Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | Nov. 1, 2021, 10:25 a.m. | Nov. 1, 2021, 10:30 a.m. |
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,DllGetClassObject
2776-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,DllGetClassObject
1572
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,DllMain
1224-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,DllMain
2144
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,DllRegisterServer
2056-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,DllRegisterServer
540
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,DllUnregisterServer
668-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,DllUnregisterServer
2888
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,StartW
2312-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,StartW
1632
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_codec_set_threads
900-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_codec_set_threads
2764
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_create_compress
2388-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_create_compress
620
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_create_decompress
1760-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_create_decompress
2256
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_decode
2852-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_decode
2532
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_decode_tile_data
2356-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_decode_tile_data
3120
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_destroy_codec
3164-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_destroy_codec
3380
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_destroy_cstr_index
3300-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_destroy_cstr_index
3420
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_destroy_cstr_info
3472-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_destroy_cstr_info
3720
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_dump_codec
3636-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_dump_codec
3824
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_encode
3892-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_encode
2032
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_encoder_set_extra_options
4060-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_encoder_set_extra_options
2972
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_end_compress
2548-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_end_compress
3312
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_end_decompress
2620-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_end_decompress
3592
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_get_cstr_index
3588-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_get_cstr_index
3928
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_get_cstr_info
3864-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_get_cstr_info
3296
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_get_decoded_tile
1032-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_get_decoded_tile
3552
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_get_num_cpus
3668-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_get_num_cpus
3128
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_has_thread_support
2296-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_has_thread_support
1296
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_image_create
3544-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_image_create
4140
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_image_data_alloc
4164-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_image_data_alloc
4560
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_image_data_free
4280-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_image_data_free
4540
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_image_destroy
4376-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_image_destroy
4508
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_image_tile_create
4464-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_image_tile_create
4804
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_read_header
4692-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_read_header
4884
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_read_tile_header
4780-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_read_tile_header
5012
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_MCT
4968-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_MCT
4108
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_decode_area
3336-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_decode_area
4396
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_decoded_components
4504-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_decoded_components
4672
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_decoded_resolution_factor
4844-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_decoded_resolution_factor
4240
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_default_decoder_parameters
4144-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_default_decoder_parameters
4552
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_default_encoder_parameters
4168-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_default_encoder_parameters
4604
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_error_handler
4320-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_error_handler
4640
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_info_handler
4592-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_info_handler
1472
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_warning_handler
4480-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_set_warning_handler
4204
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_setup_decoder
4456-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_setup_decoder
4796
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_setup_encoder
1188-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_setup_encoder
5196
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_start_compress
5280-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_start_compress
5488
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_create
5400-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_create
5652
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_create_default_file_stream
5512-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_create_default_file_stream
5732
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_create_file_stream
5624-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_create_file_stream
5940
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_default_create
5780-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_default_create
6032
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_destroy
5896-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_destroy
240
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_set_read_function
4580-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_set_read_function
5156
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_set_seek_function
4924-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_set_seek_function
5716
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_set_skip_function
5508-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_set_skip_function
2512
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_set_user_data
5700-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_set_user_data
5248
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_set_user_data_length
5936-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_set_user_data_length
2424
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_set_write_function
5144-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_stream_set_write_function
5460
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_version
1888-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_version
5504
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_write_tile
4644-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,opj_write_tile
5564
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\trendmicro2.dll,
2704
Name | Response | Post-Analysis Lookup |
---|---|---|
nutsstats.com |
IP Address | Status | Action |
---|---|---|
164.124.101.2 | Active | Moloch |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
section | _RDATA |
MicroWorld-eScan | Trojan.GenericKD.37892212 |
FireEye | Trojan.GenericKD.37892212 |
ALYac | Trojan.GenericKD.37892212 |
Cylance | Unsafe |
Sangfor | Trojan.Win64.Shelma.ouu |
K7AntiVirus | Trojan ( 005899421 ) |
Alibaba | Trojan:Win64/GenKryptik.006a3e78 |
K7GW | Trojan ( 005899421 ) |
CrowdStrike | win/malicious_confidence_100% (W) |
Symantec | Trojan.Gen.MBT |
ESET-NOD32 | Win64/CobaltStrike.Artifact.A |
Paloalto | generic.ml |
Kaspersky | Trojan.Win64.Shelma.ouu |
BitDefender | Trojan.GenericKD.37892212 |
Avast | Win64:Trojan-gen |
Ad-Aware | Trojan.GenericKD.37892212 |
Sophos | Mal/Generic-S |
TrendMicro | Trojan.Win64.BAZARLOADER.SMYXBIMZ |
McAfee-GW-Edition | Artemis!Trojan |
Emsisoft | Trojan.GenericKD.37892212 (B) |
Ikarus | Trojan.Win64.Crypt |
GData | Trojan.GenericKD.37892212 |
Webroot | W32.Trojan.FL |
Avira | TR/Crypt.Agent.wjsrm |
Microsoft | Trojan:Win32/Sabsik.FL.B!ml |
Cynet | Malicious (score: 100) |
McAfee | Artemis!AF41813CC051 |
MAX | malware (ai score=80) |
Malwarebytes | Trojan.Bazar |
Fortinet | W64/BazarLoader.AS!tr |
AVG | Win64:Trojan-gen |
Panda | Trj/CI.A |