Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | Dec. 21, 2023, 7:56 a.m. | Dec. 21, 2023, 7:59 a.m. |
-
WINWORD.EXE "C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE" C:\Users\test22\AppData\Local\Temp\Microsoftdigitalwallettechnologydevelopedrecentlyforsecuritypurposetoprotectcustomer.Doc
2544
Name | Response | Post-Analysis Lookup |
---|---|---|
www.synergyinnovationgroup.com | 65.60.36.22 |
Suricata Alerts
Suricata TLS
No Suricata TLS
suspicious_features | Connection to IP address | suspicious_request | GET http://172.245.208.4/2546/wlanext.exe |
request | GET http://172.245.208.4/2546/wlanext.exe |
file | C:\Users\test22\AppData\Local\Temp\~$crosoftdigitalwallettechnologydevelopedrecentlyforsecuritypurposetoprotectcustomer.Doc |
host | 172.245.208.4 |