Size | 16.5KB |
---|---|
Type | HTML document, Unicode text, UTF-8 text |
MD5 | e32d57396e8257ad22eaa77a9e908eba |
SHA1 | 12c1ff53cd7c39cfd34629eac9d1614eac03d137 |
SHA256 | 481fb206b565286a2c95bfc9d8a94db88c0d8af068b76f7b12428b0a144386bc |
SHA512 |
3c74ddf4c20a38a84dd262d8235e75a24168e87367e1632c7c40cae01f731bf1805efd2990bb0402f860356f117ccbbe111dfd517c3a4e8cb33a275f6e469221
|
CRC32 | 95140BA9 |
ssdeep | None |
Yara | None matched |
This file is very suspicious, with a score of 10 out of 10!
Please notice: The scoring system is currently still in development and should be considered an alpha feature.
Expecting different results? Send us this analysis and we will inspect it. Click here
Category | Started | Completed | Duration | Routing | Logs |
---|---|---|---|---|---|
FILE | April 29, 2025, 9:27 p.m. | April 29, 2025, 9:35 p.m. | 447 seconds | internet |
Show Analyzer Log Show Cuckoo Log |
2025-04-29 16:28:03,000 [analyzer] DEBUG: Starting analyzer from: C:\tmpqnr2dk 2025-04-29 16:28:03,015 [analyzer] DEBUG: Pipe server name: \??\PIPE\daJSHXwANaSdYYjmMGZNtdDhCW 2025-04-29 16:28:03,015 [analyzer] DEBUG: Log pipe server name: \??\PIPE\aPrUPEAGcszNLyplvyYhHCAZul 2025-04-29 16:28:03,015 [analyzer] DEBUG: No analysis package specified, trying to detect it automagically. 2025-04-29 16:28:03,015 [analyzer] INFO: Automatically selected analysis package "ie" 2025-04-29 16:28:03,265 [analyzer] DEBUG: Started auxiliary module Curtain 2025-04-29 16:28:03,265 [analyzer] DEBUG: Started auxiliary module DbgView 2025-04-29 16:28:03,640 [analyzer] DEBUG: Started auxiliary module Disguise 2025-04-29 16:28:03,842 [analyzer] DEBUG: Loaded monitor into process with pid 504 2025-04-29 16:28:03,842 [analyzer] DEBUG: Started auxiliary module DumpTLSMasterSecrets 2025-04-29 16:28:03,842 [analyzer] DEBUG: Started auxiliary module Human 2025-04-29 16:28:03,842 [analyzer] DEBUG: Started auxiliary module InstallCertificate 2025-04-29 16:28:03,842 [analyzer] DEBUG: Started auxiliary module Reboot 2025-04-29 16:28:03,875 [analyzer] DEBUG: Started auxiliary module RecentFiles 2025-04-29 16:28:03,875 [analyzer] DEBUG: Started auxiliary module Screenshots 2025-04-29 16:28:03,921 [analyzer] DEBUG: Started auxiliary module Sysmon 2025-04-29 16:28:03,921 [analyzer] DEBUG: Started auxiliary module LoadZer0m0n 2025-04-29 16:28:03,921 [modules.packages.ie] INFO: Submitted file is missing extension, adding .html 2025-04-29 16:28:04,030 [lib.api.process] INFO: Successfully executed process from path 'C:\\Program Files\\Internet Explorer\\iexplore.exe' with arguments [u'C:\\Users\\ADMINI~1\\AppData\\Local\\Temp\\481fb206b565286a2c95bfc9d8a94db88c0d8af068b76f7b12428b0a144386bc.html'] and pid 2172 2025-04-29 16:28:04,187 [analyzer] DEBUG: Loaded monitor into process with pid 2172 2025-04-29 16:28:05,750 [analyzer] DEBUG: Following legitimate IE11 process: "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:2172 CREDAT:275457 /prefetch:2! 2025-04-29 16:28:05,842 [analyzer] INFO: Injected into process with pid 2044 and name u'iexplore.exe' 2025-04-29 16:28:05,905 [lib.api.process] ERROR: Failed to dump memory of 32-bit process with pid 2044. 2025-04-29 16:28:06,015 [analyzer] INFO: Added new file to list with pid 2172 and path C:\Users\Administrator\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{28C25EC7-2506-11F0-B23A-80D4D9282D05}.dat 2025-04-29 16:28:06,062 [analyzer] INFO: Added new file to list with pid 2172 and path C:\Users\Administrator\AppData\Local\Temp\~DF19A0C8BD17B68932.TMP 2025-04-29 16:28:06,078 [analyzer] DEBUG: Loaded monitor into process with pid 2044 2025-04-29 16:28:06,296 [analyzer] DEBUG: Error resolving function mshtml!CDocument_write through our custom callback. 2025-04-29 16:28:06,312 [analyzer] DEBUG: Error resolving function mshtml!CElement_put_innerHTML through our custom callback. 2025-04-29 16:28:06,312 [analyzer] DEBUG: Error resolving function mshtml!CHyperlink_SetUrlComponent through our custom callback. 2025-04-29 16:28:06,312 [analyzer] DEBUG: Error resolving function mshtml!CIFrameElement_CreateElement through our custom callback. 2025-04-29 16:28:06,312 [analyzer] DEBUG: Error resolving function mshtml!CImgElement_put_src through our custom callback. 2025-04-29 16:28:06,312 [analyzer] DEBUG: Error resolving function mshtml!CScriptElement_put_src through our custom callback. 2025-04-29 16:28:06,312 [analyzer] DEBUG: Error resolving function mshtml!CWindow_AddTimeoutCode through our custom callback. 2025-04-29 16:28:06,312 [analyzer] DEBUG: Error resolving function mshtml!CDocument_write through our custom callback. 2025-04-29 16:28:06,312 [analyzer] DEBUG: Error resolving function mshtml!CElement_put_innerHTML through our custom callback. 2025-04-29 16:28:06,328 [analyzer] DEBUG: Error resolving function mshtml!CHyperlink_SetUrlComponent through our custom callback. 2025-04-29 16:28:06,328 [analyzer] DEBUG: Error resolving function mshtml!CIFrameElement_CreateElement through our custom callback. 2025-04-29 16:28:06,328 [analyzer] DEBUG: Error resolving function mshtml!CImgElement_put_src through our custom callback. 2025-04-29 16:28:06,328 [analyzer] DEBUG: Error resolving function mshtml!CScriptElement_put_src through our custom callback. 2025-04-29 16:28:06,328 [analyzer] DEBUG: Error resolving function mshtml!CWindow_AddTimeoutCode through our custom callback. 2025-04-29 16:28:06,655 [analyzer] INFO: Added new file to list with pid 2172 and path C:\Users\Administrator\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{28C25EC9-2506-11F0-B23A-80D4D9282D05}.dat 2025-04-29 16:28:06,687 [analyzer] INFO: Added new file to list with pid 2172 and path C:\Users\Administrator\AppData\Local\Temp\~DF8F0BBD2B21094B54.TMP 2025-04-29 16:28:06,733 [analyzer] DEBUG: Error resolving function mshtml!CDocument_write through our custom callback. 2025-04-29 16:28:06,733 [analyzer] DEBUG: Error resolving function mshtml!CElement_put_innerHTML through our custom callback. 2025-04-29 16:28:06,750 [analyzer] DEBUG: Error resolving function mshtml!CHyperlink_SetUrlComponent through our custom callback. 2025-04-29 16:28:06,750 [analyzer] DEBUG: Error resolving function mshtml!CIFrameElement_CreateElement through our custom callback. 2025-04-29 16:28:06,750 [analyzer] DEBUG: Error resolving function mshtml!CImgElement_put_src through our custom callback. 2025-04-29 16:28:06,750 [analyzer] DEBUG: Error resolving function mshtml!CScriptElement_put_src through our custom callback. 2025-04-29 16:28:06,750 [analyzer] DEBUG: Error resolving function mshtml!CWindow_AddTimeoutCode through our custom callback. 2025-04-29 16:28:12,203 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\14232B434CF29D4C4FB335A86D7FFFE3 2025-04-29 16:28:12,203 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\14232B434CF29D4C4FB335A86D7FFFE3 2025-04-29 16:28:12,217 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\Local\Temp\Cab4698.tmp 2025-04-29 16:28:12,250 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\Local\Temp\Tar4699.tmp 2025-04-29 16:28:12,250 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\Local\Temp\Cab46B9.tmp 2025-04-29 16:28:12,265 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\Local\Temp\Tar46BA.tmp 2025-04-29 16:28:12,358 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015 2025-04-29 16:28:12,375 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015 2025-04-29 16:28:12,390 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\Local\Temp\Cab4738.tmp 2025-04-29 16:28:12,390 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\Local\Temp\Tar4739.tmp 2025-04-29 16:28:12,421 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\Local\Temp\Cab4769.tmp 2025-04-29 16:28:12,437 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\Local\Temp\Tar476A.tmp 2025-04-29 16:28:12,578 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8B2B9A00839EED1DFDCCC3BFC2F5DF12 2025-04-29 16:28:12,578 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8B2B9A00839EED1DFDCCC3BFC2F5DF12 2025-04-29 16:28:12,640 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B46811C17859FFB409CF0E904A4AA8F8 2025-04-29 16:28:12,640 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B46811C17859FFB409CF0E904A4AA8F8 2025-04-29 16:28:12,671 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\Local\Temp\Cab4865.tmp 2025-04-29 16:28:12,687 [analyzer] INFO: Added new file to list with pid 2044 and path C:\Users\Administrator\AppData\Local\Temp\Tar4866.tmp 2025-04-29 20:32:23,618 [analyzer] INFO: Analysis timeout hit, terminating analysis. 2025-04-29 20:32:24,088 [analyzer] INFO: Terminating remaining processes before shutdown. 2025-04-29 20:32:24,088 [lib.api.process] INFO: Successfully terminated process with pid 2172. 2025-04-29 20:32:24,088 [lib.api.process] INFO: Successfully terminated process with pid 2044. 2025-04-29 20:32:24,088 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tar4739.tmp' does not exist, skip. 2025-04-29 20:32:24,118 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tar46ba.tmp' does not exist, skip. 2025-04-29 20:32:24,134 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tar4866.tmp' does not exist, skip. 2025-04-29 20:32:24,134 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\~df8f0bbd2b21094b54.tmp' does not exist, skip. 2025-04-29 20:32:24,150 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tar476a.tmp' does not exist, skip. 2025-04-29 20:32:24,150 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cab46b9.tmp' does not exist, skip. 2025-04-29 20:32:24,150 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cab4738.tmp' does not exist, skip. 2025-04-29 20:32:24,150 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cab4769.tmp' does not exist, skip. 2025-04-29 20:32:24,150 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\~df19a0c8bd17b68932.tmp' does not exist, skip. 2025-04-29 20:32:24,150 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tar4699.tmp' does not exist, skip. 2025-04-29 20:32:24,165 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cab4698.tmp' does not exist, skip. 2025-04-29 20:32:24,165 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cab4865.tmp' does not exist, skip. 2025-04-29 20:32:24,165 [analyzer] INFO: Analysis completed.
2025-04-29 21:27:50,352 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:27:51,411 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:27:52,439 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:27:53,468 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:27:54,495 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:27:55,523 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:27:56,626 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:27:57,653 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:27:58,677 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:27:59,708 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:28:00,734 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:28:01,763 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:28:02,788 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:28:03,812 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:28:04,834 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:28:05,861 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:28:06,969 [cuckoo.core.scheduler] DEBUG: Task #6358661: no machine available yet 2025-04-29 21:28:08,048 [cuckoo.core.scheduler] INFO: Task #6358661: acquired machine win7x6415 (label=win7x6415) 2025-04-29 21:28:08,051 [cuckoo.core.resultserver] DEBUG: Now tracking machine 192.168.168.215 for task #6358661 2025-04-29 21:28:08,469 [cuckoo.auxiliary.sniffer] INFO: Started sniffer with PID 2838641 (interface=vboxnet0, host=192.168.168.215) 2025-04-29 21:28:08,603 [cuckoo.machinery.virtualbox] DEBUG: Starting vm win7x6415 2025-04-29 21:28:09,233 [cuckoo.machinery.virtualbox] DEBUG: Restoring virtual machine win7x6415 to vmcloak 2025-04-29 21:31:46,177 [cuckoo.core.guest] INFO: Starting analysis #6358661 on guest (id=win7x6415, ip=192.168.168.215) 2025-04-29 21:31:47,282 [cuckoo.core.guest] DEBUG: win7x6415: not ready yet 2025-04-29 21:31:52,313 [cuckoo.core.guest] INFO: Guest is running Cuckoo Agent 0.10 (id=win7x6415, ip=192.168.168.215) 2025-04-29 21:31:52,473 [cuckoo.core.guest] DEBUG: Uploading analyzer to guest (id=win7x6415, ip=192.168.168.215, monitor=latest, size=6660546) 2025-04-29 21:31:53,597 [cuckoo.core.resultserver] DEBUG: Task #6358661: live log analysis.log initialized. 2025-04-29 21:31:54,365 [cuckoo.core.resultserver] DEBUG: Task #6358661 is sending a BSON stream 2025-04-29 21:31:54,709 [cuckoo.core.resultserver] DEBUG: Task #6358661 is sending a BSON stream 2025-04-29 21:31:55,572 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'shots/0001.jpg' 2025-04-29 21:31:55,584 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 133466 2025-04-29 21:31:56,734 [cuckoo.core.resultserver] DEBUG: Task #6358661 is sending a BSON stream 2025-04-29 21:31:57,684 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'shots/0002.jpg' 2025-04-29 21:31:57,686 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 24445 2025-04-29 21:31:58,757 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'shots/0003.jpg' 2025-04-29 21:31:58,760 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 32023 2025-04-29 21:32:08,316 [cuckoo.core.guest] DEBUG: win7x6415: analysis #6358661 still processing 2025-04-29 21:32:20,556 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'shots/0004.jpg' 2025-04-29 21:32:20,562 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 68247 2025-04-29 21:32:23,653 [cuckoo.core.guest] DEBUG: win7x6415: analysis #6358661 still processing 2025-04-29 21:32:23,815 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'curtain/1745951543.81.curtain.log' 2025-04-29 21:32:23,821 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 36 2025-04-29 21:32:24,047 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'sysmon/1745951544.04.sysmon.xml' 2025-04-29 21:32:24,116 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 1208064 2025-04-29 21:32:24,127 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'files/ebd41040e4bb3ec7_14232b434cf29d4c4fb335a86d7fffe3' 2025-04-29 21:32:24,133 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 889 2025-04-29 21:32:24,139 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'files/5d9ebc1531ef4bdd_14232b434cf29d4c4fb335a86d7fffe3' 2025-04-29 21:32:24,146 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 170 2025-04-29 21:32:24,149 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'files/b2f325af5afc668e_b46811c17859ffb409cf0e904a4aa8f8' 2025-04-29 21:32:24,154 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 170 2025-04-29 21:32:24,156 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'files/5b78ddd5dd0963fd_{28c25ec9-2506-11f0-b23a-80d4d9282d05}.dat' 2025-04-29 21:32:24,164 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 5120 2025-04-29 21:32:24,186 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'files/fb6a7c3edcd7b97f_8b2b9a00839eed1dfdccc3bfc2f5df12' 2025-04-29 21:32:24,190 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 1739 2025-04-29 21:32:24,192 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'files/5cf901021ace0cc3_recoverystore.{28c25ec7-2506-11f0-b23a-80d4d9282d05}.dat' 2025-04-29 21:32:24,194 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 5632 2025-04-29 21:32:24,197 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'files/e8e9e1ba08319465_8b2b9a00839eed1dfdccc3bfc2f5df12' 2025-04-29 21:32:24,200 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 174 2025-04-29 21:32:24,204 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'files/d72761e1a334a754_94308059b57b3142e455b38a6eb92015' 2025-04-29 21:32:24,208 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 73305 2025-04-29 21:32:24,215 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'files/6fb1b8e593cb0388_b46811c17859ffb409cf0e904a4aa8f8' 2025-04-29 21:32:24,220 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 530 2025-04-29 21:32:24,224 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'files/177fe1a421a70bc3_94308059b57b3142e455b38a6eb92015' 2025-04-29 21:32:24,236 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 344 2025-04-29 21:32:24,751 [cuckoo.core.resultserver] DEBUG: Task #6358661: File upload for 'shots/0005.jpg' 2025-04-29 21:32:24,766 [cuckoo.core.resultserver] DEBUG: Task #6358661 uploaded file length: 133466 2025-04-29 21:32:24,783 [cuckoo.core.resultserver] DEBUG: Task #6358661 had connection reset for <Context for LOG> 2025-04-29 21:32:26,680 [cuckoo.core.guest] INFO: win7x6415: analysis completed successfully 2025-04-29 21:32:26,693 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Redsocks 2025-04-29 21:32:26,743 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Sniffer 2025-04-29 21:32:27,799 [cuckoo.machinery.virtualbox] INFO: Successfully generated memory dump for virtual machine with label win7x6415 to path /srv/cuckoo/cwd/storage/analyses/6358661/memory.dmp 2025-04-29 21:32:27,814 [cuckoo.machinery.virtualbox] DEBUG: Stopping vm win7x6415 2025-04-29 21:35:16,768 [cuckoo.core.resultserver] DEBUG: Stopped tracking machine 192.168.168.215 for task #6358661 2025-04-29 21:35:17,746 [cuckoo.core.scheduler] DEBUG: Released database task #6358661 2025-04-29 21:35:17,765 [cuckoo.core.scheduler] INFO: Task #6358661: analysis procedure completed
cmdline | "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:2172 CREDAT:275457 /prefetch:2 |
Avast Core Security (Linux) | HTML:DatingScam-D [Scam] |
WithSecure (Linux) | Malware.HTML/Phish.PDTD |
Avast | HTML:DatingScam-D [Scam] |
Cynet | Malicious (score: 99) |
F-Secure | Malware.HTML/Phish.PDTD |
Detected | |
Avira | HTML/Phish.PDTD |
Varist | JS/Phish.AYV!Eldorado |
Tencent | Html.Win32.Script.506025 |
Fortinet | HTML/Phish.PDTD!tr |
AVG | HTML:DatingScam-D [Scam] |