Summary | ZeroBOX

Cerber.exe

Admin Tool (Sysinternals etc ...) UPX Malicious Library PE32 PE File
Category Machine Started Completed
FILE s1_win7_x6401 Oct. 6, 2023, 5:41 p.m. Oct. 6, 2023, 5:44 p.m.
Size 492.5KB
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 8b3d0bc69064a0155a205a4202417330
SHA256 9ef7fe10bbbb58899859d82ba7a698cbfdd546c6e9e4d3b55193e4180682036c
CRC32 2892D758
ssdeep 12288:ww+dKNr2YH7WQx3IjKoa+888888888888W888888888888:wVKMYbWzuBf
Yara
  • Malicious_Library_Zero - Malicious_Library
  • UPX_Zero - UPX packed file
  • Admin_Tool_IN_Zero - Admin Tool Sysinternals
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
178.33.158.0 Active Moloch
178.33.158.1 Active Moloch
178.33.158.10 Active Moloch
178.33.158.11 Active Moloch
178.33.158.12 Active Moloch
178.33.158.13 Active Moloch
178.33.158.14 Active Moloch
178.33.158.15 Active Moloch
178.33.158.16 Active Moloch
178.33.158.17 Active Moloch
178.33.158.18 Active Moloch
178.33.158.19 Active Moloch
178.33.158.2 Active Moloch
178.33.158.20 Active Moloch
178.33.158.21 Active Moloch
178.33.158.22 Active Moloch
178.33.158.23 Active Moloch
178.33.158.24 Active Moloch
178.33.158.25 Active Moloch
178.33.158.26 Active Moloch
178.33.158.27 Active Moloch
178.33.158.28 Active Moloch
178.33.158.29 Active Moloch
178.33.158.3 Active Moloch
178.33.158.30 Active Moloch
178.33.158.31 Active Moloch
178.33.158.4 Active Moloch
178.33.158.5 Active Moloch
178.33.158.6 Active Moloch
178.33.158.7 Active Moloch
178.33.158.8 Active Moloch
178.33.158.9 Active Moloch
178.33.159.0 Active Moloch
178.33.159.1 Active Moloch
178.33.159.10 Active Moloch
178.33.159.11 Active Moloch
178.33.159.12 Active Moloch
178.33.159.13 Active Moloch
178.33.159.14 Active Moloch
178.33.159.15 Active Moloch
178.33.159.16 Active Moloch
178.33.159.17 Active Moloch
178.33.159.18 Active Moloch
178.33.159.19 Active Moloch
178.33.159.2 Active Moloch
178.33.159.20 Active Moloch
178.33.159.21 Active Moloch
178.33.159.22 Active Moloch
178.33.159.23 Active Moloch
178.33.159.24 Active Moloch
178.33.159.25 Active Moloch
178.33.159.26 Active Moloch
178.33.159.27 Active Moloch
178.33.159.28 Active Moloch
178.33.159.29 Active Moloch
178.33.159.3 Active Moloch
178.33.159.30 Active Moloch
178.33.159.31 Active Moloch
178.33.159.4 Active Moloch
178.33.159.5 Active Moloch
178.33.159.6 Active Moloch
178.33.159.7 Active Moloch
178.33.159.8 Active Moloch
178.33.159.9 Active Moloch
178.33.160.0 Active Moloch
178.33.160.1 Active Moloch
178.33.160.10 Active Moloch
178.33.160.100 Active Moloch
178.33.160.101 Active Moloch
178.33.160.102 Active Moloch
178.33.160.103 Active Moloch
178.33.160.104 Active Moloch
178.33.160.105 Active Moloch
178.33.160.106 Active Moloch
178.33.160.107 Active Moloch
178.33.160.108 Active Moloch
178.33.160.109 Active Moloch
178.33.160.11 Active Moloch
178.33.160.110 Active Moloch
178.33.160.111 Active Moloch
178.33.160.112 Active Moloch
178.33.160.113 Active Moloch
178.33.160.114 Active Moloch
178.33.160.115 Active Moloch
178.33.160.116 Active Moloch
178.33.160.117 Active Moloch
178.33.160.118 Active Moloch
178.33.160.119 Active Moloch
178.33.160.12 Active Moloch
178.33.160.120 Active Moloch
178.33.160.121 Active Moloch
178.33.160.122 Active Moloch
178.33.160.123 Active Moloch
178.33.160.124 Active Moloch
178.33.160.125 Active Moloch
178.33.160.126 Active Moloch
178.33.160.127 Active Moloch
178.33.160.128 Active Moloch
178.33.160.129 Active Moloch
178.33.160.13 Active Moloch
178.33.160.130 Active Moloch
178.33.160.131 Active Moloch
178.33.160.132 Active Moloch
178.33.160.133 Active Moloch
178.33.160.134 Active Moloch
178.33.160.135 Active Moloch
178.33.160.136 Active Moloch
178.33.160.137 Active Moloch
178.33.160.138 Active Moloch
178.33.160.139 Active Moloch
178.33.160.14 Active Moloch
178.33.160.140 Active Moloch
178.33.160.141 Active Moloch
178.33.160.142 Active Moloch
178.33.160.143 Active Moloch
178.33.160.144 Active Moloch
178.33.160.145 Active Moloch
178.33.160.146 Active Moloch
178.33.160.147 Active Moloch
178.33.160.148 Active Moloch
178.33.160.149 Active Moloch
178.33.160.15 Active Moloch
178.33.160.150 Active Moloch
178.33.160.151 Active Moloch
178.33.160.152 Active Moloch
178.33.160.153 Active Moloch
178.33.160.154 Active Moloch
178.33.160.155 Active Moloch
178.33.160.156 Active Moloch
178.33.160.157 Active Moloch
178.33.160.158 Active Moloch
178.33.160.159 Active Moloch
178.33.160.16 Active Moloch
178.33.160.160 Active Moloch
178.33.160.161 Active Moloch
178.33.160.162 Active Moloch
178.33.160.163 Active Moloch
178.33.160.164 Active Moloch
178.33.160.165 Active Moloch
178.33.160.166 Active Moloch
178.33.160.167 Active Moloch
178.33.160.168 Active Moloch
178.33.160.169 Active Moloch
178.33.160.17 Active Moloch
178.33.160.170 Active Moloch
178.33.160.171 Active Moloch
178.33.160.172 Active Moloch
178.33.160.173 Active Moloch
178.33.160.174 Active Moloch
178.33.160.175 Active Moloch
178.33.160.176 Active Moloch
178.33.160.177 Active Moloch
178.33.160.178 Active Moloch
178.33.160.179 Active Moloch
178.33.160.18 Active Moloch
178.33.160.180 Active Moloch
178.33.160.181 Active Moloch
178.33.160.182 Active Moloch
178.33.160.183 Active Moloch
178.33.160.184 Active Moloch
178.33.160.185 Active Moloch
178.33.160.186 Active Moloch
178.33.160.187 Active Moloch
178.33.160.188 Active Moloch
178.33.160.189 Active Moloch
178.33.160.19 Active Moloch
178.33.160.190 Active Moloch
178.33.160.191 Active Moloch
178.33.160.192 Active Moloch
178.33.160.193 Active Moloch
178.33.160.194 Active Moloch
178.33.160.195 Active Moloch
178.33.160.196 Active Moloch
178.33.160.197 Active Moloch
178.33.160.198 Active Moloch
178.33.160.199 Active Moloch
178.33.160.2 Active Moloch
178.33.160.20 Active Moloch
178.33.160.200 Active Moloch
178.33.160.201 Active Moloch
178.33.160.202 Active Moloch
178.33.160.203 Active Moloch
178.33.160.204 Active Moloch
178.33.160.205 Active Moloch
178.33.160.206 Active Moloch
178.33.160.207 Active Moloch
178.33.160.208 Active Moloch
178.33.160.209 Active Moloch
178.33.160.21 Active Moloch
178.33.160.210 Active Moloch
178.33.160.211 Active Moloch
178.33.160.212 Active Moloch
178.33.160.213 Active Moloch
178.33.160.214 Active Moloch
178.33.160.215 Active Moloch
178.33.160.216 Active Moloch
178.33.160.217 Active Moloch
178.33.160.218 Active Moloch
178.33.160.219 Active Moloch
178.33.160.22 Active Moloch
178.33.160.220 Active Moloch
178.33.160.221 Active Moloch
178.33.160.222 Active Moloch
178.33.160.223 Active Moloch
178.33.160.224 Active Moloch
178.33.160.225 Active Moloch
178.33.160.226 Active Moloch
178.33.160.227 Active Moloch
178.33.160.228 Active Moloch
178.33.160.229 Active Moloch
178.33.160.23 Active Moloch
178.33.160.230 Active Moloch
178.33.160.231 Active Moloch
178.33.160.232 Active Moloch
178.33.160.233 Active Moloch
178.33.160.234 Active Moloch
178.33.160.235 Active Moloch
178.33.160.236 Active Moloch
178.33.160.237 Active Moloch
178.33.160.238 Active Moloch
178.33.160.239 Active Moloch
178.33.160.24 Active Moloch
178.33.160.240 Active Moloch
178.33.160.241 Active Moloch
178.33.160.242 Active Moloch
178.33.160.243 Active Moloch
178.33.160.244 Active Moloch
178.33.160.245 Active Moloch
178.33.160.246 Active Moloch
178.33.160.247 Active Moloch
178.33.160.248 Active Moloch
178.33.160.249 Active Moloch
178.33.160.25 Active Moloch
178.33.160.250 Active Moloch
178.33.160.251 Active Moloch
178.33.160.252 Active Moloch
178.33.160.253 Active Moloch
178.33.160.254 Active Moloch
178.33.160.255 Active Moloch
178.33.160.26 Active Moloch
178.33.160.27 Active Moloch
178.33.160.28 Active Moloch
178.33.160.29 Active Moloch
178.33.160.3 Active Moloch
178.33.160.30 Active Moloch
178.33.160.31 Active Moloch
178.33.160.32 Active Moloch
178.33.160.33 Active Moloch
178.33.160.34 Active Moloch
178.33.160.35 Active Moloch
178.33.160.36 Active Moloch
178.33.160.37 Active Moloch
178.33.160.38 Active Moloch
178.33.160.39 Active Moloch
178.33.160.4 Active Moloch
178.33.160.40 Active Moloch
178.33.160.41 Active Moloch
178.33.160.42 Active Moloch
178.33.160.43 Active Moloch
178.33.160.44 Active Moloch
178.33.160.45 Active Moloch
178.33.160.46 Active Moloch
178.33.160.47 Active Moloch
178.33.160.48 Active Moloch
178.33.160.49 Active Moloch
178.33.160.5 Active Moloch
178.33.160.50 Active Moloch
178.33.160.51 Active Moloch
178.33.160.52 Active Moloch
178.33.160.53 Active Moloch
178.33.160.54 Active Moloch
178.33.160.55 Active Moloch
178.33.160.56 Active Moloch
178.33.160.57 Active Moloch
178.33.160.58 Active Moloch
178.33.160.59 Active Moloch
178.33.160.6 Active Moloch
178.33.160.60 Active Moloch
178.33.160.61 Active Moloch
178.33.160.62 Active Moloch
178.33.160.63 Active Moloch
178.33.160.64 Active Moloch
178.33.160.65 Active Moloch
178.33.160.66 Active Moloch
178.33.160.67 Active Moloch
178.33.160.68 Active Moloch
178.33.160.69 Active Moloch
178.33.160.7 Active Moloch
178.33.160.70 Active Moloch
178.33.160.71 Active Moloch
178.33.160.72 Active Moloch
178.33.160.73 Active Moloch
178.33.160.74 Active Moloch
178.33.160.75 Active Moloch
178.33.160.76 Active Moloch
178.33.160.77 Active Moloch
178.33.160.78 Active Moloch
178.33.160.79 Active Moloch
178.33.160.8 Active Moloch
178.33.160.80 Active Moloch
178.33.160.81 Active Moloch
178.33.160.82 Active Moloch
178.33.160.83 Active Moloch
178.33.160.84 Active Moloch
178.33.160.85 Active Moloch
178.33.160.86 Active Moloch
178.33.160.87 Active Moloch
178.33.160.88 Active Moloch
178.33.160.89 Active Moloch
178.33.160.9 Active Moloch
178.33.160.90 Active Moloch
178.33.160.91 Active Moloch
178.33.160.92 Active Moloch
178.33.160.93 Active Moloch
178.33.160.94 Active Moloch
178.33.160.95 Active Moloch
178.33.160.96 Active Moloch
178.33.160.97 Active Moloch
178.33.160.98 Active Moloch
178.33.160.99 Active Moloch
178.33.161.0 Active Moloch
178.33.161.1 Active Moloch
178.33.161.10 Active Moloch
178.33.161.100 Active Moloch
178.33.161.101 Active Moloch
178.33.161.102 Active Moloch
178.33.161.103 Active Moloch
178.33.161.104 Active Moloch
178.33.161.105 Active Moloch
178.33.161.106 Active Moloch
178.33.161.107 Active Moloch
178.33.161.108 Active Moloch
178.33.161.109 Active Moloch
178.33.161.11 Active Moloch
178.33.161.110 Active Moloch
178.33.161.111 Active Moloch
178.33.161.112 Active Moloch
178.33.161.113 Active Moloch
178.33.161.114 Active Moloch
178.33.161.115 Active Moloch
178.33.161.116 Active Moloch
178.33.161.117 Active Moloch
178.33.161.118 Active Moloch
178.33.161.119 Active Moloch
178.33.161.12 Active Moloch
178.33.161.120 Active Moloch
178.33.161.121 Active Moloch
178.33.161.122 Active Moloch
178.33.161.123 Active Moloch
178.33.161.124 Active Moloch
178.33.161.125 Active Moloch
178.33.161.126 Active Moloch
178.33.161.127 Active Moloch
178.33.161.128 Active Moloch
178.33.161.129 Active Moloch
178.33.161.13 Active Moloch
178.33.161.130 Active Moloch
178.33.161.131 Active Moloch
178.33.161.132 Active Moloch
178.33.161.133 Active Moloch
178.33.161.134 Active Moloch
178.33.161.135 Active Moloch
178.33.161.136 Active Moloch
178.33.161.137 Active Moloch
178.33.161.138 Active Moloch
178.33.161.139 Active Moloch
178.33.161.14 Active Moloch
178.33.161.140 Active Moloch
178.33.161.141 Active Moloch
178.33.161.142 Active Moloch
178.33.161.143 Active Moloch
178.33.161.144 Active Moloch
178.33.161.145 Active Moloch
178.33.161.146 Active Moloch
178.33.161.147 Active Moloch
178.33.161.148 Active Moloch
178.33.161.149 Active Moloch
178.33.161.15 Active Moloch
178.33.161.150 Active Moloch
178.33.161.151 Active Moloch
178.33.161.152 Active Moloch
178.33.161.153 Active Moloch
178.33.161.154 Active Moloch
178.33.161.155 Active Moloch
178.33.161.156 Active Moloch
178.33.161.157 Active Moloch
178.33.161.158 Active Moloch
178.33.161.159 Active Moloch
178.33.161.16 Active Moloch
178.33.161.160 Active Moloch
178.33.161.161 Active Moloch
178.33.161.162 Active Moloch
178.33.161.163 Active Moloch
178.33.161.164 Active Moloch
178.33.161.165 Active Moloch
178.33.161.166 Active Moloch
178.33.161.167 Active Moloch
178.33.161.168 Active Moloch
178.33.161.169 Active Moloch
178.33.161.17 Active Moloch
178.33.161.170 Active Moloch
178.33.161.171 Active Moloch
178.33.161.172 Active Moloch
178.33.161.173 Active Moloch
178.33.161.174 Active Moloch
178.33.161.175 Active Moloch
178.33.161.176 Active Moloch
178.33.161.177 Active Moloch
178.33.161.178 Active Moloch
178.33.161.179 Active Moloch
178.33.161.18 Active Moloch
178.33.161.180 Active Moloch
178.33.161.181 Active Moloch
178.33.161.182 Active Moloch
178.33.161.183 Active Moloch
178.33.161.184 Active Moloch
178.33.161.185 Active Moloch
178.33.161.186 Active Moloch
178.33.161.187 Active Moloch
178.33.161.188 Active Moloch
178.33.161.189 Active Moloch
178.33.161.19 Active Moloch
178.33.161.190 Active Moloch
178.33.161.191 Active Moloch
178.33.161.192 Active Moloch
178.33.161.193 Active Moloch
178.33.161.194 Active Moloch
178.33.161.195 Active Moloch
178.33.161.196 Active Moloch
178.33.161.197 Active Moloch
178.33.161.198 Active Moloch
178.33.161.199 Active Moloch
178.33.161.2 Active Moloch
178.33.161.20 Active Moloch
178.33.161.200 Active Moloch
178.33.161.201 Active Moloch
178.33.161.202 Active Moloch
178.33.161.203 Active Moloch
178.33.161.204 Active Moloch
178.33.161.205 Active Moloch
178.33.161.206 Active Moloch
178.33.161.207 Active Moloch
178.33.161.208 Active Moloch
178.33.161.209 Active Moloch
178.33.161.21 Active Moloch
178.33.161.210 Active Moloch
178.33.161.211 Active Moloch
178.33.161.212 Active Moloch
178.33.161.213 Active Moloch
178.33.161.214 Active Moloch
178.33.161.215 Active Moloch
178.33.161.216 Active Moloch
178.33.161.217 Active Moloch
178.33.161.218 Active Moloch
178.33.161.219 Active Moloch
178.33.161.22 Active Moloch
178.33.161.220 Active Moloch
178.33.161.221 Active Moloch
178.33.161.222 Active Moloch
178.33.161.223 Active Moloch
178.33.161.224 Active Moloch
178.33.161.225 Active Moloch
178.33.161.226 Active Moloch
178.33.161.227 Active Moloch
178.33.161.228 Active Moloch
178.33.161.229 Active Moloch
178.33.161.23 Active Moloch
178.33.161.230 Active Moloch
178.33.161.231 Active Moloch
178.33.161.232 Active Moloch
178.33.161.233 Active Moloch
178.33.161.234 Active Moloch
178.33.161.235 Active Moloch
178.33.161.236 Active Moloch
178.33.161.237 Active Moloch
178.33.161.238 Active Moloch
178.33.161.239 Active Moloch
178.33.161.24 Active Moloch
178.33.161.240 Active Moloch
178.33.161.241 Active Moloch
178.33.161.242 Active Moloch
178.33.161.243 Active Moloch
178.33.161.244 Active Moloch
178.33.161.245 Active Moloch
178.33.161.246 Active Moloch
178.33.161.247 Active Moloch
178.33.161.248 Active Moloch
178.33.161.249 Active Moloch
178.33.161.25 Active Moloch
178.33.161.250 Active Moloch
178.33.161.251 Active Moloch
178.33.161.252 Active Moloch
178.33.161.253 Active Moloch
178.33.161.254 Active Moloch
178.33.161.255 Active Moloch
178.33.161.26 Active Moloch
178.33.161.27 Active Moloch
178.33.161.28 Active Moloch
178.33.161.29 Active Moloch
178.33.161.3 Active Moloch
178.33.161.30 Active Moloch
178.33.161.31 Active Moloch
178.33.161.32 Active Moloch
178.33.161.33 Active Moloch
178.33.161.34 Active Moloch
178.33.161.35 Active Moloch
178.33.161.36 Active Moloch
178.33.161.37 Active Moloch
178.33.161.38 Active Moloch
178.33.161.39 Active Moloch
178.33.161.4 Active Moloch
178.33.161.40 Active Moloch
178.33.161.41 Active Moloch
178.33.161.42 Active Moloch
178.33.161.43 Active Moloch
178.33.161.44 Active Moloch
178.33.161.45 Active Moloch
178.33.161.46 Active Moloch
178.33.161.47 Active Moloch
178.33.161.48 Active Moloch
178.33.161.49 Active Moloch
178.33.161.5 Active Moloch
178.33.161.50 Active Moloch
178.33.161.51 Active Moloch
178.33.161.52 Active Moloch
178.33.161.53 Active Moloch
178.33.161.54 Active Moloch
178.33.161.55 Active Moloch
178.33.161.56 Active Moloch
178.33.161.57 Active Moloch
178.33.161.58 Active Moloch
178.33.161.59 Active Moloch
178.33.161.6 Active Moloch
178.33.161.60 Active Moloch
178.33.161.61 Active Moloch
178.33.161.62 Active Moloch
178.33.161.63 Active Moloch
178.33.161.64 Active Moloch
178.33.161.65 Active Moloch
178.33.161.66 Active Moloch
178.33.161.67 Active Moloch
178.33.161.68 Active Moloch
178.33.161.69 Active Moloch
178.33.161.7 Active Moloch
178.33.161.70 Active Moloch
178.33.161.71 Active Moloch
178.33.161.72 Active Moloch
178.33.161.73 Active Moloch
178.33.161.74 Active Moloch
178.33.161.75 Active Moloch
178.33.161.76 Active Moloch
178.33.161.77 Active Moloch
178.33.161.78 Active Moloch
178.33.161.79 Active Moloch
178.33.161.8 Active Moloch
178.33.161.80 Active Moloch
178.33.161.81 Active Moloch
178.33.161.82 Active Moloch
178.33.161.83 Active Moloch
178.33.161.84 Active Moloch
178.33.161.85 Active Moloch
178.33.161.86 Active Moloch
178.33.161.87 Active Moloch
178.33.161.88 Active Moloch
178.33.161.89 Active Moloch
178.33.161.9 Active Moloch
178.33.161.90 Active Moloch
178.33.161.91 Active Moloch
178.33.161.92 Active Moloch
178.33.161.93 Active Moloch
178.33.161.94 Active Moloch
178.33.161.95 Active Moloch
178.33.161.96 Active Moloch
178.33.161.97 Active Moloch
178.33.161.98 Active Moloch
178.33.161.99 Active Moloch
178.33.162.0 Active Moloch
178.33.162.1 Active Moloch
178.33.162.10 Active Moloch
178.33.162.100 Active Moloch
178.33.162.101 Active Moloch
178.33.162.102 Active Moloch
178.33.162.103 Active Moloch
178.33.162.104 Active Moloch
178.33.162.105 Active Moloch
178.33.162.106 Active Moloch
178.33.162.107 Active Moloch
178.33.162.108 Active Moloch
178.33.162.109 Active Moloch
178.33.162.11 Active Moloch
178.33.162.110 Active Moloch
178.33.162.111 Active Moloch
178.33.162.112 Active Moloch
178.33.162.113 Active Moloch
178.33.162.114 Active Moloch
178.33.162.115 Active Moloch
178.33.162.116 Active Moloch
178.33.162.117 Active Moloch
178.33.162.118 Active Moloch
178.33.162.119 Active Moloch
178.33.162.12 Active Moloch
178.33.162.120 Active Moloch
178.33.162.121 Active Moloch
178.33.162.122 Active Moloch
178.33.162.123 Active Moloch
178.33.162.124 Active Moloch
178.33.162.125 Active Moloch
178.33.162.126 Active Moloch
178.33.162.127 Active Moloch
178.33.162.128 Active Moloch
178.33.162.129 Active Moloch
178.33.162.13 Active Moloch
178.33.162.130 Active Moloch
178.33.162.131 Active Moloch
178.33.162.132 Active Moloch
178.33.162.133 Active Moloch
178.33.162.134 Active Moloch
178.33.162.135 Active Moloch
178.33.162.136 Active Moloch
178.33.162.137 Active Moloch
178.33.162.138 Active Moloch
178.33.162.139 Active Moloch
178.33.162.14 Active Moloch
178.33.162.140 Active Moloch
178.33.162.141 Active Moloch
178.33.162.142 Active Moloch
178.33.162.143 Active Moloch
178.33.162.144 Active Moloch
178.33.162.145 Active Moloch
178.33.162.146 Active Moloch
178.33.162.147 Active Moloch
178.33.162.148 Active Moloch
178.33.162.149 Active Moloch
178.33.162.15 Active Moloch
178.33.162.150 Active Moloch
178.33.162.151 Active Moloch
178.33.162.152 Active Moloch
178.33.162.153 Active Moloch
178.33.162.154 Active Moloch
178.33.162.155 Active Moloch
178.33.162.156 Active Moloch
178.33.162.157 Active Moloch
178.33.162.158 Active Moloch
178.33.162.159 Active Moloch
178.33.162.16 Active Moloch
178.33.162.160 Active Moloch
178.33.162.161 Active Moloch
178.33.162.162 Active Moloch
178.33.162.163 Active Moloch
178.33.162.164 Active Moloch
178.33.162.165 Active Moloch
178.33.162.166 Active Moloch
178.33.162.167 Active Moloch
178.33.162.168 Active Moloch
178.33.162.169 Active Moloch
178.33.162.17 Active Moloch
178.33.162.170 Active Moloch
178.33.162.171 Active Moloch
178.33.162.172 Active Moloch
178.33.162.173 Active Moloch
178.33.162.174 Active Moloch
178.33.162.175 Active Moloch
178.33.162.176 Active Moloch
178.33.162.177 Active Moloch
178.33.162.178 Active Moloch
178.33.162.179 Active Moloch
178.33.162.18 Active Moloch
178.33.162.180 Active Moloch
178.33.162.181 Active Moloch
178.33.162.182 Active Moloch
178.33.162.183 Active Moloch
178.33.162.184 Active Moloch
178.33.162.185 Active Moloch
178.33.162.186 Active Moloch
178.33.162.187 Active Moloch
178.33.162.188 Active Moloch
178.33.162.189 Active Moloch
178.33.162.19 Active Moloch
178.33.162.190 Active Moloch
178.33.162.191 Active Moloch
178.33.162.192 Active Moloch
178.33.162.193 Active Moloch
178.33.162.194 Active Moloch
178.33.162.195 Active Moloch
178.33.162.196 Active Moloch
178.33.162.197 Active Moloch
178.33.162.198 Active Moloch
178.33.162.199 Active Moloch
178.33.162.2 Active Moloch
178.33.162.20 Active Moloch
178.33.162.200 Active Moloch
178.33.162.201 Active Moloch
178.33.162.202 Active Moloch
178.33.162.203 Active Moloch
178.33.162.204 Active Moloch
178.33.162.205 Active Moloch
178.33.162.206 Active Moloch
178.33.162.207 Active Moloch
178.33.162.208 Active Moloch
178.33.162.209 Active Moloch
178.33.162.21 Active Moloch
178.33.162.210 Active Moloch
178.33.162.211 Active Moloch
178.33.162.212 Active Moloch
178.33.162.213 Active Moloch
178.33.162.214 Active Moloch
178.33.162.215 Active Moloch
178.33.162.216 Active Moloch
178.33.162.217 Active Moloch
178.33.162.218 Active Moloch
178.33.162.219 Active Moloch
178.33.162.22 Active Moloch
178.33.162.220 Active Moloch
178.33.162.221 Active Moloch
178.33.162.222 Active Moloch
178.33.162.223 Active Moloch
178.33.162.224 Active Moloch
178.33.162.225 Active Moloch
178.33.162.226 Active Moloch
178.33.162.227 Active Moloch
178.33.162.228 Active Moloch
178.33.162.229 Active Moloch
178.33.162.23 Active Moloch
178.33.162.230 Active Moloch
178.33.162.231 Active Moloch
178.33.162.232 Active Moloch
178.33.162.233 Active Moloch
178.33.162.234 Active Moloch
178.33.162.235 Active Moloch
178.33.162.236 Active Moloch
178.33.162.237 Active Moloch
178.33.162.238 Active Moloch
178.33.162.239 Active Moloch
178.33.162.24 Active Moloch
178.33.162.240 Active Moloch
178.33.162.241 Active Moloch
178.33.162.242 Active Moloch
178.33.162.243 Active Moloch
178.33.162.244 Active Moloch
178.33.162.245 Active Moloch
178.33.162.246 Active Moloch
178.33.162.247 Active Moloch
178.33.162.248 Active Moloch
178.33.162.249 Active Moloch
178.33.162.25 Active Moloch
178.33.162.250 Active Moloch
178.33.162.251 Active Moloch
178.33.162.252 Active Moloch
178.33.162.253 Active Moloch
178.33.162.254 Active Moloch
178.33.162.255 Active Moloch
178.33.162.26 Active Moloch
178.33.162.27 Active Moloch
178.33.162.28 Active Moloch
178.33.162.29 Active Moloch
178.33.162.3 Active Moloch
178.33.162.30 Active Moloch
178.33.162.31 Active Moloch
178.33.162.32 Active Moloch
178.33.162.33 Active Moloch
178.33.162.34 Active Moloch
178.33.162.35 Active Moloch
178.33.162.36 Active Moloch
178.33.162.37 Active Moloch
178.33.162.38 Active Moloch
178.33.162.39 Active Moloch
178.33.162.4 Active Moloch
178.33.162.40 Active Moloch
178.33.162.41 Active Moloch
178.33.162.42 Active Moloch
178.33.162.43 Active Moloch
178.33.162.44 Active Moloch
178.33.162.45 Active Moloch
178.33.162.46 Active Moloch
178.33.162.47 Active Moloch
178.33.162.48 Active Moloch
178.33.162.49 Active Moloch
178.33.162.5 Active Moloch
178.33.162.50 Active Moloch
178.33.162.51 Active Moloch
178.33.162.52 Active Moloch
178.33.162.53 Active Moloch
178.33.162.54 Active Moloch
178.33.162.55 Active Moloch
178.33.162.56 Active Moloch
178.33.162.57 Active Moloch
178.33.162.58 Active Moloch
178.33.162.59 Active Moloch
178.33.162.6 Active Moloch
178.33.162.60 Active Moloch
178.33.162.61 Active Moloch
178.33.162.62 Active Moloch
178.33.162.63 Active Moloch
178.33.162.64 Active Moloch
178.33.162.65 Active Moloch
178.33.162.66 Active Moloch
178.33.162.67 Active Moloch
178.33.162.68 Active Moloch
178.33.162.69 Active Moloch
178.33.162.7 Active Moloch
178.33.162.70 Active Moloch
178.33.162.71 Active Moloch
178.33.162.72 Active Moloch
178.33.162.73 Active Moloch
178.33.162.74 Active Moloch
178.33.162.75 Active Moloch
178.33.162.76 Active Moloch
178.33.162.77 Active Moloch
178.33.162.78 Active Moloch
178.33.162.79 Active Moloch
178.33.162.8 Active Moloch
178.33.162.80 Active Moloch
178.33.162.81 Active Moloch
178.33.162.82 Active Moloch
178.33.162.83 Active Moloch
178.33.162.84 Active Moloch
178.33.162.85 Active Moloch
178.33.162.86 Active Moloch
178.33.162.87 Active Moloch
178.33.162.88 Active Moloch
178.33.162.89 Active Moloch
178.33.162.9 Active Moloch
178.33.162.90 Active Moloch
178.33.162.91 Active Moloch
178.33.162.92 Active Moloch
178.33.162.93 Active Moloch
178.33.162.94 Active Moloch
178.33.162.95 Active Moloch
178.33.162.96 Active Moloch
178.33.162.97 Active Moloch
178.33.162.98 Active Moloch
178.33.162.99 Active Moloch
178.33.163.0 Active Moloch
178.33.163.1 Active Moloch
178.33.163.10 Active Moloch
178.33.163.100 Active Moloch
178.33.163.101 Active Moloch
178.33.163.102 Active Moloch
178.33.163.103 Active Moloch
178.33.163.104 Active Moloch
178.33.163.105 Active Moloch
178.33.163.106 Active Moloch
178.33.163.107 Active Moloch
178.33.163.108 Active Moloch
178.33.163.109 Active Moloch
178.33.163.11 Active Moloch
178.33.163.110 Active Moloch
178.33.163.111 Active Moloch
178.33.163.112 Active Moloch
178.33.163.113 Active Moloch
178.33.163.114 Active Moloch
178.33.163.115 Active Moloch
178.33.163.116 Active Moloch
178.33.163.117 Active Moloch
178.33.163.118 Active Moloch
178.33.163.119 Active Moloch
178.33.163.12 Active Moloch
178.33.163.120 Active Moloch
178.33.163.121 Active Moloch
178.33.163.122 Active Moloch
178.33.163.123 Active Moloch
178.33.163.124 Active Moloch
178.33.163.125 Active Moloch
178.33.163.126 Active Moloch
178.33.163.127 Active Moloch
178.33.163.128 Active Moloch
178.33.163.129 Active Moloch
178.33.163.13 Active Moloch
178.33.163.130 Active Moloch
178.33.163.131 Active Moloch
178.33.163.132 Active Moloch
178.33.163.133 Active Moloch
178.33.163.134 Active Moloch
178.33.163.135 Active Moloch
178.33.163.136 Active Moloch
178.33.163.137 Active Moloch
178.33.163.138 Active Moloch
178.33.163.139 Active Moloch
178.33.163.14 Active Moloch
178.33.163.140 Active Moloch
178.33.163.141 Active Moloch
178.33.163.142 Active Moloch
178.33.163.143 Active Moloch
178.33.163.144 Active Moloch
178.33.163.145 Active Moloch
178.33.163.146 Active Moloch
178.33.163.147 Active Moloch
178.33.163.148 Active Moloch
178.33.163.149 Active Moloch
178.33.163.15 Active Moloch
178.33.163.150 Active Moloch
178.33.163.151 Active Moloch
178.33.163.152 Active Moloch
178.33.163.153 Active Moloch
178.33.163.154 Active Moloch
178.33.163.155 Active Moloch
178.33.163.156 Active Moloch
178.33.163.157 Active Moloch
178.33.163.158 Active Moloch
178.33.163.159 Active Moloch
178.33.163.16 Active Moloch
178.33.163.160 Active Moloch
178.33.163.161 Active Moloch
178.33.163.162 Active Moloch
178.33.163.163 Active Moloch
178.33.163.164 Active Moloch
178.33.163.165 Active Moloch
178.33.163.166 Active Moloch
178.33.163.167 Active Moloch
178.33.163.168 Active Moloch
178.33.163.169 Active Moloch
178.33.163.17 Active Moloch
178.33.163.170 Active Moloch
178.33.163.171 Active Moloch
178.33.163.172 Active Moloch
178.33.163.173 Active Moloch
178.33.163.174 Active Moloch
178.33.163.175 Active Moloch
178.33.163.176 Active Moloch
178.33.163.177 Active Moloch
178.33.163.178 Active Moloch
178.33.163.179 Active Moloch
178.33.163.18 Active Moloch
178.33.163.180 Active Moloch
178.33.163.181 Active Moloch
178.33.163.182 Active Moloch
178.33.163.183 Active Moloch
178.33.163.184 Active Moloch
178.33.163.185 Active Moloch
178.33.163.186 Active Moloch
178.33.163.187 Active Moloch
178.33.163.188 Active Moloch
178.33.163.189 Active Moloch
178.33.163.19 Active Moloch
178.33.163.190 Active Moloch
178.33.163.191 Active Moloch
178.33.163.192 Active Moloch
178.33.163.193 Active Moloch
178.33.163.194 Active Moloch
178.33.163.195 Active Moloch
178.33.163.196 Active Moloch
178.33.163.197 Active Moloch
178.33.163.198 Active Moloch
178.33.163.199 Active Moloch
178.33.163.2 Active Moloch
178.33.163.20 Active Moloch
178.33.163.200 Active Moloch
178.33.163.201 Active Moloch
178.33.163.202 Active Moloch
178.33.163.203 Active Moloch
178.33.163.204 Active Moloch
178.33.163.205 Active Moloch
178.33.163.206 Active Moloch
178.33.163.207 Active Moloch
178.33.163.208 Active Moloch
178.33.163.209 Active Moloch
178.33.163.21 Active Moloch
178.33.163.210 Active Moloch
178.33.163.211 Active Moloch
178.33.163.212 Active Moloch
178.33.163.213 Active Moloch
178.33.163.214 Active Moloch
178.33.163.215 Active Moloch
178.33.163.216 Active Moloch
178.33.163.217 Active Moloch
178.33.163.218 Active Moloch
178.33.163.219 Active Moloch
178.33.163.22 Active Moloch
178.33.163.220 Active Moloch
178.33.163.221 Active Moloch
178.33.163.222 Active Moloch
178.33.163.223 Active Moloch
178.33.163.224 Active Moloch
178.33.163.225 Active Moloch
178.33.163.226 Active Moloch
178.33.163.227 Active Moloch
178.33.163.228 Active Moloch
178.33.163.229 Active Moloch
178.33.163.23 Active Moloch
178.33.163.230 Active Moloch
178.33.163.231 Active Moloch
178.33.163.232 Active Moloch
178.33.163.233 Active Moloch
178.33.163.234 Active Moloch
178.33.163.235 Active Moloch
178.33.163.236 Active Moloch
178.33.163.237 Active Moloch
178.33.163.238 Active Moloch
178.33.163.239 Active Moloch
178.33.163.24 Active Moloch
178.33.163.240 Active Moloch
178.33.163.241 Active Moloch
178.33.163.242 Active Moloch
178.33.163.243 Active Moloch
178.33.163.244 Active Moloch
178.33.163.245 Active Moloch
178.33.163.246 Active Moloch
178.33.163.247 Active Moloch
178.33.163.248 Active Moloch
178.33.163.249 Active Moloch
178.33.163.25 Active Moloch
178.33.163.250 Active Moloch
178.33.163.251 Active Moloch
178.33.163.252 Active Moloch
178.33.163.253 Active Moloch
178.33.163.254 Active Moloch
178.33.163.255 Active Moloch
178.33.163.26 Active Moloch
178.33.163.27 Active Moloch
178.33.163.28 Active Moloch
178.33.163.29 Active Moloch
178.33.163.3 Active Moloch
178.33.163.30 Active Moloch
178.33.163.31 Active Moloch
178.33.163.32 Active Moloch
178.33.163.33 Active Moloch
178.33.163.34 Active Moloch
178.33.163.35 Active Moloch
178.33.163.36 Active Moloch
178.33.163.37 Active Moloch
178.33.163.38 Active Moloch
178.33.163.39 Active Moloch
178.33.163.4 Active Moloch
178.33.163.40 Active Moloch
178.33.163.41 Active Moloch
178.33.163.42 Active Moloch
178.33.163.43 Active Moloch
178.33.163.44 Active Moloch
178.33.163.45 Active Moloch
178.33.163.46 Active Moloch
178.33.163.47 Active Moloch
178.33.163.48 Active Moloch
178.33.163.49 Active Moloch
178.33.163.5 Active Moloch
178.33.163.50 Active Moloch
178.33.163.51 Active Moloch
178.33.163.52 Active Moloch
178.33.163.53 Active Moloch
178.33.163.54 Active Moloch
178.33.163.55 Active Moloch
178.33.163.56 Active Moloch
178.33.163.57 Active Moloch
178.33.163.58 Active Moloch
178.33.163.59 Active Moloch
178.33.163.6 Active Moloch
178.33.163.60 Active Moloch
178.33.163.61 Active Moloch
178.33.163.62 Active Moloch
178.33.163.63 Active Moloch
178.33.163.64 Active Moloch
178.33.163.65 Active Moloch
178.33.163.66 Active Moloch
178.33.163.67 Active Moloch
178.33.163.68 Active Moloch
178.33.163.69 Active Moloch
178.33.163.7 Active Moloch
178.33.163.70 Active Moloch
178.33.163.71 Active Moloch
178.33.163.72 Active Moloch
178.33.163.73 Active Moloch
178.33.163.74 Active Moloch
178.33.163.75 Active Moloch
178.33.163.76 Active Moloch
178.33.163.77 Active Moloch
178.33.163.78 Active Moloch
178.33.163.79 Active Moloch
178.33.163.8 Active Moloch
178.33.163.80 Active Moloch
178.33.163.81 Active Moloch
178.33.163.82 Active Moloch
178.33.163.83 Active Moloch
178.33.163.84 Active Moloch
178.33.163.85 Active Moloch
178.33.163.86 Active Moloch
178.33.163.87 Active Moloch
178.33.163.88 Active Moloch
178.33.163.89 Active Moloch
178.33.163.9 Active Moloch
178.33.163.90 Active Moloch
178.33.163.91 Active Moloch
178.33.163.92 Active Moloch
178.33.163.93 Active Moloch
178.33.163.94 Active Moloch
178.33.163.95 Active Moloch
178.33.163.96 Active Moloch
178.33.163.97 Active Moloch
178.33.163.98 Active Moloch
178.33.163.99 Active Moloch

Suricata Alerts

Flow SID Signature Category
UDP 192.168.56.101:49152 -> 178.33.158.12:6893 2023613 ET MALWARE Ransomware/Cerber Checkin M3 (2) Malware Command and Control Activity Detected

Suricata TLS

No Suricata TLS

Time & API Arguments Status Return Repeated

GetComputerNameA

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0

GetComputerNameW

computer_name: TEST22-PC
1 1 0
Time & API Arguments Status Return Repeated

WriteConsoleA

buffer: Ok.
console_handle: 0x00000007
1 1 0

WriteConsoleA

buffer: Ok.
console_handle: 0x00000007
1 1 0
registry HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\MachineGuid
Time & API Arguments Status Return Repeated

GlobalMemoryStatusEx

1 1 0
resource name MAD
ip 178.33.158.0
ip 178.33.158.1
ip 178.33.158.10
ip 178.33.158.11
ip 178.33.158.12
ip 178.33.158.13
ip 178.33.158.14
ip 178.33.158.15
ip 178.33.158.16
ip 178.33.158.17
ip 178.33.158.18
ip 178.33.158.19
ip 178.33.158.2
ip 178.33.158.20
ip 178.33.158.21
ip 178.33.158.22
ip 178.33.158.23
ip 178.33.158.24
ip 178.33.158.25
ip 178.33.158.26
ip 178.33.158.27
ip 178.33.158.28
ip 178.33.158.29
ip 178.33.158.3
ip 178.33.158.30
ip 178.33.158.31
ip 178.33.158.4
ip 178.33.158.5
ip 178.33.158.6
ip 178.33.158.7
ip 178.33.158.8
ip 178.33.158.9
ip 178.33.159.0
ip 178.33.159.1
ip 178.33.159.10
ip 178.33.159.11
ip 178.33.159.12
ip 178.33.159.13
ip 178.33.159.14
ip 178.33.159.15
ip 178.33.159.16
ip 178.33.159.17
ip 178.33.159.18
ip 178.33.159.19
ip 178.33.159.2
ip 178.33.159.20
ip 178.33.159.21
ip 178.33.159.22
ip 178.33.159.23
ip 178.33.159.24
Time & API Arguments Status Return Repeated

NtAllocateVirtualMemory

process_identifier: 2540
region_size: 200704
stack_dep_bypass: 0
stack_pivoted: 0
heap_dep_bypass: 0
protection: 64 (PAGE_EXECUTE_READWRITE)
base_address: 0x00230000
allocation_type: 12288 (MEM_COMMIT|MEM_RESERVE)
process_handle: 0xffffffff
1 0 0

NtAllocateVirtualMemory

process_identifier: 2540
region_size: 4096
stack_dep_bypass: 0
stack_pivoted: 0
heap_dep_bypass: 0
protection: 64 (PAGE_EXECUTE_READWRITE)
base_address: 0x002f0000
allocation_type: 12288 (MEM_COMMIT|MEM_RESERVE)
process_handle: 0xffffffff
1 0 0

NtAllocateVirtualMemory

process_identifier: 2540
region_size: 196608
stack_dep_bypass: 0
stack_pivoted: 0
heap_dep_bypass: 0
protection: 64 (PAGE_EXECUTE_READWRITE)
base_address: 0x00300000
allocation_type: 12288 (MEM_COMMIT|MEM_RESERVE)
process_handle: 0xffffffff
1 0 0

NtAllocateVirtualMemory

process_identifier: 2540
region_size: 217088
stack_dep_bypass: 0
stack_pivoted: 0
heap_dep_bypass: 0
protection: 64 (PAGE_EXECUTE_READWRITE)
base_address: 0x00330000
allocation_type: 12288 (MEM_COMMIT|MEM_RESERVE)
process_handle: 0xffffffff
1 0 0

NtAllocateVirtualMemory

process_identifier: 2540
region_size: 217088
stack_dep_bypass: 0
stack_pivoted: 0
heap_dep_bypass: 1
protection: 64 (PAGE_EXECUTE_READWRITE)
base_address: 0x00400000
allocation_type: 12288 (MEM_COMMIT|MEM_RESERVE)
process_handle: 0xffffffff
1 0 0

NtProtectVirtualMemory

process_identifier: 2540
stack_dep_bypass: 0
stack_pivoted: 0
heap_dep_bypass: 0
length: 4096
protection: 64 (PAGE_EXECUTE_READWRITE)
base_address: 0x733e2000
process_handle: 0xffffffff
1 0 0
Time & API Arguments Status Return Repeated

GetDiskFreeSpaceExW

total_number_of_free_bytes: 13323964416
free_bytes_available: 0
root_path: C:
total_number_of_bytes: 34252779520
1 1 0
name RT_ICON language LANG_CHINESE filetype GLS_BINARY_LSB_FIRST sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0007b320 size 0x00000568
name RT_ICON language LANG_CHINESE filetype GLS_BINARY_LSB_FIRST sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0007b320 size 0x00000568
name RT_ICON language LANG_CHINESE filetype GLS_BINARY_LSB_FIRST sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0007b320 size 0x00000568
name RT_GROUP_ICON language LANG_CHINESE filetype data sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0007b888 size 0x00000030
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\open1.png.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\agent.pyw.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\click.txt.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\office_2007.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\open.PNG.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\click.py.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\util.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\Settings.ini.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\테스트.txt.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\sn.txt.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\한글2010(정품).lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\Office.2010.Toolkit.and.EZ-Activator.v2.1.5.Final.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\agent.py.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\1234.zip.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\readme.txt.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\시리얼넘버.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\age.pyw.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\click.pyw.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\한글2010(정품) (2).lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\시작프로그램.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\다운로드.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\Python27.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\exit.png.lnk
file C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\click.lnk
wmi <INVALID POINTER>
Time & API Arguments Status Return Repeated

CreateProcessInternalW

thread_identifier: 2640
thread_handle: 0x00000100
process_identifier: 2636
current_directory:
filepath:
track: 1
command_line: C:\Windows\system32\netsh.exe advfirewall set allprofiles state on
filepath_r:
stack_pivoted: 0
creation_flags: 134217728 (CREATE_NO_WINDOW)
inherit_handles: 0
process_handle: 0x00000104
1 1 0

CreateProcessInternalW

thread_identifier: 2728
thread_handle: 0x00000100
process_identifier: 2724
current_directory:
filepath:
track: 1
command_line: C:\Windows\system32\netsh.exe advfirewall reset
filepath_r:
stack_pivoted: 0
creation_flags: 134217728 (CREATE_NO_WINDOW)
inherit_handles: 0
process_handle: 0x00000104
1 1 0
cmdline C:\Windows\system32\netsh.exe advfirewall set allprofiles state on
cmdline C:\Windows\system32\netsh.exe advfirewall reset
host 178.33.158.0
host 178.33.158.1
host 178.33.158.10
host 178.33.158.11
host 178.33.158.12
host 178.33.158.13
host 178.33.158.14
host 178.33.158.15
host 178.33.158.16
host 178.33.158.17
host 178.33.158.18
host 178.33.158.19
host 178.33.158.2
host 178.33.158.20
host 178.33.158.21
host 178.33.158.22
host 178.33.158.23
host 178.33.158.24
host 178.33.158.25
host 178.33.158.26
host 178.33.158.27
host 178.33.158.28
host 178.33.158.29
host 178.33.158.3
host 178.33.158.30
host 178.33.158.31
host 178.33.158.4
host 178.33.158.5
host 178.33.158.6
host 178.33.158.7
host 178.33.158.8
host 178.33.158.9
host 178.33.159.0
host 178.33.159.1
host 178.33.159.10
host 178.33.159.11
host 178.33.159.12
host 178.33.159.13
host 178.33.159.14
host 178.33.159.15
host 178.33.159.16
host 178.33.159.17
host 178.33.159.18
host 178.33.159.19
host 178.33.159.2
host 178.33.159.20
host 178.33.159.21
host 178.33.159.22
host 178.33.159.23
host 178.33.159.24
cmdline C:\Windows\system32\netsh.exe advfirewall set allprofiles state on
cmdline C:\Windows\system32\netsh.exe advfirewall reset
Lionic Trojan.Win32.Generic.4!c
Elastic malicious (high confidence)
DrWeb Trojan.Siggen7.22225
MicroWorld-eScan Gen:Variant.Ransom.359
FireEye Generic.mg.8b3d0bc69064a015
CAT-QuickHeal Ransom.Cerber.A4
McAfee Ransomware-CBER!8B3D0BC69064
Cylance Unsafe
Zillya Trojan.Zerber.Win32.2459
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 005224381 )
Alibaba Ransom:Win32/generic.ali2000010
K7GW Trojan ( 0050e5e41 )
Cybereason malicious.69064a
BitDefenderTheta Gen:NN.ZexaF.34114.Eq0@aymjM4dP
VirIT Trojan.Win32.Genus.CBE
Cyren W32/S-502d1467!Eldorado
Symantec Ransom.Cerber
ESET-NOD32 Win32/Filecoder.Cerber.G
TrendMicro-HouseCall Ransom_HPCERBER.SMALY5A
Paloalto generic.ml
ClamAV Win.Ransomware.Cerber-9828953-0
Kaspersky HEUR:Trojan.Win32.Generic
BitDefender Gen:Variant.Ransom.359
NANO-Antivirus Trojan.Win32.Zerber.epfvib
Tencent Malware.Win32.Gencirc.10b20a6a
Ad-Aware Gen:Variant.Ransom.359
Sophos Mal/Generic-R + Mal/Cerber-B
Comodo TrojWare.Win32.Ransom.Cerber.EW@73u1y1
VIPRE Trojan.Win32.Generic!BT
TrendMicro Ransom_HPCERBER.SMALY5A
McAfee-GW-Edition BehavesLike.Win32.Ransomware.gm
SentinelOne Static AI - Malicious PE
Emsisoft Gen:Variant.Ransom.359 (B)
Ikarus Trojan.Krypt
Jiangmin Trojan.Zerber.cdw
eGambit Unsafe.AI_Score_100%
Avira HEUR/AGEN.1111273
Antiy-AVL Trojan/Generic.ASMalwS.204E04B
Microsoft Ransom:Win32/Cerber.K
ViRobot Trojan.Win32.Cerber.504320
GData Gen:Variant.Ransom.359
Cynet Malicious (score: 100)
AhnLab-V3 Win-Trojan/Cerber.Exp
Acronis suspicious
VBA32 BScope.Trojan.Encoder
ALYac Gen:Variant.Ransom.359
TACHYON Ransom/W32.Cerber.504320
Malwarebytes Malware.AI.3892641679
APEX Malicious