File 201c3bf7995424b5_unins000.dat

Size 6.3KB
Type InnoSetup Log Delete Multiple Files, version 0x30, 6417 bytes, YRKRCIHM\Administrator, "C:\Users\Administrator\AppData\Local\Delete Multiple Files 1.8"
MD5 4709a5e41393828608699e49946860b9
SHA1 5bada7e2728571eee0d4fed7f8c9a3081a8f8520
SHA256 201c3bf7995424b53bd18e2a543f538028a55d7fa9549d602ff74d04e2e5840d
SHA512
49866d195b7934c9619c117d6c0c115e3cc8bbd1557013a75e118f9d3a9323436aec5e4a666a12052e7b861c7f160a0e02e4026bfbb7944467d4171c21d343d6
CRC32 8D7035B9
ssdeep None
Yara
  • win_files_operation - Affect private profile

Score

This file appears fairly benign with a score of 0.3 out of 10.

Please notice: The scoring system is currently still in development and should be considered an alpha feature.


Autosubmit

Parent_Task_ID:6207560

Feedback

Expecting different results? Send us this analysis and we will inspect it. Click here

Information on Execution

Analysis
Category Started Completed Duration Routing Logs
FILE April 3, 2025, 8:06 p.m. April 3, 2025, 8:16 p.m. 621 seconds internet Show Analyzer Log
Show Cuckoo Log

Analyzer Log

2025-04-02 12:21:58,015 [analyzer] DEBUG: Starting analyzer from: C:\tmppw5mq4
2025-04-02 12:21:58,030 [analyzer] DEBUG: Pipe server name: \??\PIPE\KeaQpKvnTOWnzSQMNtgOWwPRjTpq
2025-04-02 12:21:58,030 [analyzer] DEBUG: Log pipe server name: \??\PIPE\CtPhLtygChZokJqlEo
2025-04-02 12:21:58,030 [analyzer] DEBUG: No analysis package specified, trying to detect it automagically.
2025-04-02 12:21:58,046 [analyzer] INFO: Automatically selected analysis package "generic"
2025-04-02 12:21:58,375 [analyzer] DEBUG: Started auxiliary module Curtain
2025-04-02 12:21:58,375 [analyzer] DEBUG: Started auxiliary module DbgView
2025-04-02 12:21:58,953 [analyzer] DEBUG: Started auxiliary module Disguise
2025-04-02 12:21:59,155 [analyzer] DEBUG: Loaded monitor into process with pid 504
2025-04-02 12:21:59,155 [analyzer] DEBUG: Started auxiliary module DumpTLSMasterSecrets
2025-04-02 12:21:59,155 [analyzer] DEBUG: Started auxiliary module Human
2025-04-02 12:21:59,155 [analyzer] DEBUG: Started auxiliary module InstallCertificate
2025-04-02 12:21:59,155 [analyzer] DEBUG: Started auxiliary module Reboot
2025-04-02 12:21:59,250 [analyzer] DEBUG: Started auxiliary module RecentFiles
2025-04-02 12:21:59,250 [analyzer] DEBUG: Started auxiliary module Screenshots
2025-04-02 12:21:59,250 [analyzer] DEBUG: Started auxiliary module Sysmon
2025-04-02 12:21:59,250 [analyzer] DEBUG: Started auxiliary module LoadZer0m0n
2025-04-02 12:21:59,328 [lib.api.process] INFO: Successfully executed process from path 'C:\\Windows\\System32\\cmd.exe' with arguments ['/c', 'start', '/wait', '"NIbKXps"', u'C:\\Users\\ADMINI~1\\AppData\\Local\\Temp\\201c3bf7995424b5_unins000.dat'] and pid 2848
2025-04-02 12:21:59,608 [analyzer] DEBUG: Loaded monitor into process with pid 2848
2025-04-02 12:21:59,983 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,015 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,030 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,030 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,046 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,046 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,046 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,062 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,062 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,092 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,108 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,155 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,171 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,171 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,171 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,187 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,187 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,187 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,187 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,203 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,203 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,203 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,750 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,765 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,765 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,765 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,780 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,780 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,796 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,796 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,796 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,812 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,812 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,983 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,983 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:00,983 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:01,000 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:01,000 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:01,000 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:01,000 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:01,015 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:01,015 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:01,015 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:01,030 [analyzer] CRITICAL: Unable to find closeby page for hooking!
2025-04-02 12:22:07,640 [analyzer] INFO: Injected into process with pid 1280 and name u'rundll32.exe'
2025-04-02 12:22:07,937 [lib.api.process] ERROR: Failed to dump memory of 64-bit process with pid 1280.
2025-04-02 12:22:08,187 [analyzer] DEBUG: Loaded monitor into process with pid 1280
2025-04-02 12:25:18,375 [analyzer] INFO: Analysis timeout hit, terminating analysis.
2025-04-02 12:25:19,578 [analyzer] INFO: Terminating remaining processes before shutdown.
2025-04-02 12:25:19,578 [lib.api.process] INFO: Successfully terminated process with pid 2848.
2025-04-02 12:25:19,578 [lib.api.process] INFO: Successfully terminated process with pid 1280.
2025-04-02 12:25:19,578 [analyzer] INFO: Analysis completed.

Cuckoo Log

2025-04-03 20:06:27,900 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:28,926 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:29,956 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:30,982 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:32,011 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:33,045 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:34,069 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:35,099 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:36,127 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:37,158 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:38,255 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:39,286 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:40,354 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:41,440 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:42,473 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:43,513 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:44,567 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:45,626 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:46,930 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:47,975 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:49,194 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:50,246 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:51,365 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:52,416 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:53,455 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:54,507 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:55,556 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:56,608 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:57,664 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:58,715 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:06:59,768 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:00,816 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:01,867 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:03,017 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:04,115 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:05,251 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:06,318 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:07,403 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:08,472 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:09,540 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:10,613 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:11,663 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:12,716 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:13,761 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:14,827 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:15,903 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:16,955 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:18,034 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:19,102 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:20,154 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:21,197 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:22,247 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:23,432 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:24,477 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:25,532 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:26,598 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:27,664 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:28,728 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:29,920 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:30,992 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:32,060 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:33,126 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:34,214 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:35,324 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:36,455 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:37,525 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:38,862 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:39,939 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:41,021 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:42,109 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:43,201 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:44,494 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:45,587 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:46,853 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:47,931 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:49,112 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:50,198 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:51,287 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:52,369 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:53,637 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:54,742 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:55,815 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:57,117 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:58,186 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:07:59,271 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:00,333 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:01,395 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:02,452 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:03,483 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:04,506 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:05,767 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:06,798 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:07,844 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:08,866 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:09,889 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:10,907 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:11,928 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:12,953 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:13,972 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:14,993 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:16,016 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:17,033 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:18,051 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:19,071 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:20,090 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:21,246 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:22,283 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:23,321 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:24,476 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:25,666 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:26,725 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:27,774 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:28,814 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:29,847 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:30,888 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:32,371 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:33,497 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:34,570 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:35,670 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:36,759 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:37,853 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:38,883 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:39,908 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:41,014 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:42,197 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:43,290 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:44,666 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:45,788 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:46,918 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:48,061 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:49,307 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:50,616 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:51,733 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:52,796 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:53,860 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:54,961 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:56,026 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:57,053 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:58,250 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:08:59,552 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:00,656 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:01,778 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:02,999 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:04,074 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:05,163 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:06,193 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:07,212 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:08,245 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:09,278 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:10,302 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:11,333 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:12,362 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:13,426 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:14,862 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:15,914 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:16,963 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:17,998 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:19,029 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:20,061 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:21,098 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:22,129 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:23,166 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:24,237 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:25,274 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:26,305 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:27,344 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:28,385 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:29,420 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:30,454 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:31,487 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:32,519 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:33,679 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:34,741 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:35,778 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:36,818 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:37,860 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:38,903 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:39,942 [cuckoo.core.scheduler] DEBUG: Task #6215471: no machine available yet
2025-04-03 20:09:40,986 [cuckoo.core.scheduler] INFO: Task #6215471: acquired machine win7x646 (label=win7x646)
2025-04-03 20:09:40,986 [cuckoo.core.resultserver] DEBUG: Now tracking machine 192.168.168.206 for task #6215471
2025-04-03 20:09:41,506 [cuckoo.auxiliary.sniffer] INFO: Started sniffer with PID 686053 (interface=vboxnet0, host=192.168.168.206)
2025-04-03 20:09:41,537 [cuckoo.machinery.virtualbox] DEBUG: Starting vm win7x646
2025-04-03 20:09:42,368 [cuckoo.machinery.virtualbox] DEBUG: Restoring virtual machine win7x646 to vmcloak
2025-04-03 20:11:40,084 [cuckoo.core.guest] INFO: Starting analysis #6215471 on guest (id=win7x646, ip=192.168.168.206)
2025-04-03 20:11:41,090 [cuckoo.core.guest] DEBUG: win7x646: not ready yet
2025-04-03 20:11:46,120 [cuckoo.core.guest] INFO: Guest is running Cuckoo Agent 0.10 (id=win7x646, ip=192.168.168.206)
2025-04-03 20:11:46,233 [cuckoo.core.guest] DEBUG: Uploading analyzer to guest (id=win7x646, ip=192.168.168.206, monitor=latest, size=6660546)
2025-04-03 20:11:47,521 [cuckoo.core.resultserver] DEBUG: Task #6215471: live log analysis.log initialized.
2025-04-03 20:11:48,631 [cuckoo.core.resultserver] DEBUG: Task #6215471 is sending a BSON stream
2025-04-03 20:11:49,006 [cuckoo.core.resultserver] DEBUG: Task #6215471 is sending a BSON stream
2025-04-03 20:11:49,910 [cuckoo.core.resultserver] DEBUG: Task #6215471: File upload for 'shots/0001.jpg'
2025-04-03 20:11:49,945 [cuckoo.core.resultserver] DEBUG: Task #6215471 uploaded file length: 110732
2025-04-03 20:11:57,552 [cuckoo.core.resultserver] DEBUG: Task #6215471 is sending a BSON stream
2025-04-03 20:11:59,315 [cuckoo.core.resultserver] DEBUG: Task #6215471: File upload for 'shots/0002.jpg'
2025-04-03 20:11:59,338 [cuckoo.core.resultserver] DEBUG: Task #6215471 uploaded file length: 121280
2025-04-03 20:12:02,163 [cuckoo.core.guest] DEBUG: win7x646: analysis #6215471 still processing
2025-04-03 20:12:17,393 [cuckoo.core.guest] DEBUG: win7x646: analysis #6215471 still processing
2025-04-03 20:12:32,519 [cuckoo.core.guest] DEBUG: win7x646: analysis #6215471 still processing
2025-04-03 20:12:47,924 [cuckoo.core.guest] DEBUG: win7x646: analysis #6215471 still processing
2025-04-03 20:13:03,527 [cuckoo.core.guest] DEBUG: win7x646: analysis #6215471 still processing
2025-04-03 20:13:18,632 [cuckoo.core.guest] DEBUG: win7x646: analysis #6215471 still processing
2025-04-03 20:13:34,031 [cuckoo.core.guest] DEBUG: win7x646: analysis #6215471 still processing
2025-04-03 20:13:49,118 [cuckoo.core.guest] DEBUG: win7x646: analysis #6215471 still processing
2025-04-03 20:14:04,682 [cuckoo.core.guest] DEBUG: win7x646: analysis #6215471 still processing
2025-04-03 20:14:20,086 [cuckoo.core.guest] DEBUG: win7x646: analysis #6215471 still processing
2025-04-03 20:14:35,380 [cuckoo.core.guest] DEBUG: win7x646: analysis #6215471 still processing
2025-04-03 20:14:50,989 [cuckoo.core.guest] DEBUG: win7x646: analysis #6215471 still processing
2025-04-03 20:15:06,287 [cuckoo.core.guest] DEBUG: win7x646: analysis #6215471 still processing
2025-04-03 20:15:08,080 [cuckoo.core.resultserver] DEBUG: Task #6215471: File upload for 'curtain/1743589518.53.curtain.log'
2025-04-03 20:15:08,083 [cuckoo.core.resultserver] DEBUG: Task #6215471 uploaded file length: 36
2025-04-03 20:15:09,013 [cuckoo.core.resultserver] DEBUG: Task #6215471: File upload for 'sysmon/1743589519.47.sysmon.xml'
2025-04-03 20:15:09,117 [cuckoo.core.resultserver] DEBUG: Task #6215471 uploaded file length: 15529316
2025-04-03 20:15:09,145 [cuckoo.core.resultserver] DEBUG: Task #6215471 had connection reset for <Context for LOG>
2025-04-03 20:15:09,326 [cuckoo.core.guest] INFO: win7x646: analysis completed successfully
2025-04-03 20:15:09,338 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Redsocks
2025-04-03 20:15:09,361 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Sniffer
2025-04-03 20:15:10,556 [cuckoo.machinery.virtualbox] INFO: Successfully generated memory dump for virtual machine with label win7x646 to path /srv/cuckoo/cwd/storage/analyses/6215471/memory.dmp
2025-04-03 20:15:10,571 [cuckoo.machinery.virtualbox] DEBUG: Stopping vm win7x646
2025-04-03 20:16:48,899 [cuckoo.core.resultserver] DEBUG: Stopped tracking machine 192.168.168.206 for task #6215471
2025-04-03 20:16:49,266 [cuckoo.core.scheduler] DEBUG: Released database task #6215471
2025-04-03 20:16:49,290 [cuckoo.core.scheduler] INFO: Task #6215471: analysis procedure completed

Signatures

Yara rule detected for file (1 event)
description Affect private profile rule win_files_operation
Checks if process is being debugged by a debugger (1 event)
Time & API Arguments Status Return Repeated

IsDebuggerPresent

0 0
Screenshots
Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action VT Location
No hosts contacted.
Cuckoo

We're processing your submission... This could take a few seconds.