Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | June 20, 2024, 4:42 p.m. | June 20, 2024, 4:45 p.m. |
-
DamnedSetup.exe "C:\Users\test22\AppData\Local\Temp\DamnedSetup.exe"
2652 -
explorer.exe C:\Windows\Explorer.EXE
1452
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
IP Address | Status | Action |
---|---|---|
164.124.101.2 | Active | Moloch |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
section | .ndata |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\vulkan-1.dll |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\vk_swiftshader.dll |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\StdUtils.dll |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\libGLESv2.dll |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\d3dcompiler_47.dll |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\resources\elevate.exe |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\System.dll |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\ffmpeg.dll |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\Damned-x64.exe |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\nsis7z.dll |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\libEGL.dll |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\StdUtils.dll |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\nsis7z.dll |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\resources\elevate.exe |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\System.dll |
Bkav | W32.AIDetectMalware |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\Damned-x64.exe |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\sk.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\it.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\en-GB.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\nb.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\resources.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\da.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\am.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\hu.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\en-US.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\ru.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\id.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\chrome_100_percent.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\pt-PT.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\cs.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\bg.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\bn.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\he.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\fa.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\th.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\ar.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\ko.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\es-419.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\nl.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\vi.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\zh-TW.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\el.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\resources\app.asar |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\ta.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\pl.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\te.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\af.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\mr.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\zh-CN.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\ur.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\sw.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\hr.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\tr.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\hi.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\es.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\sl.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\pt-BR.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\fil.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\uk.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\ca.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\ml.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\sr.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\lv.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\kn.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\de.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\ja.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\es-419.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\fa.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\v8_context_snapshot.bin |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\lv.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\locales\en-US.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\af.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\locales\it.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\Damned-x64.exe |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\sl.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\ru.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\am.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\ml.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\he.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\locales\sr.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\locales\zh-CN.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\snapshot_blob.bin |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\ffmpeg.dll |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\d3dcompiler_47.dll |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\System.dll |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\it.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\sw.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\ro.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\locales\ml.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\locales\zh-TW.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\resources\elevate.exe |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\locales\cs.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\hr.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\zh-TW.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\locales\es.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\locales\sv.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\LICENSE.electron.txt |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\locales\te.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\locales\pt-BR.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\cs.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\locales\lt.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\locales\fa.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\chrome_100_percent.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\locales\el.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\mr.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\libGLESv2.dll |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\fi.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\vk_swiftshader_icd.json |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\te.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB96.tmp |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\pt-PT.pak |
file | C:\Users\test22\AppData\Local\Temp\nswFB97.tmp\7z-out\locales\pt-PT.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\sr.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\resources.pak |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\vulkan-1.dll |
file | C:\Users\test22\AppData\Local\Temp\2ekW28DriA2QSQ423cuVpx1UOPH\locales\de.pak |