Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6402 | Oct. 2, 2021, 12:52 p.m. | Oct. 2, 2021, 12:56 p.m. |
-
3306.exe "C:\Users\test22\AppData\Local\Temp\3306.exe"
2140
Name | Response | Post-Analysis Lookup |
---|---|---|
caiyundf.cn | 103.45.185.68 |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
resource name | None |
name | RT_DIALOG | language | LANG_CHINESE | filetype | data | sublanguage | SUBLANG_CHINESE_SIMPLIFIED | offset | 0x00011448 | size | 0x00000196 | ||||||||||||||||||
name | RT_DIALOG | language | LANG_CHINESE | filetype | data | sublanguage | SUBLANG_CHINESE_SIMPLIFIED | offset | 0x00011448 | size | 0x00000196 | ||||||||||||||||||
name | RT_DIALOG | language | LANG_CHINESE | filetype | data | sublanguage | SUBLANG_CHINESE_SIMPLIFIED | offset | 0x00011448 | size | 0x00000196 | ||||||||||||||||||
name | RT_VERSION | language | LANG_CHINESE | filetype | data | sublanguage | SUBLANG_CHINESE_SIMPLIFIED | offset | 0x00011828 | size | 0x000002d0 | ||||||||||||||||||
name | RT_MANIFEST | language | LANG_CHINESE | filetype | XML 1.0 document text | sublanguage | SUBLANG_CHINESE_SIMPLIFIED | offset | 0x00011190 | size | 0x0000028b | ||||||||||||||||||
name | None | language | LANG_CHINESE | filetype | data | sublanguage | SUBLANG_CHINESE_SIMPLIFIED | offset | 0x00011770 | size | 0x000000b6 |
host | 142.250.204.46 |
service_name | CYSRDSL | service_path | C:\Users\test22\AppData\Local\Temp\%SystemRoot%\System32\svchost.exe -k "CYSRDSL" | ||||||
reg_key | HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\CYSRDSL\Parameters\ServiceDll | reg_value | C:\Windows\system32\22155843.txt |