| Size | 48.6KB |
|---|---|
| Type | HTML document, ASCII text |
| MD5 | 58853f6bdc588266b11a1dfa8a77927e |
| SHA1 | c11b798fdb4d51e7a8dcbedac69fa1a280768921 |
| SHA256 | 0bc44630d6686327944485b75f78a292f43ba7a09e8e5a5fb5c85fb6fba3e3fb |
| SHA512 |
84da27cb0adef0b93b5040dfccbf3606fdf27213a4afcda7f6eb8922aede7f40cd2d8850560d5c3357b0291a7b42debfd950e24ed8c5c7d5a477eec824cbcae6
|
| CRC32 | F1CE9DF4 |
| ssdeep | None |
| Yara | None matched |
Please notice: The scoring system is currently still in development and should be considered an alpha feature.
Expecting different results? Send us this analysis and we will inspect it. Click here
| Category | Started | Completed | Duration | Routing | Logs |
|---|---|---|---|---|---|
| FILE | April 11, 2026, 2:09 p.m. | April 11, 2026, 2:10 p.m. | 57 seconds | internet |
Show Analyzer Log Show Cuckoo Log |
2026-04-11 14:09:59,000 [analyzer] DEBUG: Starting analyzer from: C:\tmphzbxu3 2026-04-11 14:09:59,000 [analyzer] DEBUG: Pipe server name: \??\PIPE\vMCzCdbyrotdiLHBm 2026-04-11 14:09:59,000 [analyzer] DEBUG: Log pipe server name: \??\PIPE\HODhoyaMreLufVXicijNvm 2026-04-11 14:09:59,390 [analyzer] DEBUG: Started auxiliary module Curtain 2026-04-11 14:09:59,405 [analyzer] DEBUG: Started auxiliary module DbgView 2026-04-11 14:09:59,953 [analyzer] DEBUG: Started auxiliary module Disguise 2026-04-11 14:10:00,140 [analyzer] DEBUG: Loaded monitor into process with pid 500 2026-04-11 14:10:00,140 [analyzer] DEBUG: Started auxiliary module DumpTLSMasterSecrets 2026-04-11 14:10:00,140 [analyzer] DEBUG: Started auxiliary module Human 2026-04-11 14:10:00,140 [analyzer] DEBUG: Started auxiliary module InstallCertificate 2026-04-11 14:10:00,155 [analyzer] DEBUG: Started auxiliary module Reboot 2026-04-11 14:10:00,233 [analyzer] DEBUG: Started auxiliary module RecentFiles 2026-04-11 14:10:00,233 [analyzer] DEBUG: Started auxiliary module Screenshots 2026-04-11 14:10:00,233 [analyzer] DEBUG: Started auxiliary module Sysmon 2026-04-11 14:10:00,250 [analyzer] DEBUG: Started auxiliary module LoadZer0m0n 2026-04-11 14:10:00,250 [modules.packages.js] INFO: Submitted file is missing extension, added .js 2026-04-11 14:10:00,312 [lib.api.process] INFO: Successfully executed process from path 'C:\\Windows\\System32\\wscript.exe' with arguments [u'C:\\Users\\ADMINI~1\\AppData\\Local\\Temp\\index.html.js'] and pid 1472 2026-04-11 14:10:00,500 [analyzer] DEBUG: Loaded monitor into process with pid 1472 2026-04-11 14:10:00,828 [analyzer] INFO: io=NULL 2026-04-11 14:10:00,828 [analyzer] DEBUG: Error resolving function jscript!ActiveXObjectFncObj_Construct through our custom callback. 2026-04-11 14:10:00,828 [analyzer] INFO: io=NULL 2026-04-11 14:10:00,828 [analyzer] DEBUG: Error resolving function jscript!COleScript_Compile through our custom callback. 2026-04-11 14:10:00,828 [analyzer] INFO: io=NULL 2026-04-11 14:10:00,828 [analyzer] DEBUG: Error resolving function jscript!Math_random through our custom callback. 2026-04-11 14:10:00,875 [analyzer] INFO: io=NULL 2026-04-11 14:10:00,875 [analyzer] DEBUG: Error resolving function jscript!ActiveXObjectFncObj_Construct through our custom callback. 2026-04-11 14:10:00,875 [analyzer] INFO: io=NULL 2026-04-11 14:10:00,875 [analyzer] DEBUG: Error resolving function jscript!COleScript_Compile through our custom callback. 2026-04-11 14:10:00,875 [analyzer] INFO: io=NULL 2026-04-11 14:10:00,890 [analyzer] DEBUG: Error resolving function jscript!Math_random through our custom callback. 2026-04-11 13:10:46,631 [analyzer] INFO: Analysis timeout hit, terminating analysis. 2026-04-11 13:10:46,960 [lib.api.process] ERROR: Failed to dump memory of 64-bit process with pid 1472. 2026-04-11 13:10:47,256 [analyzer] INFO: Terminating remaining processes before shutdown. 2026-04-11 13:10:47,256 [lib.api.process] INFO: Successfully terminated process with pid 1472. 2026-04-11 13:10:47,256 [analyzer] INFO: Analysis completed.
2026-04-11 14:09:59,792 [cuckoo.core.scheduler] INFO: Task #7515396: acquired machine win7x6425 (label=win7x6425) 2026-04-11 14:09:59,792 [cuckoo.core.resultserver] DEBUG: Now tracking machine 192.168.168.225 for task #7515396 2026-04-11 14:10:00,027 [cuckoo.auxiliary.sniffer] INFO: Started sniffer with PID 1092929 (interface=vboxnet0, host=192.168.168.225) 2026-04-11 14:10:00,073 [cuckoo.machinery.virtualbox] DEBUG: Starting vm win7x6425 2026-04-11 14:10:00,581 [cuckoo.machinery.virtualbox] DEBUG: Restoring virtual machine win7x6425 to vmcloak 2026-04-11 14:10:08,786 [cuckoo.core.guest] INFO: Starting analysis #7515396 on guest (id=win7x6425, ip=192.168.168.225) 2026-04-11 14:10:09,792 [cuckoo.core.guest] DEBUG: win7x6425: not ready yet 2026-04-11 14:10:14,816 [cuckoo.core.guest] INFO: Guest is running Cuckoo Agent 0.10 (id=win7x6425, ip=192.168.168.225) 2026-04-11 14:10:14,887 [cuckoo.core.guest] DEBUG: Uploading analyzer to guest (id=win7x6425, ip=192.168.168.225, monitor=latest, size=6660546) 2026-04-11 14:10:16,248 [cuckoo.core.resultserver] DEBUG: Task #7515396: live log analysis.log initialized. 2026-04-11 14:10:17,337 [cuckoo.core.resultserver] DEBUG: Task #7515396 is sending a BSON stream 2026-04-11 14:10:17,633 [cuckoo.core.resultserver] DEBUG: Task #7515396 is sending a BSON stream 2026-04-11 14:10:18,636 [cuckoo.core.resultserver] DEBUG: Task #7515396: File upload for 'shots/0001.jpg' 2026-04-11 14:10:18,655 [cuckoo.core.resultserver] DEBUG: Task #7515396 uploaded file length: 133500 2026-04-11 14:10:19,758 [cuckoo.core.resultserver] DEBUG: Task #7515396: File upload for 'shots/0002.jpg' 2026-04-11 14:10:19,768 [cuckoo.core.resultserver] DEBUG: Task #7515396 uploaded file length: 136146 2026-04-11 14:10:30,833 [cuckoo.core.guest] DEBUG: win7x6425: analysis #7515396 still processing 2026-04-11 14:10:45,993 [cuckoo.core.guest] DEBUG: win7x6425: analysis #7515396 still processing 2026-04-11 14:10:47,135 [cuckoo.core.resultserver] DEBUG: Task #7515396: File upload for 'curtain/1775905847.13.curtain.log' 2026-04-11 14:10:47,138 [cuckoo.core.resultserver] DEBUG: Task #7515396 uploaded file length: 36 2026-04-11 14:10:47,255 [cuckoo.core.resultserver] DEBUG: Task #7515396: File upload for 'sysmon/1775905847.24.sysmon.xml' 2026-04-11 14:10:47,262 [cuckoo.core.resultserver] DEBUG: Task #7515396 uploaded file length: 151742 2026-04-11 14:10:47,717 [cuckoo.core.resultserver] DEBUG: Task #7515396: File upload for 'shots/0003.jpg' 2026-04-11 14:10:47,728 [cuckoo.core.resultserver] DEBUG: Task #7515396 uploaded file length: 133490 2026-04-11 14:10:47,743 [cuckoo.core.resultserver] DEBUG: Task #7515396 had connection reset for <Context for LOG> 2026-04-11 14:10:49,005 [cuckoo.core.guest] INFO: win7x6425: analysis completed successfully 2026-04-11 14:10:49,019 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Redsocks 2026-04-11 14:10:49,051 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Sniffer 2026-04-11 14:10:49,812 [cuckoo.machinery.virtualbox] INFO: Successfully generated memory dump for virtual machine with label win7x6425 to path /srv/cuckoo/cwd/storage/analyses/7515396/memory.dmp 2026-04-11 14:10:49,814 [cuckoo.machinery.virtualbox] DEBUG: Stopping vm win7x6425 2026-04-11 14:10:57,107 [cuckoo.core.resultserver] DEBUG: Stopped tracking machine 192.168.168.225 for task #7515396 2026-04-11 14:10:57,395 [cuckoo.core.scheduler] DEBUG: Released database task #7515396 2026-04-11 14:10:57,412 [cuckoo.core.scheduler] INFO: Task #7515396: analysis procedure completed
| registry | HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\MachineGuid |