URL |
---|
https://asthmanotchcave.com:443/ |
This url is very suspicious, with a score of 9.7 out of 10!
Please notice: The scoring system is currently still in development and should be considered an alpha feature.
Expecting different results? Send us this analysis and we will inspect it. Click here
Category | Started | Completed | Duration | Routing | Logs |
---|---|---|---|---|---|
URL | July 16, 2025, 10:22 p.m. | July 16, 2025, 10:29 p.m. | 456 seconds | internet |
Show Analyzer Log Show Cuckoo Log |
2025-07-16 22:16:27,015 [analyzer] DEBUG: Starting analyzer from: C:\tmpt1gcja 2025-07-16 22:16:27,030 [analyzer] DEBUG: Pipe server name: \??\PIPE\nyEEJVypyMzjlXyJputZlehc 2025-07-16 22:16:27,030 [analyzer] DEBUG: Log pipe server name: \??\PIPE\ShWiIllQubphysGnmFGRyHsVcypaFnjR 2025-07-16 22:16:27,342 [analyzer] DEBUG: Started auxiliary module Curtain 2025-07-16 22:16:27,342 [analyzer] DEBUG: Started auxiliary module DbgView 2025-07-16 22:16:27,953 [analyzer] DEBUG: Started auxiliary module Disguise 2025-07-16 22:16:28,187 [analyzer] DEBUG: Loaded monitor into process with pid 508 2025-07-16 22:16:28,187 [analyzer] DEBUG: Started auxiliary module DumpTLSMasterSecrets 2025-07-16 22:16:28,187 [analyzer] DEBUG: Started auxiliary module Human 2025-07-16 22:16:28,187 [analyzer] DEBUG: Started auxiliary module InstallCertificate 2025-07-16 22:16:28,203 [analyzer] DEBUG: Started auxiliary module Reboot 2025-07-16 22:16:28,250 [analyzer] DEBUG: Started auxiliary module RecentFiles 2025-07-16 22:16:28,250 [analyzer] DEBUG: Started auxiliary module Screenshots 2025-07-16 22:16:28,265 [analyzer] DEBUG: Started auxiliary module Sysmon 2025-07-16 22:16:28,265 [analyzer] DEBUG: Started auxiliary module LoadZer0m0n 2025-07-16 22:16:28,375 [lib.api.process] INFO: Successfully executed process from path 'C:\\Program Files\\Internet Explorer\\iexplore.exe' with arguments ['https://asthmanotchcave.com:443/'] and pid 1912 2025-07-16 22:16:28,546 [analyzer] DEBUG: Loaded monitor into process with pid 1912 2025-07-16 22:16:30,078 [analyzer] DEBUG: Following legitimate IE11 process: "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:1912 CREDAT:275457 /prefetch:2! 2025-07-16 22:16:30,171 [analyzer] INFO: Injected into process with pid 500 and name u'iexplore.exe' 2025-07-16 22:16:30,250 [lib.api.process] ERROR: Failed to dump memory of 32-bit process with pid 500. 2025-07-16 22:16:30,358 [analyzer] INFO: Added new file to list with pid 1912 and path C:\Users\Administrator\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{C0FA1FEB-6281-11F0-8DEB-442FBD7DD98F}.dat 2025-07-16 22:16:30,421 [analyzer] INFO: Added new file to list with pid 1912 and path C:\Users\Administrator\AppData\Local\Temp\~DFE63B6F65F0B98295.TMP 2025-07-16 22:16:30,437 [analyzer] DEBUG: Loaded monitor into process with pid 500 2025-07-16 22:16:30,655 [analyzer] DEBUG: Error resolving function mshtml!CDocument_write through our custom callback. 2025-07-16 22:16:30,655 [analyzer] DEBUG: Error resolving function mshtml!CElement_put_innerHTML through our custom callback. 2025-07-16 22:16:30,655 [analyzer] DEBUG: Error resolving function mshtml!CHyperlink_SetUrlComponent through our custom callback. 2025-07-16 22:16:30,655 [analyzer] DEBUG: Error resolving function mshtml!CIFrameElement_CreateElement through our custom callback. 2025-07-16 22:16:30,655 [analyzer] DEBUG: Error resolving function mshtml!CImgElement_put_src through our custom callback. 2025-07-16 22:16:30,671 [analyzer] DEBUG: Error resolving function mshtml!CScriptElement_put_src through our custom callback. 2025-07-16 22:16:30,671 [analyzer] DEBUG: Error resolving function mshtml!CWindow_AddTimeoutCode through our custom callback. 2025-07-16 22:16:30,671 [analyzer] DEBUG: Error resolving function mshtml!CDocument_write through our custom callback. 2025-07-16 22:16:30,671 [analyzer] DEBUG: Error resolving function mshtml!CElement_put_innerHTML through our custom callback. 2025-07-16 22:16:30,671 [analyzer] DEBUG: Error resolving function mshtml!CHyperlink_SetUrlComponent through our custom callback. 2025-07-16 22:16:30,671 [analyzer] DEBUG: Error resolving function mshtml!CIFrameElement_CreateElement through our custom callback. 2025-07-16 22:16:30,671 [analyzer] DEBUG: Error resolving function mshtml!CImgElement_put_src through our custom callback. 2025-07-16 22:16:30,671 [analyzer] DEBUG: Error resolving function mshtml!CScriptElement_put_src through our custom callback. 2025-07-16 22:16:30,671 [analyzer] DEBUG: Error resolving function mshtml!CWindow_AddTimeoutCode through our custom callback. 2025-07-16 22:16:31,030 [analyzer] INFO: Added new file to list with pid 1912 and path C:\Users\Administrator\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{C0FA1FED-6281-11F0-8DEB-442FBD7DD98F}.dat 2025-07-16 22:16:31,046 [analyzer] INFO: Added new file to list with pid 1912 and path C:\Users\Administrator\AppData\Local\Temp\~DFF7A435B6CFA839E1.TMP 2025-07-16 22:16:34,655 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2D85F72862B55C4EADD9E66E06947F3D 2025-07-16 22:16:34,671 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2D85F72862B55C4EADD9E66E06947F3D 2025-07-16 22:16:34,703 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabBE26.tmp 2025-07-16 22:16:34,717 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarBE27.tmp 2025-07-16 22:16:34,858 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015 2025-07-16 22:16:34,858 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015 2025-07-16 22:16:34,875 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabBED4.tmp 2025-07-16 22:16:34,875 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarBED5.tmp 2025-07-16 22:16:34,905 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabBF05.tmp 2025-07-16 22:16:34,921 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarBF06.tmp 2025-07-16 22:16:34,937 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabBF26.tmp 2025-07-16 22:16:34,953 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarBF27.tmp 2025-07-16 22:16:35,000 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabBF67.tmp 2025-07-16 22:16:35,015 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarBF68.tmp 2025-07-16 22:16:35,015 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabBF78.tmp 2025-07-16 22:16:35,030 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarBF79.tmp 2025-07-16 22:16:35,046 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabBF9A.tmp 2025-07-16 22:16:35,062 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarBF9B.tmp 2025-07-16 22:16:35,062 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabBFAB.tmp 2025-07-16 22:16:35,062 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarBFAC.tmp 2025-07-16 22:16:35,140 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabBFFB.tmp 2025-07-16 22:16:35,155 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarBFFC.tmp 2025-07-16 22:16:35,171 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC00D.tmp 2025-07-16 22:16:35,187 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC00E.tmp 2025-07-16 22:16:35,203 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC02E.tmp 2025-07-16 22:16:35,203 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC03F.tmp 2025-07-16 22:16:35,217 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC050.tmp 2025-07-16 22:16:35,233 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC051.tmp 2025-07-16 22:16:35,280 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC090.tmp 2025-07-16 22:16:35,296 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC091.tmp 2025-07-16 22:16:35,312 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC0A2.tmp 2025-07-16 22:16:35,312 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC0A3.tmp 2025-07-16 22:16:35,328 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC0C3.tmp 2025-07-16 22:16:35,342 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC0C4.tmp 2025-07-16 22:16:35,358 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC0D5.tmp 2025-07-16 22:16:35,358 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC0E5.tmp 2025-07-16 22:16:35,421 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC115.tmp 2025-07-16 22:16:35,421 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC116.tmp 2025-07-16 22:16:35,421 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC127.tmp 2025-07-16 22:16:35,437 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC128.tmp 2025-07-16 22:16:35,453 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC148.tmp 2025-07-16 22:16:35,467 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC149.tmp 2025-07-16 22:16:35,467 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC15A.tmp 2025-07-16 22:16:35,483 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC15B.tmp 2025-07-16 22:16:35,546 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC1AA.tmp 2025-07-16 22:16:35,546 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC1AC.tmp 2025-07-16 22:16:35,546 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC1AB.tmp 2025-07-16 22:16:35,546 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC1AD.tmp 2025-07-16 22:16:35,625 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC1EC.tmp 2025-07-16 22:16:35,625 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC1ED.tmp 2025-07-16 22:16:35,625 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC1FE.tmp 2025-07-16 22:16:35,640 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC1FF.tmp 2025-07-16 22:16:35,717 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC24E.tmp 2025-07-16 22:16:35,717 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC260.tmp 2025-07-16 22:16:35,733 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC24F.tmp 2025-07-16 22:16:35,733 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC261.tmp 2025-07-16 22:16:35,828 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC2BF.tmp 2025-07-16 22:16:35,828 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC2D1.tmp 2025-07-16 22:16:35,828 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC2C0.tmp 2025-07-16 22:16:35,842 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC2D2.tmp 2025-07-16 22:16:35,905 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC321.tmp 2025-07-16 22:16:35,921 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC323.tmp 2025-07-16 22:16:35,921 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC322.tmp 2025-07-16 22:16:35,921 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC324.tmp 2025-07-16 22:16:35,953 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC354.tmp 2025-07-16 22:16:35,967 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC355.tmp 2025-07-16 22:16:35,967 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC366.tmp 2025-07-16 22:16:35,967 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC367.tmp 2025-07-16 22:16:36,046 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC3B6.tmp 2025-07-16 22:16:36,046 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC3B8.tmp 2025-07-16 22:16:36,062 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC3B9.tmp 2025-07-16 22:16:36,062 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC3B7.tmp 2025-07-16 22:16:36,092 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC3E9.tmp 2025-07-16 22:16:36,108 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC3EA.tmp 2025-07-16 22:16:36,155 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC429.tmp 2025-07-16 22:16:36,171 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC42A.tmp 2025-07-16 22:16:36,530 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC5A2.tmp 2025-07-16 22:16:36,546 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC5A3.tmp 2025-07-16 22:16:36,625 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC602.tmp 2025-07-16 22:16:36,640 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC603.tmp 2025-07-16 22:16:36,687 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC642.tmp 2025-07-16 22:16:36,687 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC643.tmp 2025-07-16 22:16:36,780 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC692.tmp 2025-07-16 22:16:36,796 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC693.tmp 2025-07-16 22:16:36,842 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC6E3.tmp 2025-07-16 22:16:36,858 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC6E4.tmp 2025-07-16 22:16:36,921 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC733.tmp 2025-07-16 22:16:36,937 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC734.tmp 2025-07-16 22:16:37,000 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC783.tmp 2025-07-16 22:16:37,015 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC784.tmp 2025-07-16 22:16:37,092 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC7E3.tmp 2025-07-16 22:16:37,108 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC7E4.tmp 2025-07-16 22:16:37,155 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC823.tmp 2025-07-16 22:16:37,171 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC824.tmp 2025-07-16 22:16:37,265 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC883.tmp 2025-07-16 22:16:37,265 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC893.tmp 2025-07-16 22:16:37,328 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC8C3.tmp 2025-07-16 22:16:37,328 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC8D4.tmp 2025-07-16 22:16:37,421 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\CabC933.tmp 2025-07-16 22:16:37,437 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Temp\TarC934.tmp 2025-07-16 22:16:37,500 [analyzer] DEBUG: Error resolving function mshtml!CDocument_write through our custom callback. 2025-07-16 22:16:37,500 [analyzer] DEBUG: Error resolving function mshtml!CElement_put_innerHTML through our custom callback. 2025-07-16 22:16:37,500 [analyzer] DEBUG: Error resolving function mshtml!CHyperlink_SetUrlComponent through our custom callback. 2025-07-16 22:16:37,515 [analyzer] DEBUG: Error resolving function mshtml!CIFrameElement_CreateElement through our custom callback. 2025-07-16 22:16:37,515 [analyzer] DEBUG: Error resolving function mshtml!CImgElement_put_src through our custom callback. 2025-07-16 22:16:37,515 [analyzer] DEBUG: Error resolving function mshtml!CScriptElement_put_src through our custom callback. 2025-07-16 22:16:37,515 [analyzer] DEBUG: Error resolving function mshtml!CWindow_AddTimeoutCode through our custom callback. 2025-07-16 22:16:37,530 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0DSHQ0EW\invalidcert[1] 2025-07-16 22:16:37,592 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9P1H5NSK\ErrorPageTemplate[1] 2025-07-16 22:16:37,608 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KGRHG6BR\errorPageStrings[1] 2025-07-16 22:16:37,625 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0DSHQ0EW\httpErrorPagesScripts[1] 2025-07-16 22:16:37,640 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9P1H5NSK\invalidcert[1] 2025-07-16 22:16:37,655 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KGRHG6BR\red_shield_48[1] 2025-07-16 22:16:37,687 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1P35NB9Q\green_shield[1] 2025-07-16 22:16:37,687 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0DSHQ0EW\red_shield[1] 2025-07-16 22:16:37,703 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9P1H5NSK\down[1] 2025-07-16 22:16:37,780 [analyzer] INFO: Added new file to list with pid 500 and path C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KGRHG6BR\background_gradient_red[1] 2025-07-16 21:26:14,700 [analyzer] INFO: Analysis timeout hit, terminating analysis. 2025-07-16 21:26:14,996 [lib.api.process] ERROR: Failed to dump memory of 64-bit process with pid 1912. 2025-07-16 21:26:15,075 [lib.api.process] ERROR: Failed to dump memory of 32-bit process with pid 500. 2025-07-16 21:26:15,403 [analyzer] INFO: Terminating remaining processes before shutdown. 2025-07-16 21:26:15,403 [lib.api.process] INFO: Successfully terminated process with pid 1912. 2025-07-16 21:26:15,403 [lib.api.process] INFO: Successfully terminated process with pid 500. 2025-07-16 21:26:15,403 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc1aa.tmp' does not exist, skip. 2025-07-16 21:26:15,403 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc0d5.tmp' does not exist, skip. 2025-07-16 21:26:15,403 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc321.tmp' does not exist, skip. 2025-07-16 21:26:15,403 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc00d.tmp' does not exist, skip. 2025-07-16 21:26:15,403 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc2d2.tmp' does not exist, skip. 2025-07-16 21:26:15,418 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc7e3.tmp' does not exist, skip. 2025-07-16 21:26:15,418 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc3ea.tmp' does not exist, skip. 2025-07-16 21:26:15,418 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabbed4.tmp' does not exist, skip. 2025-07-16 21:26:15,418 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc734.tmp' does not exist, skip. 2025-07-16 21:26:15,418 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc02e.tmp' does not exist, skip. 2025-07-16 21:26:15,418 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc1fe.tmp' does not exist, skip. 2025-07-16 21:26:15,418 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabbfab.tmp' does not exist, skip. 2025-07-16 21:26:15,418 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc366.tmp' does not exist, skip. 2025-07-16 21:26:15,434 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc603.tmp' does not exist, skip. 2025-07-16 21:26:15,434 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc3b9.tmp' does not exist, skip. 2025-07-16 21:26:15,434 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc643.tmp' does not exist, skip. 2025-07-16 21:26:15,434 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc051.tmp' does not exist, skip. 2025-07-16 21:26:15,434 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarbffc.tmp' does not exist, skip. 2025-07-16 21:26:15,434 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarbf68.tmp' does not exist, skip. 2025-07-16 21:26:15,450 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc933.tmp' does not exist, skip. 2025-07-16 21:26:15,450 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc5a2.tmp' does not exist, skip. 2025-07-16 21:26:15,450 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc0e5.tmp' does not exist, skip. 2025-07-16 21:26:15,450 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabbf78.tmp' does not exist, skip. 2025-07-16 21:26:15,466 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabbf05.tmp' does not exist, skip. 2025-07-16 21:26:15,466 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabbf26.tmp' does not exist, skip. 2025-07-16 21:26:15,466 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc642.tmp' does not exist, skip. 2025-07-16 21:26:15,466 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabbf9a.tmp' does not exist, skip. 2025-07-16 21:26:15,466 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc6e3.tmp' does not exist, skip. 2025-07-16 21:26:15,466 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc128.tmp' does not exist, skip. 2025-07-16 21:26:15,466 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc602.tmp' does not exist, skip. 2025-07-16 21:26:15,466 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc3b7.tmp' does not exist, skip. 2025-07-16 21:26:15,466 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarbe27.tmp' does not exist, skip. 2025-07-16 21:26:15,466 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc1ad.tmp' does not exist, skip. 2025-07-16 21:26:15,466 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarbf27.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc3b8.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc261.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc692.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc148.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc260.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabbe26.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc355.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarbfac.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabbffb.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc42a.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc15a.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc1ed.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc693.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc934.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc0a3.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc324.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc429.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc8d4.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc091.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc2bf.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarbf06.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc323.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarbf9b.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc8c3.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc322.tmp' does not exist, skip. 2025-07-16 21:26:15,480 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc1ec.tmp' does not exist, skip. 2025-07-16 21:26:15,496 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc354.tmp' does not exist, skip. 2025-07-16 21:26:15,496 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc0c4.tmp' does not exist, skip. 2025-07-16 21:26:15,496 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc5a3.tmp' does not exist, skip. 2025-07-16 21:26:15,496 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc050.tmp' does not exist, skip. 2025-07-16 21:26:15,496 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabbf67.tmp' does not exist, skip. 2025-07-16 21:26:15,496 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc883.tmp' does not exist, skip. 2025-07-16 21:26:15,496 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc367.tmp' does not exist, skip. 2025-07-16 21:26:15,496 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc0c3.tmp' does not exist, skip. 2025-07-16 21:26:15,496 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarbed5.tmp' does not exist, skip. 2025-07-16 21:26:15,513 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc03f.tmp' does not exist, skip. 2025-07-16 21:26:15,513 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc149.tmp' does not exist, skip. 2025-07-16 21:26:15,513 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\~dff7a435b6cfa839e1.tmp' does not exist, skip. 2025-07-16 21:26:15,513 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc127.tmp' does not exist, skip. 2025-07-16 21:26:15,513 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc1ac.tmp' does not exist, skip. 2025-07-16 21:26:15,513 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc115.tmp' does not exist, skip. 2025-07-16 21:26:15,513 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc733.tmp' does not exist, skip. 2025-07-16 21:26:15,513 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc2c0.tmp' does not exist, skip. 2025-07-16 21:26:15,513 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc3b6.tmp' does not exist, skip. 2025-07-16 21:26:15,513 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc823.tmp' does not exist, skip. 2025-07-16 21:26:15,513 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc784.tmp' does not exist, skip. 2025-07-16 21:26:15,513 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc824.tmp' does not exist, skip. 2025-07-16 21:26:15,513 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\~dfe63b6f65f0b98295.tmp' does not exist, skip. 2025-07-16 21:26:15,513 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc6e4.tmp' does not exist, skip. 2025-07-16 21:26:15,513 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc15b.tmp' does not exist, skip. 2025-07-16 21:26:15,528 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc116.tmp' does not exist, skip. 2025-07-16 21:26:15,528 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc3e9.tmp' does not exist, skip. 2025-07-16 21:26:15,528 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc893.tmp' does not exist, skip. 2025-07-16 21:26:15,528 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc2d1.tmp' does not exist, skip. 2025-07-16 21:26:15,528 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc1ff.tmp' does not exist, skip. 2025-07-16 21:26:15,528 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc00e.tmp' does not exist, skip. 2025-07-16 21:26:15,528 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc0a2.tmp' does not exist, skip. 2025-07-16 21:26:15,528 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc7e4.tmp' does not exist, skip. 2025-07-16 21:26:15,543 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc090.tmp' does not exist, skip. 2025-07-16 21:26:15,543 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc1ab.tmp' does not exist, skip. 2025-07-16 21:26:15,543 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc24e.tmp' does not exist, skip. 2025-07-16 21:26:15,543 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarbf79.tmp' does not exist, skip. 2025-07-16 21:26:15,543 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\cabc783.tmp' does not exist, skip. 2025-07-16 21:26:15,543 [analyzer] WARNING: File at path u'c:\\users\\administrator\\appdata\\local\\temp\\tarc24f.tmp' does not exist, skip. 2025-07-16 21:26:15,543 [analyzer] INFO: Analysis completed.
2025-07-16 22:22:10,932 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:11,978 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:13,004 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:14,028 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:15,048 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:16,069 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:17,090 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:18,162 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:19,213 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:20,269 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:21,327 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:22,377 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:23,428 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:24,486 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:25,539 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:26,588 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:27,642 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:28,694 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:29,751 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:30,819 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:31,865 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:32,920 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:33,974 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:35,036 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:36,087 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:37,168 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:38,227 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:39,279 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:40,337 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:41,404 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:42,496 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:43,555 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:44,634 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:45,704 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:46,757 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:47,810 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:48,861 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:49,927 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:51,088 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:52,165 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:53,226 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:54,361 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:55,532 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:56,572 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:57,609 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:58,661 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:22:59,689 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:23:00,727 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:23:01,769 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:23:02,876 [cuckoo.core.scheduler] DEBUG: Task #6736665: no machine available yet 2025-07-16 22:23:04,194 [cuckoo.core.scheduler] INFO: Task #6736665: acquired machine win7x642 (label=win7x642) 2025-07-16 22:23:04,198 [cuckoo.core.resultserver] DEBUG: Now tracking machine 192.168.168.202 for task #6736665 2025-07-16 22:23:04,579 [cuckoo.auxiliary.sniffer] INFO: Started sniffer with PID 3019889 (interface=vboxnet0, host=192.168.168.202) 2025-07-16 22:23:04,606 [cuckoo.machinery.virtualbox] DEBUG: Starting vm win7x642 2025-07-16 22:23:05,627 [cuckoo.machinery.virtualbox] DEBUG: Restoring virtual machine win7x642 to vmcloak 2025-07-16 22:25:36,895 [cuckoo.core.guest] INFO: Starting analysis #6736665 on guest (id=win7x642, ip=192.168.168.202) 2025-07-16 22:25:37,900 [cuckoo.core.guest] DEBUG: win7x642: not ready yet 2025-07-16 22:25:42,937 [cuckoo.core.guest] INFO: Guest is running Cuckoo Agent 0.10 (id=win7x642, ip=192.168.168.202) 2025-07-16 22:25:43,029 [cuckoo.core.guest] DEBUG: Uploading analyzer to guest (id=win7x642, ip=192.168.168.202, monitor=latest, size=6660546) 2025-07-16 22:25:44,296 [cuckoo.core.resultserver] DEBUG: Task #6736665: live log analysis.log initialized. 2025-07-16 22:25:45,436 [cuckoo.core.resultserver] DEBUG: Task #6736665 is sending a BSON stream 2025-07-16 22:25:45,796 [cuckoo.core.resultserver] DEBUG: Task #6736665 is sending a BSON stream 2025-07-16 22:25:46,709 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'shots/0001.jpg' 2025-07-16 22:25:46,726 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 133594 2025-07-16 22:25:47,692 [cuckoo.core.resultserver] DEBUG: Task #6736665 is sending a BSON stream 2025-07-16 22:25:48,823 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'shots/0002.jpg' 2025-07-16 22:25:48,826 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 24519 2025-07-16 22:25:49,896 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'shots/0003.jpg' 2025-07-16 22:25:49,901 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 29844 2025-07-16 22:25:51,006 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'shots/0004.jpg' 2025-07-16 22:25:51,018 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 30001 2025-07-16 22:25:56,226 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'shots/0005.jpg' 2025-07-16 22:25:56,232 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 53432 2025-07-16 22:25:59,070 [cuckoo.core.guest] DEBUG: win7x642: analysis #6736665 still processing 2025-07-16 22:26:14,194 [cuckoo.core.guest] DEBUG: win7x642: analysis #6736665 still processing 2025-07-16 22:26:15,222 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'curtain/1752693975.22.curtain.log' 2025-07-16 22:26:15,225 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 36 2025-07-16 22:26:15,390 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'sysmon/1752693975.37.sysmon.xml' 2025-07-16 22:26:15,433 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 1290494 2025-07-16 22:26:15,445 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/5e2cd0990d6d3b0b_red_shield_48[1]' 2025-07-16 22:26:15,449 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 4127 2025-07-16 22:26:15,451 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/4c847e0c28733ed3_94308059b57b3142e455b38a6eb92015' 2025-07-16 22:26:15,454 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 73513 2025-07-16 22:26:15,456 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/8d018639281b33da_errorpagetemplate[1]' 2025-07-16 22:26:15,457 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 2168 2025-07-16 22:26:15,461 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/46e019fa34465f4e_httperrorpagesscripts[1]' 2025-07-16 22:26:15,463 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 8714 2025-07-16 22:26:15,468 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/4bd9f96d6971c7d3_red_shield[1]' 2025-07-16 22:26:15,470 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 810 2025-07-16 22:26:15,476 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/96bcec06264976f3_2d85f72862b55c4eadd9e66e06947f3d' 2025-07-16 22:26:15,478 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 1391 2025-07-16 22:26:15,480 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/1ba122f4b39a3333_green_shield[1]' 2025-07-16 22:26:15,483 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 810 2025-07-16 22:26:15,488 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/f18e9671426708c6_invalidcert[1]' 2025-07-16 22:26:15,491 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 2588 2025-07-16 22:26:15,498 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/39e7de847c9f731e_down[1]' 2025-07-16 22:26:15,500 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 748 2025-07-16 22:26:15,503 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/9466d620dc57835a_errorpagestrings[1]' 2025-07-16 22:26:15,504 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 2949 2025-07-16 22:26:15,509 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/59e53005e12d5c20_invalidcert[1]' 2025-07-16 22:26:15,511 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 5038 2025-07-16 22:26:15,513 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/196a7248a6f0c50a_94308059b57b3142e455b38a6eb92015' 2025-07-16 22:26:15,515 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 344 2025-07-16 22:26:15,517 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/fbc23311fb5eb53c_background_gradient_red[1]' 2025-07-16 22:26:15,519 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 868 2025-07-16 22:26:15,525 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/bbe7fcbddfe486c4_recoverystore.{c0fa1feb-6281-11f0-8deb-442fbd7dd98f}.dat' 2025-07-16 22:26:15,527 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 5632 2025-07-16 22:26:15,530 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/bffc4606dd8dea0f_{c0fa1fed-6281-11f0-8deb-442fbd7dd98f}.dat' 2025-07-16 22:26:15,532 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 3584 2025-07-16 22:26:15,537 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'files/6bd4b6baf4603cfe_2d85f72862b55c4eadd9e66e06947f3d' 2025-07-16 22:26:15,539 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 192 2025-07-16 22:26:15,916 [cuckoo.core.resultserver] DEBUG: Task #6736665: File upload for 'shots/0006.jpg' 2025-07-16 22:26:15,939 [cuckoo.core.resultserver] DEBUG: Task #6736665 uploaded file length: 133580 2025-07-16 22:26:15,955 [cuckoo.core.resultserver] DEBUG: Task #6736665 had connection reset for <Context for LOG> 2025-07-16 22:26:17,211 [cuckoo.core.guest] INFO: win7x642: analysis completed successfully 2025-07-16 22:26:17,225 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Redsocks 2025-07-16 22:26:17,262 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Sniffer 2025-07-16 22:26:18,396 [cuckoo.machinery.virtualbox] INFO: Successfully generated memory dump for virtual machine with label win7x642 to path /srv/cuckoo/cwd/storage/analyses/6736665/memory.dmp 2025-07-16 22:26:18,397 [cuckoo.machinery.virtualbox] DEBUG: Stopping vm win7x642 2025-07-16 22:29:46,661 [cuckoo.core.resultserver] DEBUG: Stopped tracking machine 192.168.168.202 for task #6736665 2025-07-16 22:29:47,343 [cuckoo.core.scheduler] DEBUG: Released database task #6736665 2025-07-16 22:29:47,366 [cuckoo.core.scheduler] INFO: Task #6736665: analysis procedure completed
cmdline | "C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:1912 CREDAT:275457 /prefetch:2 |
Sophos | malware site |
alphaMountain_ai | malicious site |
Fortinet | malware site |
Lionic | malware site |
Seclookup | malicious site |
CyRadar | malware site |
Webroot | malicious site |
Sucuri SiteCheck | malicious site |
BitDefender | malware site |
G-Data | malware site |
VIPRE | malware site |