Size | 24.0KB |
---|---|
Type | HTML document, Unicode text, UTF-8 text |
MD5 | f8dac665bdb6d8ce0072be568db3d1aa |
SHA1 | e6a093fe34e4ef901b89188a5c623825ff04dc43 |
SHA256 | cb1cdb50a608a80625a8cddcb6ab22df942e1c720503011070888b57b76088dc |
SHA512 |
d4eb173628d85c5f9b13607d308bd7372e9b7b01b3e304211b73b7d188b4d3ed9c4636ffecb4e8eb49f1bff521c24a3aae7b14e3ad3b9f32823bdd491aeba218
|
CRC32 | 89F11E4E |
ssdeep | None |
Yara | None matched |
This file is very suspicious, with a score of 10 out of 10!
Please notice: The scoring system is currently still in development and should be considered an alpha feature.
Expecting different results? Send us this analysis and we will inspect it. Click here
Category | Started | Completed | Duration | Routing | Logs |
---|---|---|---|---|---|
FILE | July 13, 2025, 7:12 a.m. | July 13, 2025, 7:18 a.m. | 385 seconds | internet |
Show Analyzer Log Show Cuckoo Log |
2025-07-08 23:00:44,015 [analyzer] DEBUG: Starting analyzer from: C:\tmp564etj 2025-07-08 23:00:44,030 [analyzer] DEBUG: Pipe server name: \??\PIPE\fVRreDLfOwrxEbByUtHd 2025-07-08 23:00:44,030 [analyzer] DEBUG: Log pipe server name: \??\PIPE\lVnYqNwiCYFTJBuWtSXul 2025-07-08 23:00:44,030 [analyzer] DEBUG: No analysis package specified, trying to detect it automagically. 2025-07-08 23:00:44,030 [analyzer] INFO: Automatically selected analysis package "ie" 2025-07-08 23:00:44,312 [analyzer] DEBUG: Started auxiliary module Curtain 2025-07-08 23:00:44,312 [analyzer] DEBUG: Started auxiliary module DbgView 2025-07-08 23:00:44,780 [analyzer] DEBUG: Started auxiliary module Disguise 2025-07-08 23:00:45,015 [analyzer] DEBUG: Loaded monitor into process with pid 508 2025-07-08 23:00:45,046 [analyzer] DEBUG: Started auxiliary module DumpTLSMasterSecrets 2025-07-08 23:00:45,046 [analyzer] DEBUG: Started auxiliary module Human 2025-07-08 23:00:45,046 [analyzer] DEBUG: Started auxiliary module InstallCertificate 2025-07-08 23:00:45,046 [analyzer] DEBUG: Started auxiliary module Reboot 2025-07-08 23:00:45,125 [analyzer] DEBUG: Started auxiliary module RecentFiles 2025-07-08 23:00:45,125 [analyzer] DEBUG: Started auxiliary module Screenshots 2025-07-08 23:00:45,140 [analyzer] DEBUG: Started auxiliary module Sysmon 2025-07-08 23:00:45,140 [analyzer] DEBUG: Started auxiliary module LoadZer0m0n 2025-07-08 23:00:45,140 [modules.packages.ie] INFO: Submitted file is missing extension, adding .html 2025-07-08 23:00:45,280 [lib.api.process] INFO: Successfully executed process from path 'C:\\Program Files\\Internet Explorer\\iexplore.exe' with arguments [u'C:\\Users\\ADMINI~1\\AppData\\Local\\Temp\\cb1cdb50a608a80625a8cddcb6ab22df942e1c720503011070888b57b76088dc.html'] and pid 2940 2025-07-08 23:00:45,437 [analyzer] DEBUG: Loaded monitor into process with pid 2940 2025-07-08 23:00:47,233 [analyzer] DEBUG: Following legitimate IE11 process: "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:2940 CREDAT:275457 /prefetch:2! 2025-07-08 23:00:47,358 [analyzer] INFO: Injected into process with pid 1228 and name u'iexplore.exe' 2025-07-08 23:00:47,467 [lib.api.process] ERROR: Failed to dump memory of 32-bit process with pid 1228. 2025-07-08 23:00:47,655 [analyzer] INFO: Added new file to list with pid 2940 and path C:\Users\Administrator\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{9D4FD84F-5C3E-11F0-A7EE-6A001A20C83C}.dat 2025-07-08 23:00:47,687 [analyzer] DEBUG: Loaded monitor into process with pid 1228 2025-07-08 23:00:47,703 [analyzer] INFO: Added new file to list with pid 2940 and path C:\Users\Administrator\AppData\Local\Temp\~DF3E767F304FD263D7.TMP 2025-07-08 23:00:47,953 [analyzer] DEBUG: Error resolving function mshtml!CDocument_write through our custom callback. 2025-07-08 23:00:47,953 [analyzer] DEBUG: Error resolving function mshtml!CElement_put_innerHTML through our custom callback. 2025-07-08 23:00:47,953 [analyzer] DEBUG: Error resolving function mshtml!CHyperlink_SetUrlComponent through our custom callback. 2025-07-08 23:00:47,953 [analyzer] DEBUG: Error resolving function mshtml!CIFrameElement_CreateElement through our custom callback. 2025-07-08 23:00:47,953 [analyzer] DEBUG: Error resolving function mshtml!CImgElement_put_src through our custom callback. 2025-07-08 23:00:47,953 [analyzer] DEBUG: Error resolving function mshtml!CScriptElement_put_src through our custom callback. 2025-07-08 23:00:47,953 [analyzer] DEBUG: Error resolving function mshtml!CWindow_AddTimeoutCode through our custom callback. 2025-07-08 23:00:47,967 [analyzer] DEBUG: Error resolving function mshtml!CDocument_write through our custom callback. 2025-07-08 23:00:47,967 [analyzer] DEBUG: Error resolving function mshtml!CElement_put_innerHTML through our custom callback. 2025-07-08 23:00:47,967 [analyzer] DEBUG: Error resolving function mshtml!CHyperlink_SetUrlComponent through our custom callback. 2025-07-08 23:00:47,967 [analyzer] DEBUG: Error resolving function mshtml!CIFrameElement_CreateElement through our custom callback. 2025-07-08 23:00:47,967 [analyzer] DEBUG: Error resolving function mshtml!CImgElement_put_src through our custom callback. 2025-07-08 23:00:47,967 [analyzer] DEBUG: Error resolving function mshtml!CScriptElement_put_src through our custom callback. 2025-07-08 23:00:47,967 [analyzer] DEBUG: Error resolving function mshtml!CWindow_AddTimeoutCode through our custom callback. 2025-07-08 23:00:48,437 [analyzer] INFO: Added new file to list with pid 2940 and path C:\Users\Administrator\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{9D4FD851-5C3E-11F0-A7EE-6A001A20C83C}.dat 2025-07-08 23:00:48,467 [analyzer] INFO: Added new file to list with pid 2940 and path C:\Users\Administrator\AppData\Local\Temp\~DF31E3B22F12CBBB75.TMP 2025-07-08 23:00:48,500 [analyzer] DEBUG: Error resolving function mshtml!CDocument_write through our custom callback. 2025-07-08 23:00:48,500 [analyzer] DEBUG: Error resolving function mshtml!CElement_put_innerHTML through our custom callback. 2025-07-08 23:00:48,500 [analyzer] DEBUG: Error resolving function mshtml!CHyperlink_SetUrlComponent through our custom callback. 2025-07-08 23:00:48,500 [analyzer] DEBUG: Error resolving function mshtml!CIFrameElement_CreateElement through our custom callback. 2025-07-08 23:00:48,500 [analyzer] DEBUG: Error resolving function mshtml!CImgElement_put_src through our custom callback. 2025-07-08 23:00:48,500 [analyzer] DEBUG: Error resolving function mshtml!CScriptElement_put_src through our custom callback. 2025-07-08 23:00:48,500 [analyzer] DEBUG: Error resolving function mshtml!CWindow_AddTimeoutCode through our custom callback. 2025-07-08 23:00:54,046 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\14232B434CF29D4C4FB335A86D7FFFE3 2025-07-08 23:00:54,046 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\14232B434CF29D4C4FB335A86D7FFFE3 2025-07-08 23:00:54,046 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\Local\Temp\Cab56DB.tmp 2025-07-08 23:00:54,062 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\Local\Temp\Tar56DC.tmp 2025-07-08 23:00:54,078 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\Local\Temp\Cab56FC.tmp 2025-07-08 23:00:54,078 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\Local\Temp\Tar56FD.tmp 2025-07-08 23:00:54,203 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015 2025-07-08 23:00:54,217 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015 2025-07-08 23:00:54,217 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\Local\Temp\Cab578B.tmp 2025-07-08 23:00:54,233 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\Local\Temp\Tar578C.tmp 2025-07-08 23:00:54,250 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\Local\Temp\Cab579C.tmp 2025-07-08 23:00:54,250 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\Local\Temp\Tar57AD.tmp 2025-07-08 23:00:54,375 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8B2B9A00839EED1DFDCCC3BFC2F5DF12 2025-07-08 23:00:54,390 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8B2B9A00839EED1DFDCCC3BFC2F5DF12 2025-07-08 23:00:54,437 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B46811C17859FFB409CF0E904A4AA8F8 2025-07-08 23:00:54,453 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B46811C17859FFB409CF0E904A4AA8F8 2025-07-08 23:00:54,483 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\Local\Temp\Cab5898.tmp 2025-07-08 23:00:54,500 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\Local\Temp\Tar5899.tmp 2025-07-08 23:01:11,062 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\05DDC6AA91765AACACDB0A5F96DF8199 2025-07-08 23:01:11,078 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\05DDC6AA91765AACACDB0A5F96DF8199 2025-07-08 23:01:11,187 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C02877841121CC45139CB51404116B25_54D3C27D5957D30DBA4BE92894CB2BAA 2025-07-08 23:01:11,187 [analyzer] INFO: Added new file to list with pid 1228 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C02877841121CC45139CB51404116B25_54D3C27D5957D30DBA4BE92894CB2BAA 2025-07-08 23:01:14,312 [analyzer] INFO: Analysis timeout hit, terminating analysis. 2025-07-08 23:01:14,765 [analyzer] INFO: Terminating remaining processes before shutdown. 2025-07-08 23:01:14,765 [lib.api.process] INFO: Successfully terminated process with pid 2940. 2025-07-08 23:01:14,765 [lib.api.process] INFO: Successfully terminated process with pid 1228. 2025-07-08 23:01:14,765 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tar57ad.tmp' does not exist, skip. 2025-07-08 23:01:14,765 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tar56dc.tmp' does not exist, skip. 2025-07-08 23:01:14,765 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cab56db.tmp' does not exist, skip. 2025-07-08 23:01:14,796 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cab578b.tmp' does not exist, skip. 2025-07-08 23:01:14,812 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cab5898.tmp' does not exist, skip. 2025-07-08 23:01:14,828 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tar578c.tmp' does not exist, skip. 2025-07-08 23:01:14,828 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tar56fd.tmp' does not exist, skip. 2025-07-08 23:01:14,828 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tar5899.tmp' does not exist, skip. 2025-07-08 23:01:14,842 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\~df3e767f304fd263d7.tmp' does not exist, skip. 2025-07-08 23:01:14,842 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cab56fc.tmp' does not exist, skip. 2025-07-08 23:01:14,875 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cab579c.tmp' does not exist, skip. 2025-07-08 23:01:14,875 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\~df31e3b22f12cbbb75.tmp' does not exist, skip. 2025-07-08 23:01:14,875 [analyzer] INFO: Analysis completed.
2025-07-13 07:12:31,819 [cuckoo.core.scheduler] INFO: Task #6697138: acquired machine win7x6419 (label=win7x6419) 2025-07-13 07:12:31,820 [cuckoo.core.resultserver] DEBUG: Now tracking machine 192.168.168.219 for task #6697138 2025-07-13 07:12:32,134 [cuckoo.auxiliary.sniffer] INFO: Started sniffer with PID 3039886 (interface=vboxnet0, host=192.168.168.219) 2025-07-13 07:12:32,192 [cuckoo.machinery.virtualbox] DEBUG: Starting vm win7x6419 2025-07-13 07:12:33,284 [cuckoo.machinery.virtualbox] DEBUG: Restoring virtual machine win7x6419 to vmcloak 2025-07-13 07:15:31,670 [cuckoo.core.guest] INFO: Starting analysis #6697138 on guest (id=win7x6419, ip=192.168.168.219) 2025-07-13 07:15:32,679 [cuckoo.core.guest] DEBUG: win7x6419: not ready yet 2025-07-13 07:15:37,703 [cuckoo.core.guest] INFO: Guest is running Cuckoo Agent 0.10 (id=win7x6419, ip=192.168.168.219) 2025-07-13 07:15:37,789 [cuckoo.core.guest] DEBUG: Uploading analyzer to guest (id=win7x6419, ip=192.168.168.219, monitor=latest, size=6660546) 2025-07-13 07:15:39,213 [cuckoo.core.resultserver] DEBUG: Task #6697138: live log analysis.log initialized. 2025-07-13 07:15:40,170 [cuckoo.core.resultserver] DEBUG: Task #6697138 is sending a BSON stream 2025-07-13 07:15:40,594 [cuckoo.core.resultserver] DEBUG: Task #6697138 is sending a BSON stream 2025-07-13 07:15:41,481 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'shots/0001.jpg' 2025-07-13 07:15:41,498 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 133564 2025-07-13 07:15:42,841 [cuckoo.core.resultserver] DEBUG: Task #6697138 is sending a BSON stream 2025-07-13 07:15:43,632 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'shots/0002.jpg' 2025-07-13 07:15:43,643 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 66969 2025-07-13 07:15:44,740 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'shots/0003.jpg' 2025-07-13 07:15:44,766 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 31967 2025-07-13 07:15:53,928 [cuckoo.core.guest] DEBUG: win7x6419: analysis #6697138 still processing 2025-07-13 07:16:06,511 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'shots/0004.jpg' 2025-07-13 07:16:06,513 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 31629 2025-07-13 07:16:07,603 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'shots/0005.jpg' 2025-07-13 07:16:07,625 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 42969 2025-07-13 07:16:09,148 [cuckoo.core.guest] DEBUG: win7x6419: analysis #6697138 still processing 2025-07-13 07:16:09,694 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'curtain/1752008474.47.curtain.log' 2025-07-13 07:16:09,698 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 36 2025-07-13 07:16:09,897 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'sysmon/1752008474.67.sysmon.xml' 2025-07-13 07:16:09,980 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 2044416 2025-07-13 07:16:09,999 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'files/ebd41040e4bb3ec7_14232b434cf29d4c4fb335a86d7fffe3' 2025-07-13 07:16:10,012 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 889 2025-07-13 07:16:10,018 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'files/28de980bdd1f4c1f_c02877841121cc45139cb51404116b25_54d3c27d5957d30dba4be92894cb2baa' 2025-07-13 07:16:10,020 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 410 2025-07-13 07:16:10,026 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'files/21f28855f7464167_14232b434cf29d4c4fb335a86d7fffe3' 2025-07-13 07:16:10,029 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 170 2025-07-13 07:16:10,036 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'files/63a681c6e7eb3511_b46811c17859ffb409cf0e904a4aa8f8' 2025-07-13 07:16:10,043 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 170 2025-07-13 07:16:10,047 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'files/81b7fa53b692b4d2_8b2b9a00839eed1dfdccc3bfc2f5df12' 2025-07-13 07:16:10,049 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 1739 2025-07-13 07:16:10,052 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'files/5a919adfdccec65b_recoverystore.{9d4fd84f-5c3e-11f0-a7ee-6a001a20c83c}.dat' 2025-07-13 07:16:10,054 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 5632 2025-07-13 07:16:10,065 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'files/de9d5afda8f729a6_05ddc6aa91765aacacdb0a5f96df8199' 2025-07-13 07:16:10,067 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 170 2025-07-13 07:16:10,069 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'files/d5c9971c51ef9263_{9d4fd851-5c3e-11f0-a7ee-6a001a20c83c}.dat' 2025-07-13 07:16:10,072 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 5120 2025-07-13 07:16:10,073 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'files/eb79c93a19323112_8b2b9a00839eed1dfdccc3bfc2f5df12' 2025-07-13 07:16:10,076 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 174 2025-07-13 07:16:10,078 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'files/23df60401b91f2be_c02877841121cc45139cb51404116b25_54d3c27d5957d30dba4be92894cb2baa' 2025-07-13 07:16:10,080 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 472 2025-07-13 07:16:10,083 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'files/4c847e0c28733ed3_94308059b57b3142e455b38a6eb92015' 2025-07-13 07:16:10,085 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 73513 2025-07-13 07:16:10,088 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'files/6fb1b8e593cb0388_b46811c17859ffb409cf0e904a4aa8f8' 2025-07-13 07:16:10,090 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 530 2025-07-13 07:16:10,092 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'files/eac173f6aa2de93a_05ddc6aa91765aacacdb0a5f96df8199' 2025-07-13 07:16:10,094 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 993 2025-07-13 07:16:10,096 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'files/56f130ac752ba265_94308059b57b3142e455b38a6eb92015' 2025-07-13 07:16:10,098 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 344 2025-07-13 07:16:10,811 [cuckoo.core.resultserver] DEBUG: Task #6697138: File upload for 'shots/0006.jpg' 2025-07-13 07:16:10,831 [cuckoo.core.resultserver] DEBUG: Task #6697138 uploaded file length: 133565 2025-07-13 07:16:10,850 [cuckoo.core.resultserver] DEBUG: Task #6697138 had connection reset for <Context for LOG> 2025-07-13 07:16:12,232 [cuckoo.core.guest] INFO: win7x6419: analysis completed successfully 2025-07-13 07:16:12,259 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Redsocks 2025-07-13 07:16:12,296 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Sniffer 2025-07-13 07:16:13,284 [cuckoo.machinery.virtualbox] INFO: Successfully generated memory dump for virtual machine with label win7x6419 to path /srv/cuckoo/cwd/storage/analyses/6697138/memory.dmp 2025-07-13 07:16:13,285 [cuckoo.machinery.virtualbox] DEBUG: Stopping vm win7x6419 2025-07-13 07:18:56,398 [cuckoo.core.resultserver] DEBUG: Stopped tracking machine 192.168.168.219 for task #6697138 2025-07-13 07:18:56,784 [cuckoo.core.scheduler] DEBUG: Released database task #6697138 2025-07-13 07:18:56,800 [cuckoo.core.scheduler] INFO: Task #6697138: analysis procedure completed
cmdline | "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:2940 CREDAT:275457 /prefetch:2 |
Avast Core Security (Linux) | HTML:DatingScam-D [Scam] |
WithSecure (Linux) | Malware.HTML/Phish.PDTD |
Avast | HTML:DatingScam-D [Scam] |
Cynet | Malicious (score: 99) |
Rising | Trojan.Redirector/HTML!8.1290C (TOPIS:E0:XimDfE7CQkU) |
F-Secure | Malware.HTML/Phish.PDTD |
Detected | |
Avira | HTML/Phish.PDTD |
Varist | JS/Phish.AYV!Eldorado |
Tencent | Html.Win32.Script.506025 |
Fortinet | HTML/DatingScam.D!tr |
AVG | HTML:DatingScam-D [Scam] |