分析任务

分析类型 虚拟机标签 开始时间 结束时间 持续时间
文件 (Windows) win7-sp1-x64-hpdapp01-1 2019-09-16 16:30:20 2019-09-16 16:32:51 151 秒

魔盾分数

10.0

危险的

文件详细信息

文件名 1PBE%E5%8A%A9%E6%89%8B1.6Beta.exe
文件大小 1490944 字节
文件类型 PE32 executable (GUI) Intel 80386, for MS Windows
MD5 3e357e0d6ac50b3552b9a47885abc4a7
SHA1 c1dc672f260a978d4362ef16586d162691290e5e
SHA256 a2f5799a005445309929393a63832ae9f8f827fafb40b628dc8816dabdc4070b
SHA512 8a0c82bbaedf9bd5e47c7689196e4ca1010af864098cfd5973d6fc7e10a8ef89aeca1f3c25ff81e73e2568a95d2e6b1d574e3debf33d82b220f43a72739d5cce
CRC32 DA42AF94
Ssdeep 24576:TZXvEbkxPP2dEk9EpQxKG4cQToGOlylGrcKG3X:TekqEkvcGp4oGsgERQ
Yara 登录查看Yara规则
样本下载 提交误报

登录查看威胁特征

运行截图


访问主机纪录 (可点击查询WPING实时安全评级)

无主机纪录.

域名解析 (可点击查询WPING实时安全评级)

无域名信息.


摘要

登录查看详细行为信息

PE 信息

初始地址 0x00400000
入口地址 0x00475c17
声明校验值 0x00000000
实际校验值 0x0016f406
最低操作系统版本要求 4.0
编译时间 2019-09-03 01:06:28
载入哈希 b1bd8405aff74922604f99cc7ebbe766

版本信息

LegalCopyright
FileVersion
CompanyName
Comments
ProductName
ProductVersion
FileDescription
Translation

PE 数据组成

名称 虚拟地址 虚拟大小 原始数据大小 特征 熵(Entropy)
.text 0x00001000 0x000a78da 0x000a8000 IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 6.57
.rdata 0x000a9000 0x00091196 0x00092000 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 6.15
.data 0x0013b000 0x00061cb1 0x00019000 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 5.41
.rsrc 0x0019d000 0x00017144 0x00018000 IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 3.78

导入

库: WINMM.dll:
0x4a966c midiStreamProperty
0x4a9670 midiStreamOpen
0x4a9678 midiStreamOut
0x4a967c midiStreamStop
0x4a9680 midiOutReset
0x4a9684 midiStreamClose
0x4a9688 midiStreamRestart
0x4a968c waveOutOpen
0x4a9690 waveOutGetNumDevs
0x4a9694 waveOutClose
0x4a9698 waveOutReset
0x4a969c PlaySoundA
0x4a96a8 waveOutWrite
0x4a96ac waveOutPause
库: WS2_32.dll:
0x4a96c4 accept
0x4a96c8 getpeername
0x4a96cc recv
0x4a96d0 ioctlsocket
0x4a96d4 recvfrom
0x4a96d8 WSAAsyncSelect
0x4a96dc closesocket
0x4a96e0 WSACleanup
0x4a96e4 inet_ntoa
库: MSVFW32.dll:
0x4a93c4 DrawDibDraw
库: AVIFIL32.dll:
0x4a9024 AVIStreamInfoA
0x4a9028 AVIStreamGetFrame
库: KERNEL32.dll:
0x4a919c GetVersion
0x4a91a8 LocalFree
0x4a91b4 DuplicateHandle
0x4a91b8 FlushFileBuffers
0x4a91bc LockFile
0x4a91c0 UnlockFile
0x4a91c4 SetEndOfFile
0x4a91c8 GetStringTypeExA
0x4a91cc lstrcmpiA
0x4a91d0 GlobalDeleteAtom
0x4a91d4 GlobalFindAtomA
0x4a91d8 GlobalAddAtomA
0x4a91dc GlobalGetAtomNameA
0x4a91e0 lstrcmpA
0x4a91e4 LocalAlloc
0x4a91e8 TlsAlloc
0x4a91ec GlobalHandle
0x4a91f0 TlsFree
0x4a91f4 TlsSetValue
0x4a91f8 LocalReAlloc
0x4a91fc TlsGetValue
0x4a9200 GetFileTime
0x4a9204 GetCurrentThread
0x4a9208 GlobalFlags
0x4a920c SetErrorMode
0x4a9210 GetProcessVersion
0x4a9214 GetCPInfo
0x4a9218 GetOEMCP
0x4a921c GetStartupInfoA
0x4a9220 RtlUnwind
0x4a9224 GetSystemTime
0x4a9228 GetLocalTime
0x4a922c RaiseException
0x4a9230 HeapSize
0x4a9234 GetACP
0x4a924c SetHandleCount
0x4a9250 GetStdHandle
0x4a9254 GetFileType
0x4a925c HeapDestroy
0x4a9260 HeapCreate
0x4a9264 VirtualFree
0x4a926c LCMapStringA
0x4a9270 LCMapStringW
0x4a9274 VirtualAlloc
0x4a9278 IsBadWritePtr
0x4a9280 GetStringTypeA
0x4a9284 GetStringTypeW
0x4a9288 CompareStringA
0x4a928c CompareStringW
0x4a9290 IsBadReadPtr
0x4a9294 IsBadCodePtr
0x4a9298 SetStdHandle
0x4a92a0 SetLastError
0x4a92a4 TerminateProcess
0x4a92a8 GetFileSize
0x4a92ac SetFilePointer
0x4a92b0 WideCharToMultiByte
0x4a92b4 MultiByteToWideChar
0x4a92b8 GetCurrentProcess
0x4a92bc SetSystemPowerState
0x4a92c0 CreateSemaphoreA
0x4a92c4 ResumeThread
0x4a92c8 ReleaseSemaphore
0x4a92d4 GetUserDefaultLCID
0x4a92d8 GetProfileStringA
0x4a92dc WriteFile
0x4a92e4 CreateFileA
0x4a92e8 SetEvent
0x4a92ec FindResourceA
0x4a92f0 LoadResource
0x4a92f4 LockResource
0x4a92f8 ReadFile
0x4a92fc GetModuleFileNameA
0x4a9300 GetCurrentThreadId
0x4a9304 ExitProcess
0x4a9308 GlobalSize
0x4a930c GlobalFree
0x4a9318 lstrcatA
0x4a931c lstrlenA
0x4a9320 WinExec
0x4a9324 lstrcpyA
0x4a9328 FindNextFileA
0x4a932c GlobalReAlloc
0x4a9330 HeapFree
0x4a9334 HeapReAlloc
0x4a9338 GetProcessHeap
0x4a933c HeapAlloc
0x4a9340 GetFullPathNameA
0x4a9344 FreeLibrary
0x4a9348 LoadLibraryA
0x4a934c GetLastError
0x4a9350 GetVersionExA
0x4a9358 CreateThread
0x4a935c CreateEventA
0x4a9360 Sleep
0x4a9364 GlobalAlloc
0x4a9368 GlobalLock
0x4a936c GlobalUnlock
0x4a9370 FindFirstFileA
0x4a9374 FindClose
0x4a9378 GetFileAttributesA
0x4a937c DeleteFileA
0x4a9388 GetModuleHandleA
0x4a938c GetProcAddress
0x4a9390 MulDiv
0x4a9394 GetCommandLineA
0x4a9398 GetTickCount
0x4a939c CreateProcessA
0x4a93a0 WaitForSingleObject
0x4a93a4 CloseHandle
0x4a93a8 InterlockedExchange
0x4a93ac VirtualProtect
0x4a93b0 VirtualQuery
0x4a93b4 GetSystemInfo
0x4a93bc lstrcpynA
库: USER32.dll:
0x4a93e8 LoadStringA
0x4a93f0 GetMenuState
0x4a93f4 SetMenuItemBitmaps
0x4a93f8 CheckMenuItem
0x4a93fc MoveWindow
0x4a9400 SetWindowTextA
0x4a9404 IsDialogMessageA
0x4a9408 ScrollWindowEx
0x4a940c SendDlgItemMessageA
0x4a9410 MapWindowPoints
0x4a9414 AdjustWindowRectEx
0x4a9418 GetScrollPos
0x4a941c RegisterClassA
0x4a9420 GetMenuItemCount
0x4a9424 GetMenuItemID
0x4a9428 CreateWindowExA
0x4a942c SetWindowsHookExA
0x4a9430 CallNextHookEx
0x4a9434 GetClassLongA
0x4a9438 SetPropA
0x4a943c UnhookWindowsHookEx
0x4a9440 GetPropA
0x4a9444 CallWindowProcA
0x4a9448 RemovePropA
0x4a944c GetMessageTime
0x4a9450 GetLastActivePopup
0x4a9458 GetWindowPlacement
0x4a945c EndDialog
0x4a9464 DestroyWindow
0x4a9468 GrayStringA
0x4a946c DrawTextA
0x4a9470 TabbedTextOutA
0x4a9474 EndPaint
0x4a9478 BeginPaint
0x4a947c GetWindowDC
0x4a9480 CharUpperA
0x4a9488 DrawStateA
0x4a948c FrameRect
0x4a9490 GetNextDlgTabItem
0x4a9494 GetWindowTextA
0x4a9498 FindWindowExA
0x4a949c GetDlgItem
0x4a94a0 GetClassNameA
0x4a94a4 GetDesktopWindow
0x4a94a8 UnregisterClassA
0x4a94ac GetForegroundWindow
0x4a94b0 LoadIconA
0x4a94b4 TranslateMessage
0x4a94b8 DrawFrameControl
0x4a94bc DrawEdge
0x4a94c0 DrawFocusRect
0x4a94c4 WindowFromPoint
0x4a94c8 GetMessageA
0x4a94cc DispatchMessageA
0x4a94d0 SetRectEmpty
0x4a94e0 CreatePopupMenu
0x4a94e4 AppendMenuA
0x4a94e8 ModifyMenuA
0x4a94ec CreateMenu
0x4a94f4 GetDlgCtrlID
0x4a94f8 GetSubMenu
0x4a94fc EnableMenuItem
0x4a9500 ClientToScreen
0x4a9508 LoadImageA
0x4a9510 ShowWindow
0x4a9514 IsWindowEnabled
0x4a951c GetKeyState
0x4a9524 PostQuitMessage
0x4a9528 IsZoomed
0x4a952c GetClassInfoA
0x4a9530 DefWindowProcA
0x4a9534 GetSystemMenu
0x4a9538 DeleteMenu
0x4a953c GetMenu
0x4a9540 SetMenu
0x4a9544 PeekMessageA
0x4a9548 IsIconic
0x4a954c SetFocus
0x4a9550 GetActiveWindow
0x4a9554 GetWindow
0x4a955c SetWindowRgn
0x4a9560 GetMessagePos
0x4a9564 ScreenToClient
0x4a956c CopyRect
0x4a9570 LoadBitmapA
0x4a9574 WinHelpA
0x4a9578 KillTimer
0x4a957c SetTimer
0x4a9580 GetCapture
0x4a9584 SetCapture
0x4a9588 GetScrollRange
0x4a958c SetScrollRange
0x4a9590 SetScrollPos
0x4a9594 SetRect
0x4a9598 InflateRect
0x4a959c IntersectRect
0x4a95a0 DestroyIcon
0x4a95a4 PtInRect
0x4a95a8 OffsetRect
0x4a95ac IsWindowVisible
0x4a95b0 EnableWindow
0x4a95b4 RedrawWindow
0x4a95b8 GetWindowLongA
0x4a95bc SetWindowLongA
0x4a95c0 GetSysColor
0x4a95c4 SetActiveWindow
0x4a95c8 SetCursorPos
0x4a95cc LoadCursorA
0x4a95d0 SetCursor
0x4a95d4 GetDC
0x4a95d8 FillRect
0x4a95dc IsRectEmpty
0x4a95e0 ReleaseDC
0x4a95e4 IsChild
0x4a95e8 DestroyMenu
0x4a95ec SetForegroundWindow
0x4a95f0 GetWindowRect
0x4a95f4 EqualRect
0x4a95f8 UpdateWindow
0x4a95fc ValidateRect
0x4a9600 InvalidateRect
0x4a9604 GetClientRect
0x4a9608 GetFocus
0x4a960c GetParent
0x4a9610 GetTopWindow
0x4a9614 PostMessageA
0x4a9618 IsWindow
0x4a961c SetParent
0x4a9620 DestroyCursor
0x4a9624 SendMessageA
0x4a9628 SetWindowPos
0x4a962c MessageBoxA
0x4a9630 GetCursorPos
0x4a9634 GetSystemMetrics
0x4a9638 EmptyClipboard
0x4a963c SetClipboardData
0x4a9640 OpenClipboard
0x4a9644 GetClipboardData
0x4a9648 CloseClipboard
0x4a964c wsprintfA
0x4a9650 WaitForInputIdle
0x4a9654 GetSysColorBrush
0x4a9658 DrawIconEx
0x4a965c ReleaseCapture
0x4a9660 ExitWindowsEx
库: GDI32.dll:
0x4a9040 CreateDCA
0x4a9048 GetPolyFillMode
0x4a904c GetStretchBltMode
0x4a9050 GetROP2
0x4a9054 CreateBitmap
0x4a9058 GetBkColor
0x4a905c CreatePatternBrush
0x4a9060 SelectObject
0x4a9064 GetObjectA
0x4a9068 CreatePen
0x4a906c PatBlt
0x4a9070 CombineRgn
0x4a9074 GetBkMode
0x4a9078 CreateRectRgn
0x4a907c FillRgn
0x4a9080 CreateSolidBrush
0x4a9084 GetTextColor
0x4a9088 GetStockObject
0x4a908c SaveDC
0x4a9090 RestoreDC
0x4a9094 SetPolyFillMode
0x4a9098 SetROP2
0x4a909c SetMapMode
0x4a90a0 SetViewportOrgEx
0x4a90a4 OffsetViewportOrgEx
0x4a90a8 SetViewportExtEx
0x4a90ac ScaleViewportExtEx
0x4a90b0 CreateFontIndirectA
0x4a90b4 SetWindowExtEx
0x4a90b8 ScaleWindowExtEx
0x4a90bc GetClipBox
0x4a90c0 EndPage
0x4a90c4 MoveToEx
0x4a90c8 LineTo
0x4a90cc ExtSelectClipRgn
0x4a90d0 GetViewportExtEx
0x4a90d4 PtVisible
0x4a90d8 RectVisible
0x4a90dc ExtTextOutA
0x4a90e0 Escape
0x4a90e4 GetTextMetricsA
0x4a90e8 SetBkColor
0x4a90f0 CreateDIBSection
0x4a90f4 SetStretchBltMode
0x4a90f8 GetClipRgn
0x4a90fc CreatePolygonRgn
0x4a9100 SelectClipRgn
0x4a9104 DeleteObject
0x4a9108 CreateDIBitmap
0x4a9110 CreatePalette
0x4a9114 StretchBlt
0x4a9118 SelectPalette
0x4a911c RealizePalette
0x4a9120 GetDIBits
0x4a9124 GetWindowExtEx
0x4a9128 GetViewportOrgEx
0x4a912c GetWindowOrgEx
0x4a9130 BeginPath
0x4a9134 EndPath
0x4a9138 PathToRegion
0x4a913c CreateEllipticRgn
0x4a9140 EndDoc
0x4a9144 DeleteDC
0x4a9148 StartDocA
0x4a914c StartPage
0x4a9150 BitBlt
0x4a9154 GetPixel
0x4a9158 CreateCompatibleDC
0x4a915c ExcludeClipRect
0x4a9160 SetDIBitsToDevice
0x4a9164 SetTextColor
0x4a9168 SetBkMode
0x4a916c TextOutA
0x4a9170 Ellipse
0x4a9174 Rectangle
0x4a9178 LPtoDP
0x4a917c DPtoLP
0x4a9180 GetCurrentObject
0x4a9184 RoundRect
0x4a918c SetWindowOrgEx
0x4a9190 GetDeviceCaps
0x4a9194 CreateRoundRectRgn
库: WINSPOOL.DRV:
0x4a96b4 OpenPrinterA
0x4a96b8 DocumentPropertiesA
0x4a96bc ClosePrinter
库: comdlg32.dll:
0x4a96ec GetSaveFileNameA
0x4a96f0 GetOpenFileNameA
0x4a96f4 ChooseColorA
0x4a96f8 GetFileTitleA
库: ADVAPI32.dll:
0x4a9000 RegCreateKeyExA
0x4a9004 OpenProcessToken
0x4a9010 RegQueryValueA
0x4a9014 RegSetValueExA
0x4a9018 RegOpenKeyExA
0x4a901c RegCloseKey
库: SHELL32.dll:
0x4a93dc ShellExecuteA
0x4a93e0 Shell_NotifyIconA
库: ole32.dll:
0x4a9700 OleInitialize
0x4a9704 OleUninitialize
0x4a9708 CLSIDFromString
库: OLEAUT32.dll:
0x4a93cc UnRegisterTypeLib
0x4a93d0 RegisterTypeLib
0x4a93d4 LoadTypeLib
库: COMCTL32.dll:
0x4a9030 ImageList_Destroy
0x4a9034 _TrackMouseEvent
0x4a9038 None

.text
`.rdata
@.data
.rsrc
8`}<j
DRQPj
T$|Vj
T$th
|$TVj
|$`Vj
D$@Sj
L$8h
D$8Rj
l$<VWj
D$8 `R
D$8 `R
Ph <T
D$xhcR
}'h
9^xu5j
T$,Qj
T$0Pj
D$8RPj
D$0h
T$,Qj
NpRQj
防病毒引擎/厂商 病毒名/规则匹配 病毒库日期
Bkav 未发现病毒 20190903
MicroWorld-eScan Gen:Variant.Graftor.632683 20190905
FireEye Generic.mg.3e357e0d6ac50b35 20190905
CAT-QuickHeal 未发现病毒 20190904
McAfee 未发现病毒 20190905
Malwarebytes 未发现病毒 20190905
Zillya 未发现病毒 20190904
SUPERAntiSpyware 未发现病毒 20190830
CrowdStrike win/malicious_confidence_100% (D) 20190702
Alibaba 未发现病毒 20190527
K7GW Trojan ( 005246d51 ) 20190905
K7AntiVirus Trojan ( 005246d51 ) 20190905
Arcabit Trojan.Graftor.D9A76B 20190905
Invincea heuristic 20190904
Baidu 未发现病毒 20190318
F-Prot W32/OnlineGames.HG.gen!Eldorado 20190905
Symantec ML.Attribute.HighConfidence 20190904
TotalDefense 未发现病毒 20190905
APEX Malicious 20190904
Avast 未发现病毒 20190905
ClamAV Win.Malware.Zusy-6840460-0 20190904
GData Win32.Application.FlyStudio.F 20190905
Kaspersky 未发现病毒 20190905
BitDefender Gen:Variant.Graftor.632683 20190905
NANO-Antivirus 未发现病毒 20190905
Paloalto 未发现病毒 20190905
ViRobot 未发现病毒 20190905
Rising Trojan.Generic@ML.84 (RDML:cUmt7SxtslI4JIpXsPosbA) 20190905
Ad-Aware Gen:Variant.Graftor.632683 20190905
Sophos 未发现病毒 20190905
Comodo Worm.Win32.Dropper.RA@1qraug 20190905
F-Secure Heuristic.HEUR/AGEN.1040662 20190905
DrWeb Trojan.Hosts.43193 20190905
VIPRE 未发现病毒 20190905
TrendMicro 未发现病毒 20190905
McAfee-GW-Edition BehavesLike.Win32.Generic.th 20190905
Trapmine 未发现病毒 20190826
CMC 未发现病毒 20190321
Emsisoft Gen:Variant.Graftor.632683 (B) 20190905
SentinelOne DFI - Malicious PE 20190807
Cyren W32/OnlineGames.HG.gen!Eldorado 20190905
Jiangmin 未发现病毒 20190905
eGambit 未发现病毒 20190905
Avira HEUR/AGEN.1040662 20190905
MAX malware (ai score=84) 20190905
Antiy-AVL GrayWare/Win32.FlyStudio.a 20190905
Kingsoft 未发现病毒 20190905
Microsoft Trojan:Win32/Wacatac.B!ml 20190905
Endgame malicious (high confidence) 20190819
AegisLab 未发现病毒 20190905
ZoneAlarm 未发现病毒 20190905
Avast-Mobile 未发现病毒 20190904
AhnLab-V3 未发现病毒 20190905
Acronis suspicious 20190904
VBA32 Trojan.Hosts 20190904
ALYac Gen:Variant.Graftor.632683 20190905
TACHYON 未发现病毒 20190905
Cylance Unsafe 20190905
Zoner 未发现病毒 20190904
ESET-NOD32 a variant of Win32/Packed.FlyStudio.AA potentially unwanted 20190905
TrendMicro-HouseCall 未发现病毒 20190905
Tencent 未发现病毒 20190905
Yandex 未发现病毒 20190822
Ikarus 未发现病毒 20190904
MaxSecure 未发现病毒 20190904
Fortinet Adware/FlyStudio 20190905
Webroot 未发现病毒 20190905
AVG 未发现病毒 20190905
Cybereason malicious.d6ac50 20190616
Panda 未发现病毒 20190904
Qihoo-360 未发现病毒 20190905

进程树


1PBE_E5_8A_A9_E6_89_8B1.6Beta.exe, PID: 2500, 上一级进程 PID: 2352
reg.exe, PID: 2548, 上一级进程 PID: 2500

访问主机纪录 (可点击查询WPING实时安全评级)

无主机纪录.

TCP

无TCP连接纪录.

UDP

无UDP连接纪录.

域名解析 (可点击查询WPING实时安全评级)

无域名信息.

TCP

无TCP连接纪录.

UDP

无UDP连接纪录.

HTTP 请求

未发现HTTP请求.

SMTP 流量

无SMTP流量.

IRC 流量

无IRC请求.

ICMP 流量

无ICMP流量.

CIF 报告

无 CIF 结果

网络警报

无警报

TLS

No TLS

Suricata HTTP

No Suricata HTTP

未发现网络提取文件
抱歉! 没有任何文件投放。
没有发现相似的分析.
HTML 总结报告
(需15-60分钟同步)
下载

Processing ( 24.288 seconds )

  • 15.566 Suricata
  • 5.838 Static
  • 1.277 VirusTotal
  • 0.608 TargetInfo
  • 0.424 peid
  • 0.351 NetworkAnalysis
  • 0.13 BehaviorAnalysis
  • 0.052 AnalysisInfo
  • 0.021 Memory
  • 0.017 Strings
  • 0.004 config_decoder

Signatures ( 0.198 seconds )

  • 0.029 antiav_detectreg
  • 0.021 md_url_bl
  • 0.017 md_domain_bl
  • 0.012 infostealer_ftp
  • 0.007 anomaly_persistence_autorun
  • 0.007 antiav_detectfile
  • 0.007 infostealer_im
  • 0.007 ransomware_extensions
  • 0.007 ransomware_files
  • 0.006 antianalysis_detectreg
  • 0.005 api_spamming
  • 0.005 infostealer_bitcoin
  • 0.004 stealth_decoy_document
  • 0.004 stealth_timeout
  • 0.004 infostealer_mail
  • 0.003 tinba_behavior
  • 0.003 antidbg_windows
  • 0.003 antivm_vbox_files
  • 0.003 geodo_banking_trojan
  • 0.003 disables_browser_warn
  • 0.002 rat_nanocore
  • 0.002 betabot_behavior
  • 0.002 kibex_behavior
  • 0.002 cerber_behavior
  • 0.002 antivm_parallels_keys
  • 0.002 browser_security
  • 0.002 modify_proxy
  • 0.002 md_bad_drop
  • 0.001 antivm_generic_services
  • 0.001 ursnif_behavior
  • 0.001 antivm_generic_scsi
  • 0.001 shifu_behavior
  • 0.001 anormaly_invoke_kills
  • 0.001 antianalysis_detectfile
  • 0.001 antidbg_devices
  • 0.001 antivm_generic_diskreg
  • 0.001 antivm_xen_keys
  • 0.001 banker_zeus_mutex
  • 0.001 bot_drive
  • 0.001 bot_drive2
  • 0.001 browser_addon
  • 0.001 disables_system_restore
  • 0.001 disables_windows_defender
  • 0.001 darkcomet_regkeys
  • 0.001 maldun_malicious_drop_executable_file_to_temp_folder
  • 0.001 office_security
  • 0.001 rat_pcclient
  • 0.001 rat_spynet
  • 0.001 recon_fingerprint
  • 0.001 stealth_hiddenreg
  • 0.001 stealth_hide_notifications
  • 0.001 stealth_modify_uac_prompt
  • 0.001 stealth_modify_security_center_warnings

Reporting ( 0.854 seconds )

  • 0.852 ReportHTMLSummary
  • 0.002 Malheur
Task ID 373957
Mongo ID 5d7f48d62f8f2e3c5dbb62bf
Cuckoo release 1.4-Maldun