:36:11,233 [analyzer] DEBUG: Error resolving function mshtml!CIFrameElement_CreateElement through our custom callback. 2025-04-11 16:36:11,233 [analyzer] DEBUG: Error resolving function mshtml!CImgElement_put_src through our custom callback. 2025-04-11 16:36:11,233 [analyzer] DEBUG: Error resolving function mshtml!CScriptElement_put_src through our custom callback. 2025-04-11 16:36:11,233 [analyzer] DEBUG: Error resolving function mshtml!CWindow_AddTimeoutCode through our custom callback. 2025-04-11 16:36:36,796 [analyzer] INFO: Analysis timeout hit, terminating analysis. 2025-04-11 16:36:36,937 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2D85F72862B55C4EADD9E66E06947F3D 2025-04-11 16:36:36,937 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2D85F72862B55C4EADD9E66E06947F3D 2025-04-11 16:36:36,953 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\Cab9CC.tmp 2025-04-11 16:36:36,967 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\Tar9DD.tmp 2025-04-11 16:36:36,967 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\Cab9DE.tmp 2025-04-11 16:36:36,983 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\Cab9F0.tmp 2025-04-11 16:36:36,983 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\Tar9DF.tmp 2025-04-11 16:36:36,983 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\Tar9F1.tmp 2025-04-11 16:36:37,000 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\CabA11.tmp 2025-04-11 16:36:37,015 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\TarA12.tmp 2025-04-11 16:36:37,092 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\CabA71.tmp 2025-04-11 16:36:37,092 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\TarA72.tmp 2025-04-11 16:36:37,108 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\CabA82.tmp 2025-04-11 16:36:37,108 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\TarA83.tmp 2025-04-11 16:36:37,125 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015 2025-04-11 16:36:37,125 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015 2025-04-11 16:36:37,155 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\CabAB3.tmp 2025-04-11 16:36:37,155 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\TarAB4.tmp 2025-04-11 16:36:37,187 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\CabAC5.tmp 2025-04-11 16:36:37,187 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\TarAC6.tmp 2025-04-11 16:36:37,203 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\CabAE6.tmp 2025-04-11 16:36:37,217 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\CabAE8.tmp 2025-04-11 16:36:37,217 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\TarAE7.tmp 2025-04-11 16:36:37,217 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\TarAE9.tmp 2025-04-11 16:36:37,233 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\CabB09.tmp 2025-04-11 16:36:37,250 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\CabB1B.tmp 2025-04-11 16:36:37,250 [analyzer] INFO: Terminating remaining processes before shutdown. 2025-04-11 16:36:37,265 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\TarB0A.tmp 2025-04-11 16:36:37,265 [lib.api.process] INFO: Successfully terminated process with pid 600. 2025-04-11 16:36:37,265 [analyzer] INFO: Added new file to list with pid 2820 and path C:\Users\Administrator\AppData\Local\Temp\TarB1C.tmp 2025-04-11 16:36:37,280 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tara72.tmp' does not exist, skip. 2025-04-11 16:36:37,280 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarae7.tmp' does not exist, skip. 2025-04-11 16:36:37,280 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabae8.tmp' does not exist, skip. 2025-04-11 16:36:37,280 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tar9df.tmp' does not exist, skip. 2025-04-11 16:36:37,280 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarac6.tmp' does not exist, skip. 2025-04-11 16:36:37,280 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cab9f0.tmp' does not exist, skip. 2025-04-11 16:36:37,280 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\~dfe8a6e0d77a860a1c.tmp' does not exist, skip. 2025-04-11 16:36:37,296 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\caba11.tmp' does not exist, skip. 2025-04-11 16:36:37,296 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tara12.tmp' does not exist, skip. 2025-04-11 16:36:37,296 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cab9de.tmp' does not exist, skip. 2025-04-11 16:36:37,296 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabac5.tmp' does not exist, skip. 2025-04-11 16:36:37,296 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\caba82.tmp' does not exist, skip. 2025-04-11 16:36:37,296 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabab3.tmp' does not exist, skip. 2025-04-11 16:36:37,296 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarae9.tmp' does not exist, skip. 2025-04-11 16:36:37,312 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tar9dd.tmp' does not exist, skip. 2025-04-11 16:36:37,312 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tara83.tmp' does not exist, skip. 2025-04-11 16:36:37,312 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarab4.tmp' does not exist, skip. 2025-04-11 16:36:37,312 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabae6.tmp' does not exist, skip. 2025-04-11 16:36:37,328 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tar9f1.tmp' does not exist, skip. 2025-04-11 16:36:37,328 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\caba71.tmp' does not exist, skip. 2025-04-11 16:36:37,328 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cab9cc.tmp' does not exist, skip. 2025-04-11 16:36:37,328 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\~df42cb9d9e65632c18.tmp' does not exist, skip. 2025-04-11 16:36:37,328 [analyzer] INFO: Analysis completed.
2025-04-14 10:44:21,720 [cuckoo.core.scheduler] DEBUG: Task #6279616: no machine available yet 2025-04-14 10:44:22,750 [cuckoo.core.scheduler] DEBUG: Task #6279616: no machine available yet 2025-04-14 10:44:24,103 [cuckoo.core.scheduler] DEBUG: Task #6279616: no machine available yet 2025-04-14 10:44:25,141 [cuckoo.core.scheduler] DEBUG: Task #6279616: no machine available yet 2025-04-14 10:44:26,191 [cuckoo.core.scheduler] DEBUG: Task #6279616: no machine available yet 2025-04-14 10:44:27,228 [cuckoo.core.scheduler] DEBUG: Task #6279616: no machine available yet 2025-04-14 10:44:28,270 [cuckoo.core.scheduler] DEBUG: Task #6279616: no machine available yet 2025-04-14 10:44:30,523 [cuckoo.core.scheduler] DEBUG: Task #6279616: no machine available yet 2025-04-14 10:44:31,795 [cuckoo.core.scheduler] INFO: Task #6279616: acquired machine win7x6423 (label=win7x6423) 2025-04-14 10:44:31,795 [cuckoo.core.resultserver] DEBUG: Now tracking machine 192.168.168.223 for task #6279616 2025-04-14 10:44:32,183 [cuckoo.auxiliary.sniffer] INFO: Started sniffer with PID 1034320 (interface=vboxnet0, host=192.168.168.223) 2025-04-14 10:44:32,224 [cuckoo.machinery.virtualbox] DEBUG: Starting vm win7x6423 2025-04-14 10:44:32,951 [cuckoo.machinery.virtualbox] DEBUG: Restoring virtual machine win7x6423 to vmcloak 2025-04-14 10:47:06,374 [cuckoo.core.guest] INFO: Starting analysis #6279616 on guest (id=win7x6423, ip=192.168.168.223) 2025-04-14 10:47:07,379 [cuckoo.core.guest] DEBUG: win7x6423: not ready yet 2025-04-14 10:47:12,595 [cuckoo.core.guest] INFO: Guest is running Cuckoo Agent 0.10 (id=win7x6423, ip=192.168.168.223) 2025-04-14 10:47:12,751 [cuckoo.core.guest] DEBUG: Uploading analyzer to guest (id=win7x6423, ip=192.168.168.223, monitor=latest, size=6660546) 2025-04-14 10:47:14,879 [cuckoo.core.resultserver] DEBUG: Task #6279616: live log analysis.log initialized. 2025-04-14 10:47:16,245 [cuckoo.core.resultserver] DEBUG: Task #6279616 is sending a BSON stream 2025-04-14 10:47:16,713 [cuckoo.core.resultserver] DEBUG: Task #6279616 is sending a BSON stream 2025-04-14 10:47:17,586 [cuckoo.core.resultserver] DEBUG: Task #6279616: File upload for 'shots/0001.jpg' 2025-04-14 10:47:17,603 [cuckoo.core.resultserver] DEBUG: Task #6279616 uploaded file length: 133466 2025-04-14 10:47:19,215 [cuckoo.core.resultserver] DEBUG: Task #6279616 is sending a BSON stream 2025-04-14 10:47:20,742 [cuckoo.core.resultserver] DEBUG: Task #6279616: File upload for 'shots/0002.jpg' 2025-04-14 10:47:20,746 [cuckoo.core.resultserver] DEBUG: Task #6279616 uploaded file length: 32027 2025-04-14 10:47:29,402 [cuckoo.core.guest] DEBUG: win7x6423: analysis #6279616 still processing 2025-04-14 10:47:43,511 [cuckoo.core.resultserver] DEBUG: Task #6279616: File upload for 'shots/0003.jpg' 2025-04-14 10:47:43,529 [cuckoo.core.resultserver] DEBUG: Task #6279616 uploaded file length: 76444 2025-04-14 10:47:44,554 [cuckoo.core.guest] DEBUG: win7x6423: analysis #6279616 still processing 2025-04-14 10:47:45,805 [cuckoo.core.resultserver] DEBUG: Task #6279616: File upload for 'curtain/1744382196.98.curtain.log' 2025-04-14 10:47:45,808 [cuckoo.core.resultserver] DEBUG: Task #6279616 uploaded file length: 36 2025-04-14 10:47:46,057 [cuckoo.core.resultserver] DEBUG: Task #6279616: File upload for 'sysmon/1744382197.23.sysmon.xml' 2025-04-14 10:47:46,069 [cuckoo.core.resultserver] DEBUG: Task #6279616 uploaded file length: 1149992 2025-04-14 10:47:46,103 [cuckoo.core.resultserver] DEBUG: Task #6279616: File upload for 'files/d72761e1a334a754_cabb1b.tmp' 2025-04-14 10:47:46,107 [cuckoo.core.resultserver] DEBUG: Task #6279616 uploaded file length: 73305 2025-04-14 10:47:46,109 [cuckoo.core.resultserver] DEBUG: Task #6279616: File upload for 'files/96bcec06264976f3_2d85f72862b55c4eadd9e66e06947f3d' 2025-04-14 10:47:46,111 [cuckoo.core.resultserver] DEBUG: Task #6279616 uploaded file length: 1391 2025-04-14 10:47:46,116 [cuckoo.core.resultserver] DEBUG: Task #6279616: File upload for 'files/b89779125a0d3cd6_tarb0a.tmp' 2025-04-14 10:47:46,120 [cuckoo.core.resultserver] DEBUG: Task #6279616 uploaded file length: 65536 2025-04-14 10:47:46,121 [cuckoo.core.resultserver] DEBUG: Task #6279616: File upload for 'files/4399942ed79790ab_recoverystore.{4dd1cb21-16e2-11f0-99eb-0cead772813f}.dat' 2025-04-14 10:47:46,123 [cuckoo.core.resultserver] DEBUG: Task #6279616 uploaded file length: 5632 2025-04-14 10:47:46,128 [cuckoo.core.resultserver] DEBUG: Task #6279616: File upload for 'files/ee87e411fb7f41df_2d85f72862b55c4eadd9e66e06947f3d' 2025-04-14 10:47:46,130 [cuckoo.core.resultserver] DEBUG: Task #6279616 uploaded file length: 192 2025-04-14 10:47:46,132 [cuckoo.core.resultserver] DEBUG: Task #6279616: File upload for 'files/87940ad186567245_tarb1c.tmp' 2025-04-14 10:47:46,134 [cuckoo.core.resultserver] DEBUG: Task #6279616 uploaded file length: 32768 2025-04-14 10:47:46,138 [cuckoo.core.resultserver] DEBUG: Task #6279616: File upload for 'files/1624101373175d06_{4dd1cb23-16e2-11f0-99eb-0cead772813f}.dat' 2025-04-14 10:47:46,140 [cuckoo.core.resultserver] DEBUG: Task #6279616 uploaded file length: 5120 2025-04-14 10:47:46,141 [cuckoo.core.resultserver] DEBUG: Task #6279616: File upload for 'files/c049ca5e4ef65b56_94308059b57b3142e455b38a6eb92015' 2025-04-14 10:47:46,143 [cuckoo.core.resultserver] DEBUG: Task #6279616 uploaded file length: 344 2025-04-14 10:47:46,755 [cuckoo.core.resultserver] DEBUG: Task #6279616: File upload for 'shots/0004.jpg' 2025-04-14 10:47:46,775 [cuckoo.core.resultserver] DEBUG: Task #6279616 uploaded file length: 133466 2025-04-14 10:47:46,795 [cuckoo.core.resultserver] DEBUG: Task #6279616 had connection reset for <Context for LOG> 2025-04-14 10:47:47,568 [cuckoo.core.guest] INFO: win7x6423: analysis completed successfully 2025-04-14 10:47:47,598 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Redsocks 2025-04-14 10:47:47,641 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Sniffer 2025-04-14 10:47:48,846 [cuckoo.machinery.virtualbox] INFO: Successfully generated memory dump for virtual machine with label win7x6423 to path /srv/cuckoo/cwd/storage/analyses/6279616/memory.dmp 2025-04-14 10:47:48,855 [cuckoo.machinery.virtualbox] DEBUG: Stopping vm win7x6423 2025-04-14 10:50:56,847 [cuckoo.core.resultserver] DEBUG: Stopped tracking machine 192.168.168.223 for task #6279616 2025-04-14 10:50:57,211 [cuckoo.core.scheduler] DEBUG: Released database task #6279616 2025-04-14 10:50:57,232 [cuckoo.core.scheduler] INFO: Task #6279616: analysis procedure completed
cmdline | "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:600 CREDAT:275457 /prefetch:2 |
Avast Core Security (Linux) | HTML:FakeShop-CJ [Scam] |