Size | 184.5KB |
---|---|
Type | PE32 executable (DLL) (GUI) Intel 80386 Mono/.Net assembly, for MS Windows |
MD5 | 3f55420929c97864702b1f49d58a562c |
SHA1 | b7d3f8c8d39d3dda4eb55166dd8ee9d3b00ef25d |
SHA256 | 519bf02183e3ec8aaf7f4c2c09a027ac80bd788f9354966546a30f62f10e704d |
SHA512 |
e9f5b7d4542684d3d4de54d482edcd7738c431af214e48d922ae4b343fdbee73cf8e5f922c6ffbd05b77ef744cd2aa57147815c507336165b62bab7ccb4631b0
|
CRC32 | 66C03568 |
ssdeep | None |
Yara |
|
Please notice: The scoring system is currently still in development and should be considered an alpha feature.
Expecting different results? Send us this analysis and we will inspect it. Click here
Category | Started | Completed | Duration | Routing | Logs |
---|---|---|---|---|---|
FILE | July 3, 2025, 12:20 p.m. | July 3, 2025, 12:30 p.m. | 548 seconds | internet |
Show Analyzer Log Show Cuckoo Log |
2025-07-03 12:15:21,015 [analyzer] DEBUG: Starting analyzer from: C:\tmp1xmcit 2025-07-03 12:15:21,030 [analyzer] DEBUG: Pipe server name: \??\PIPE\BNatfCFnTMvdrIzAbqIsJOstakUsJE 2025-07-03 12:15:21,030 [analyzer] DEBUG: Log pipe server name: \??\PIPE\EjhobUsesNTUIohCGNgigliWDVbG 2025-07-03 12:15:21,265 [analyzer] DEBUG: Started auxiliary module Curtain 2025-07-03 12:15:21,265 [analyzer] DEBUG: Started auxiliary module DbgView 2025-07-03 12:15:21,703 [analyzer] DEBUG: Started auxiliary module Disguise 2025-07-03 12:15:22,000 [analyzer] DEBUG: Loaded monitor into process with pid 508 2025-07-03 12:15:22,000 [analyzer] DEBUG: Started auxiliary module DumpTLSMasterSecrets 2025-07-03 12:15:22,000 [analyzer] DEBUG: Started auxiliary module Human 2025-07-03 12:15:22,000 [analyzer] DEBUG: Started auxiliary module InstallCertificate 2025-07-03 12:15:22,000 [analyzer] DEBUG: Started auxiliary module Reboot 2025-07-03 12:15:22,187 [analyzer] DEBUG: Started auxiliary module RecentFiles 2025-07-03 12:15:22,187 [analyzer] DEBUG: Started auxiliary module Screenshots 2025-07-03 12:15:22,203 [analyzer] DEBUG: Started auxiliary module Sysmon 2025-07-03 12:15:22,203 [analyzer] DEBUG: Started auxiliary module LoadZer0m0n 2025-07-03 12:15:22,296 [lib.api.process] ERROR: Failed to execute process from path u'C:\\Users\\ADMINI~1\\AppData\\Local\\Temp\\DBAppl.dll' with arguments ['bin\\inject-x86.exe', '--app', u'C:\\Users\\ADMINI~1\\AppData\\Local\\Temp\\DBAppl.dll', '--only-start', '--curdir', 'C:\\Users\\ADMINI~1\\AppData\\Local\\Temp'] (Error: Command '['bin\\inject-x86.exe', '--app', u'C:\\Users\\ADMINI~1\\AppData\\Local\\Temp\\DBAppl.dll', '--only-start', '--curdir', 'C:\\Users\\ADMINI~1\\AppData\\Local\\Temp']' returned non-zero exit status 1)
2025-07-03 12:21:00,296 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:01,360 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:02,580 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:03,634 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:04,693 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:05,762 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:06,838 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:07,910 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:08,984 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:10,039 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:11,345 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:12,544 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:13,640 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:14,740 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:15,823 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:16,888 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:18,172 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:19,434 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:21,074 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:22,315 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:23,431 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:24,498 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:25,568 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:26,632 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:27,694 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:28,775 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:29,819 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:30,889 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:31,963 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:33,022 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:34,083 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:35,156 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:36,217 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:37,269 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:38,315 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:39,374 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:40,957 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:42,053 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:43,152 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:44,245 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:45,320 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:46,404 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:47,481 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:48,548 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:49,587 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:50,612 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:51,645 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:52,685 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:53,835 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:54,867 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:55,900 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:56,939 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:57,965 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:21:58,993 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:00,023 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:01,043 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:02,064 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:03,086 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:04,108 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:05,129 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:06,155 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:07,183 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:08,524 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:09,791 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:10,874 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:11,962 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:13,074 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:14,186 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:15,539 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:16,662 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:17,890 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:18,956 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:20,062 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:21,331 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:22,429 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:23,523 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:24,663 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:25,765 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:26,855 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:27,884 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:28,911 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:29,936 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:30,960 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:31,992 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:33,014 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:34,032 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:35,182 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:36,461 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:37,524 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:38,565 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:39,596 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:40,698 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:41,738 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:42,796 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:43,868 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:44,902 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:45,934 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:47,161 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:48,199 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:49,326 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:50,350 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:51,473 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:52,499 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:53,527 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:54,567 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:55,615 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:56,665 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:57,710 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:58,748 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:22:59,800 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:00,855 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:02,081 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:03,132 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:04,184 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:05,234 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:06,298 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:07,342 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:08,392 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:09,474 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:10,763 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:11,808 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:12,853 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:13,896 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:14,932 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:15,976 [cuckoo.core.scheduler] DEBUG: Task #6655674: no machine available yet 2025-07-03 12:23:17,301 [cuckoo.core.scheduler] INFO: Task #6655674: acquired machine win7x6414 (label=win7x6414) 2025-07-03 12:23:17,303 [cuckoo.core.resultserver] DEBUG: Now tracking machine 192.168.168.214 for task #6655674 2025-07-03 12:23:17,758 [cuckoo.auxiliary.sniffer] INFO: Started sniffer with PID 698835 (interface=vboxnet0, host=192.168.168.214) 2025-07-03 12:23:18,744 [cuckoo.machinery.virtualbox] DEBUG: Starting vm win7x6414 2025-07-03 12:23:19,404 [cuckoo.machinery.virtualbox] DEBUG: Restoring virtual machine win7x6414 to vmcloak 2025-07-03 12:26:32,643 [cuckoo.core.guest] INFO: Starting analysis #6655674 on guest (id=win7x6414, ip=192.168.168.214) 2025-07-03 12:26:33,649 [cuckoo.core.guest] DEBUG: win7x6414: not ready yet 2025-07-03 12:26:38,696 [cuckoo.core.guest] INFO: Guest is running Cuckoo Agent 0.10 (id=win7x6414, ip=192.168.168.214) 2025-07-03 12:26:38,811 [cuckoo.core.guest] DEBUG: Uploading analyzer to guest (id=win7x6414, ip=192.168.168.214, monitor=latest, size=6660546) 2025-07-03 12:26:40,241 [cuckoo.core.resultserver] DEBUG: Task #6655674: live log analysis.log initialized. 2025-07-03 12:26:41,337 [cuckoo.core.resultserver] DEBUG: Task #6655674 is sending a BSON stream 2025-07-03 12:26:42,587 [cuckoo.core.resultserver] DEBUG: Task #6655674: File upload for 'shots/0001.jpg' 2025-07-03 12:26:42,608 [cuckoo.core.resultserver] DEBUG: Task #6655674 uploaded file length: 133474 2025-07-03 12:26:42,719 [cuckoo.core.guest] WARNING: win7x6414: analysis #6655674 caught an exception Traceback (most recent call last): File "C:/tmp1xmcit/analyzer.py", line 824, in <module> success = analyzer.run() File "C:/tmp1xmcit/analyzer.py", line 673, in run pids = self.package.start(self.target) File "C:\tmp1xmcit\modules\packages\exe.py", line 34, in start return self.execute(path, args=shlex.split(args)) File "C:\tmp1xmcit\lib\common\abstracts.py", line 205, in execute "Unable to execute the initial process, analysis aborted." CuckooPackageError: Unable to execute the initial process, analysis aborted. 2025-07-03 12:26:42,761 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Redsocks 2025-07-03 12:26:42,792 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Sniffer 2025-07-03 12:26:43,916 [cuckoo.machinery.virtualbox] INFO: Successfully generated memory dump for virtual machine with label win7x6414 to path /srv/cuckoo/cwd/storage/analyses/6655674/memory.dmp 2025-07-03 12:26:43,917 [cuckoo.machinery.virtualbox] DEBUG: Stopping vm win7x6414 2025-07-03 12:30:07,109 [cuckoo.core.resultserver] DEBUG: Stopped tracking machine 192.168.168.214 for task #6655674 2025-07-03 12:30:07,109 [cuckoo.core.resultserver] DEBUG: Cancel <Context for LOG> for task 6655674 2025-07-03 12:30:07,780 [cuckoo.core.scheduler] DEBUG: Released database task #6655674 2025-07-03 12:30:07,795 [cuckoo.core.scheduler] INFO: Task #6655674: analysis procedure completed
description | Checks if being debugged | rule | anti_dbg |