Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | Jan. 22, 2023, 3:43 p.m. | Jan. 22, 2023, 4:04 p.m. |
-
-
KoverV2_launch.exe "C:\Users\test22\AppData\Local\Temp\KoverV2_launch.exe"
2696
-
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
IP Address | Status | Action |
---|---|---|
No hosts contacted. |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
section | _RDATA |
file | C:\Users\test22\AppData\Local\Temp\_MEI25562\pywin32_system32\pywintypes310.dll |
file | C:\Users\test22\AppData\Local\Temp\_MEI25562\VCRUNTIME140.dll |
file | C:\Users\test22\AppData\Local\Temp\_MEI25562\libcrypto-1_1.dll |
file | C:\Users\test22\AppData\Local\Temp\_MEI25562\libssl-1_1.dll |
file | C:\Users\test22\AppData\Local\Temp\_MEI25562\python310.dll |
APEX | Malicious |
Cynet | Malicious (score: 100) |
FireEye | Generic.mg.c536233b2a3d1b36 |
Gridinsoft | Ransom.Win64.Wacatac.oa!s1 |
Acronis | suspicious |