Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | May 18, 2021, 9:11 a.m. | May 18, 2021, 9:13 a.m. |
Name | Response | Post-Analysis Lookup |
---|---|---|
www.wws23dfwe.com | 45.76.53.14 |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
section | .txet |
suspicious_features | POST method with no referer header | suspicious_request | POST http://www.wws23dfwe.com/index.php/api/a | ||||||
suspicious_features | POST method with no referer header | suspicious_request | POST http://www.wws23dfwe.com/index.php/api/fb |
request | POST http://www.wws23dfwe.com/index.php/api/a |
request | POST http://www.wws23dfwe.com/index.php/api/fb |
request | POST http://www.wws23dfwe.com/index.php/api/a |
request | POST http://www.wws23dfwe.com/index.php/api/fb |
file | C:\Users\test22\AppData\Local\Google\Chrome\User Data\Default\Cookies-wal |
file | C:\Users\test22\AppData\Local\Google\Chrome\User Data\Default\Login Data1-wal |
file | C:\Users\test22\AppData\Local\Google\Chrome\User Data\Default\Cookies |
file | C:\Users\test22\AppData\Local\Google\Chrome\User Data\Default\Cookies-journal |
file | C:\Users\test22\AppData\Local\Google\Chrome\User Data\Default\Login Data1 |
file | C:\Users\test22\AppData\Local\Google\Chrome\User Data\Default\Login Data1-journal |
cmdline | cmd.exe /C ping 1.1.1.1 -n 1 -w 3000 > Nul & Del /f /q "C:\Users\test22\AppData\Local\Temp\setup.exe" |
file | C:\Users\test22\AppData\Local\Temp\setup.exe |
cmdline | cmd.exe /C ping 1.1.1.1 -n 1 -w 3000 > Nul & Del /f /q "C:\Users\test22\AppData\Local\Temp\setup.exe" |
cmdline | ping 1.1.1.1 -n 1 -w 3000 |
file | C:\Users\test22\AppData\Local\Temp\setup.exe |