Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | Oct. 20, 2023, 6:14 p.m. | Oct. 20, 2023, 6:17 p.m. |
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorAnnotateGetOutputMetadataScoreAtIndex
2628-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorAnnotateGetOutputMetadataScoreAtIndex
3004
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorAnnotateGetOutputMetadataAtIndex
2544-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorAnnotateGetOutputMetadataAtIndex
3012
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorAnnotateJobCreate
2720-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorAnnotateJobCreate
1152
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorAnnotateJobDelete
2808-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorAnnotateJobDelete
1400
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorCreateFromOptions
2904-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorCreateFromOptions
2436
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorEntityMetadataJobCreate
196-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorEntityMetadataJobCreate
2564
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorDelete
2996-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorDelete
2800
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorEntityMetadataJobDelete
2416-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorEntityMetadataJobDelete
2748
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorGetCreationError
2704-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorGetCreationError
3040
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorGetMaxSupportedFeatureFlag
744-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorGetMaxSupportedFeatureFlag
2308
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorOptionsAddModelSlice
2460-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorOptionsAddModelSlice
2828
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorOptionsCreate
3008-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorOptionsCreate
320
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorOptionsDelete
2112-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorOptionsDelete
908
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorOptionsSetModelFilePath
2648-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorOptionsSetModelFilePath
1484
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorOptionsSetModelMetadataFilePath
3036-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorOptionsSetModelMetadataFilePath
2260
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorOptionsSetWordEmbeddingsFilePath
2864-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorOptionsSetWordEmbeddingsFilePath
3080
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorRunAnnotateJob
2216-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorRunAnnotateJob
3336
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorRunEntityMetadataJob
3448-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorRunEntityMetadataJob
3700
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetCollectionAtIndex
3692-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetCollectionAtIndex
3924
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetCollectionsCount
3844-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetCollectionsCount
4000
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetEntityID
3988-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetEntityID
3360
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetHumanReadableAliasAtIndex
3152-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetHumanReadableAliasAtIndex
3408
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetHumanReadableAliasesCount
3560-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetHumanReadableAliasesCount
3872
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetHumanReadableCategoriesCount
3860-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetHumanReadableCategoriesCount
2924
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetHumanReadableCategoryNameAtIndex
3116-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetHumanReadableCategoryNameAtIndex
3956
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetHumanReadableCategoryScoreAtIndex
3520-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetHumanReadableCategoryScoreAtIndex
3356
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetHumanReadableName
3980-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityMetadataGetHumanReadableName
3676
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,
3436
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
IP Address | Status | Action |
---|---|---|
No hosts contacted. |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
pdb_path | C:\b\s\w\ir\cache\builder\src\out\Release_x64\optimization_guide_internal.dll.pdb |
section | .00cfg |
section | .gxfg |
section | .retplne |
section | _RDATA |
section | malloc_h |
Skyhigh | Artemis!Trojan |
Gridinsoft | Trojan.Heur!.00002032 |
McAfee | Artemis!971DD6C48909 |
cmdline | "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\salut.json.exe.dll,OptimizationGuideEntityAnnotatorOptionsDelete |