Analyzer Log
2025-07-11 09:19:13,046 [analyzer] DEBUG: Starting analyzer from: C:\tmp2pjrvv
2025-07-11 09:19:13,078 [analyzer] DEBUG: Pipe server name: \??\PIPE\lUjEmscFKRafOHUFTeGe
2025-07-11 09:19:13,078 [analyzer] DEBUG: Log pipe server name: \??\PIPE\dtbkFlvrQwtwthdnUZsooqUIUHpX
2025-07-11 09:19:13,078 [analyzer] DEBUG: No analysis package specified, trying to detect it automagically.
2025-07-11 09:19:13,078 [analyzer] INFO: Automatically selected analysis package "exe"
2025-07-11 09:19:13,390 [analyzer] DEBUG: Started auxiliary module Curtain
2025-07-11 09:19:13,390 [analyzer] DEBUG: Started auxiliary module DbgView
2025-07-11 09:19:13,812 [analyzer] DEBUG: Started auxiliary module Disguise
2025-07-11 09:19:14,030 [analyzer] DEBUG: Loaded monitor into process with pid 504
2025-07-11 09:19:14,030 [analyzer] DEBUG: Started auxiliary module DumpTLSMasterSecrets
2025-07-11 09:19:14,030 [analyzer] DEBUG: Started auxiliary module Human
2025-07-11 09:19:14,030 [analyzer] DEBUG: Started auxiliary module InstallCertificate
2025-07-11 09:19:14,030 [analyzer] DEBUG: Started auxiliary module Reboot
2025-07-11 09:19:14,108 [analyzer] DEBUG: Started auxiliary module RecentFiles
2025-07-11 09:19:14,108 [analyzer] DEBUG: Started auxiliary module Screenshots
2025-07-11 09:19:14,108 [analyzer] DEBUG: Started auxiliary module Sysmon
2025-07-11 09:19:14,108 [analyzer] DEBUG: Started auxiliary module LoadZer0m0n
2025-07-11 09:19:14,265 [lib.api.process] INFO: Successfully executed process from path u'C:\\Users\\ADMINI~1\\AppData\\Local\\Temp\\19ffb13c727aaad7_quake3_crack.exe' with arguments '' and pid 804
2025-07-11 09:19:14,483 [analyzer] DEBUG: Loaded monitor into process with pid 804
2025-07-11 09:19:14,515 [analyzer] INFO: Added new file to list with pid 804 and path C:\Windows\win32dc\DAoC crack.exe
2025-07-11 09:19:14,546 [analyzer] INFO: Added new file to list with pid 804 and path C:\Windows\win32dc\Silent Hill 4_cdfix.exe
2025-07-11 09:19:14,562 [analyzer] INFO: Added new file to list with pid 804 and path C:\Windows\win32dc\UT2004_cheat.exe
2025-07-11 09:19:14,592 [analyzer] INFO: Added new file to list with pid 804 and path C:\Windows\win32dc\Doom 3(fix).exe
2025-07-11 09:19:14,608 [analyzer] INFO: Added new file to list with pid 804 and path C:\Windows\win32dc\Half-Life 2 + hack.exe
2025-07-11 09:22:33,280 [analyzer] INFO: Analysis timeout hit, terminating analysis.
2025-07-11 09:22:34,233 [analyzer] INFO: Terminating remaining processes before shutdown.
2025-07-11 09:22:34,233 [lib.api.process] INFO: Successfully terminated process with pid 804.
2025-07-11 09:22:34,265 [analyzer] INFO: Analysis completed.
Cuckoo Log
2025-07-16 15:47:34,041 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:35,501 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:36,536 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:37,571 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:38,729 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:40,009 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:41,157 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:42,179 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:43,206 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:44,226 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:45,266 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:46,293 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:47,320 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:48,341 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:49,463 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:50,483 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:51,500 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:52,576 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:53,599 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:54,618 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:55,644 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:56,663 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:57,681 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:58,864 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:47:59,888 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:00,925 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:01,962 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:03,206 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:04,387 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:05,652 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:06,684 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:07,710 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:08,736 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:09,755 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:10,834 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:11,858 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:12,897 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:14,317 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:15,348 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:16,371 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:17,605 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:18,631 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:19,651 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:20,672 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:21,692 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:22,715 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:23,736 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:24,758 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:25,781 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:26,828 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:27,845 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:28,868 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:29,882 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:30,909 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:31,936 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:32,968 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:33,989 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:35,016 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:36,046 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:37,065 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:38,086 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:39,105 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:40,139 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:41,164 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:42,186 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:43,208 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:44,234 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:45,265 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:46,286 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:47,311 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:48,333 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:49,488 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:50,573 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:51,643 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:52,702 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:54,125 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:55,279 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:56,362 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:57,436 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:58,519 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:48:59,586 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:49:01,635 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:49:02,999 [cuckoo.core.scheduler] DEBUG: Task #6719677: no machine available yet
2025-07-16 15:49:04,096 [cuckoo.core.scheduler] INFO: Task #6719677: acquired machine win7x648 (label=win7x648)
2025-07-16 15:49:04,102 [cuckoo.core.resultserver] DEBUG: Now tracking machine 192.168.168.208 for task #6719677
2025-07-16 15:49:04,661 [cuckoo.auxiliary.sniffer] INFO: Started sniffer with PID 2449883 (interface=vboxnet0, host=192.168.168.208)
2025-07-16 15:49:04,827 [cuckoo.machinery.virtualbox] DEBUG: Starting vm win7x648
2025-07-16 15:49:06,042 [cuckoo.machinery.virtualbox] DEBUG: Restoring virtual machine win7x648 to vmcloak
2025-07-16 15:51:12,143 [cuckoo.core.guest] INFO: Starting analysis #6719677 on guest (id=win7x648, ip=192.168.168.208)
2025-07-16 15:51:13,166 [cuckoo.core.guest] DEBUG: win7x648: not ready yet
2025-07-16 15:51:18,197 [cuckoo.core.guest] INFO: Guest is running Cuckoo Agent 0.10 (id=win7x648, ip=192.168.168.208)
2025-07-16 15:51:18,301 [cuckoo.core.guest] DEBUG: Uploading analyzer to guest (id=win7x648, ip=192.168.168.208, monitor=latest, size=6660546)
2025-07-16 15:51:19,777 [cuckoo.core.resultserver] DEBUG: Task #6719677: live log analysis.log initialized.
2025-07-16 15:51:20,949 [cuckoo.core.resultserver] DEBUG: Task #6719677 is sending a BSON stream
2025-07-16 15:51:21,204 [cuckoo.core.resultserver] DEBUG: Task #6719677 is sending a BSON stream
2025-07-16 15:51:22,044 [cuckoo.core.resultserver] DEBUG: Task #6719677: File upload for 'shots/0001.jpg'
2025-07-16 15:51:22,062 [cuckoo.core.resultserver] DEBUG: Task #6719677 uploaded file length: 133459
2025-07-16 15:51:34,686 [cuckoo.core.guest] DEBUG: win7x648: analysis #6719677 still processing
2025-07-16 15:51:50,075 [cuckoo.core.guest] DEBUG: win7x648: analysis #6719677 still processing
2025-07-16 15:52:05,428 [cuckoo.core.guest] DEBUG: win7x648: analysis #6719677 still processing
2025-07-16 15:52:20,576 [cuckoo.core.guest] DEBUG: win7x648: analysis #6719677 still processing
2025-07-16 15:52:35,915 [cuckoo.core.guest] DEBUG: win7x648: analysis #6719677 still processing
2025-07-16 15:52:51,118 [cuckoo.core.guest] DEBUG: win7x648: analysis #6719677 still processing
2025-07-16 15:53:06,327 [cuckoo.core.guest] DEBUG: win7x648: analysis #6719677 still processing
2025-07-16 15:53:21,597 [cuckoo.core.guest] DEBUG: win7x648: analysis #6719677 still processing
2025-07-16 15:53:36,717 [cuckoo.core.guest] DEBUG: win7x648: analysis #6719677 still processing
2025-07-16 15:53:51,806 [cuckoo.core.guest] DEBUG: win7x648: analysis #6719677 still processing
2025-07-16 15:54:07,507 [cuckoo.core.guest] DEBUG: win7x648: analysis #6719677 still processing
2025-07-16 15:54:22,807 [cuckoo.core.guest] DEBUG: win7x648: analysis #6719677 still processing
2025-07-16 15:54:38,020 [cuckoo.core.guest] DEBUG: win7x648: analysis #6719677 still processing
2025-07-16 15:54:40,587 [cuckoo.core.resultserver] DEBUG: Task #6719677: File upload for 'curtain/1752218553.45.curtain.log'
2025-07-16 15:54:40,595 [cuckoo.core.resultserver] DEBUG: Task #6719677 uploaded file length: 36
2025-07-16 15:54:40,996 [cuckoo.core.resultserver] DEBUG: Task #6719677: File upload for 'sysmon/1752218554.14.sysmon.xml'
2025-07-16 15:54:41,085 [cuckoo.core.resultserver] DEBUG: Task #6719677 uploaded file length: 9940766
2025-07-16 15:54:41,103 [cuckoo.core.resultserver] DEBUG: Task #6719677: File upload for 'files/2eab62f96cca7d55_silent hill 4_cdfix.exe'
2025-07-16 15:54:41,105 [cuckoo.core.resultserver] DEBUG: Task #6719677: File upload for 'files/14d3e57d84816975_daoc crack.exe'
2025-07-16 15:54:41,107 [cuckoo.core.resultserver] DEBUG: Task #6719677 uploaded file length: 107554
2025-07-16 15:54:41,109 [cuckoo.core.resultserver] DEBUG: Task #6719677: File upload for 'files/2f62244ef80cafd9_doom 3(fix).exe'
2025-07-16 15:54:41,111 [cuckoo.core.resultserver] DEBUG: Task #6719677: File upload for 'files/32a2a5c82db12424_ut2004_cheat.exe'
2025-07-16 15:54:41,113 [cuckoo.core.resultserver] DEBUG: Task #6719677 uploaded file length: 105506
2025-07-16 15:54:41,115 [cuckoo.core.resultserver] DEBUG: Task #6719677 uploaded file length: 107554
2025-07-16 15:54:41,116 [cuckoo.core.resultserver] DEBUG: Task #6719677: File upload for 'files/cd827971dfd1cdd2_half-life 2 + hack.exe'
2025-07-16 15:54:41,120 [cuckoo.core.resultserver] DEBUG: Task #6719677 uploaded file length: 107554
2025-07-16 15:54:41,121 [cuckoo.core.resultserver] DEBUG: Task #6719677 uploaded file length: 108578
2025-07-16 15:54:41,135 [cuckoo.core.resultserver] DEBUG: Task #6719677 had connection reset for <Context for LOG>
2025-07-16 15:54:44,058 [cuckoo.core.guest] INFO: win7x648: analysis completed successfully
2025-07-16 15:54:44,075 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Redsocks
2025-07-16 15:54:44,113 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Sniffer
2025-07-16 15:54:45,564 [cuckoo.machinery.virtualbox] INFO: Successfully generated memory dump for virtual machine with label win7x648 to path /srv/cuckoo/cwd/storage/analyses/6719677/memory.dmp
2025-07-16 15:54:45,565 [cuckoo.machinery.virtualbox] DEBUG: Stopping vm win7x648
2025-07-16 15:57:35,604 [cuckoo.core.resultserver] DEBUG: Stopped tracking machine 192.168.168.208 for task #6719677
2025-07-16 15:57:35,990 [cuckoo.core.scheduler] DEBUG: Released database task #6719677
2025-07-16 15:57:36,022 [cuckoo.core.scheduler] INFO: Task #6719677: analysis procedure completed