Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | Dec. 14, 2023, 6:52 p.m. | Dec. 14, 2023, 7:09 p.m. |
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\Symbloa.dll,MyExportedFunction
2564-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\Symbloa.dll,MyExportedFunction
2708
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\Symbloa.dll,
2648
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
IP Address | Status | Action |
---|---|---|
No hosts contacted. |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
Bkav | W64.AIDetectMalware |
Cynet | Malicious (score: 100) |
Cylance | unsafe |
Sangfor | Trojan.Win64.Kryptik.Vymj |
CrowdStrike | win/malicious_confidence_100% (W) |
Symantec | ML.Attribute.HighConfidence |
Elastic | malicious (high confidence) |
ESET-NOD32 | a variant of Win64/Kryptik.DWA |
Avast | FileRepMalware [Misc] |
Kaspersky | UDS:DangerousObject.Multi.Generic |
Alibaba | Trojan:Win64/Meterpreter.8943af7e |
Rising | Trojan.Kryptik!8.8 (TFE:5:nYiZ0bvPHVT) |
Sophos | Mal/Generic-S |
Antiy-AVL | Trojan/Win64.Kryptik.dwa |
Kingsoft | Win32.Troj.Unknown.a |
Microsoft | Trojan:Win64/Meterpreter.CCAH!MTB |
ZoneAlarm | UDS:DangerousObject.Multi.Generic |
AhnLab-V3 | Trojan/Win.Generic.C5542114 |
DeepInstinct | MALICIOUS |
Malwarebytes | Trojan.Crypt.Generic |
AVG | FileRepMalware [Misc] |