Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | March 25, 2024, 3:45 p.m. | March 25, 2024, 3:50 p.m. |
-
Hwp.exe "C:\Program Files (x86)\Hnc\Hwp80\Hwp.exe" C:\Users\test22\AppData\Local\Temp\03e297f4a0ac3f262ca8ae50f9e14db8bb33e6840f1f30acd576826c0800b24e
2556-
HimTrayIcon.exe "C:\Program Files (x86)\Hnc\Common80\HimTrayIcon.exe"
2676
-
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
IP Address | Status | Action |
---|---|---|
164.124.101.2 | Active | Moloch |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
file | C:\Users\test22\AppData\Local\Temp\HncApp.exe |
file | C:\Users\test22\AppData\Roaming\HNC\Office\Recent\Temp.folder.lnk |
file | C:\Users\test22\AppData\Roaming\HNC\Office\Recent\03e297f4a0ac3f262ca8ae50f9e14db8bb33e6840f1f30acd576826c0800b24e.lnk |
file | C:\Users\test22\AppData\Roaming\HNC\Office\Recent\Temp.folder.lnk |
file | C:\Users\test22\AppData\Roaming\HNC\Office\Recent\03e297f4a0ac3f262ca8ae50f9e14db8bb33e6840f1f30acd576826c0800b24e.lnk |
file | C:\Users\test22\AppData\Local\Temp\HncApp.exe |
Lionic | Trojan.Win32.KeyLogger.l!c |
ALYac | Trojan.HWP.179200A |
Arcabit | Trojan.Generic.D2EBDDDC |
Avast | Other:Malware-gen [Trj] |
Cynet | Malicious (score: 99) |
Kaspersky | HEUR:Trojan-Spy.Win32.KeyLogger.gen |
BitDefender | Trojan.GenericKD.49012188 |
MicroWorld-eScan | Trojan.GenericKD.49012188 |
Ad-Aware | Trojan.GenericKD.49012188 |
Emsisoft | Trojan.GenericKD.49012188 (B) |
FireEye | Trojan.GenericKD.49012188 |
Avira | TR/Spy.KeyLogger.jplgn |
MAX | malware (ai score=80) |
GData | Trojan.GenericKD.49012188 |
AhnLab-V3 | Trojan/Win.Generic.C5126904 |
TACHYON | Suspicious/HWP.OLE.NS.Gen |
AVG | Other:Malware-gen [Trj] |