Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6403_us | July 3, 2024, 6:38 p.m. | July 3, 2024, 6:40 p.m. |
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\toi.txt.exe.dll,Start
2140-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\toi.txt.exe.dll,Start
2292
-
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\toi.txt.exe.dll,
2228 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\toi.txt.exe.dll,DllMain
1944-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\toi.txt.exe.dll,DllMain
2340
-
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
IP Address | Status | Action |
---|---|---|
No hosts contacted. |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
Bkav | W64.AIDetectMalware |
Lionic | Trojan.Win32.Havoc.m!c |
Elastic | Windows.Generic.Threat |
Cynet | Malicious (score: 100) |
Skyhigh | Agent-FYC!5DE123AFED96 |
ALYac | Generic.Trojan.Havokiz.Marte.D.5736639D |
VIPRE | Generic.Trojan.Havokiz.Marte.D.5736639D |
Sangfor | Backdoor.Win64.Havoc.Veyx |
BitDefender | Generic.Trojan.Havokiz.Marte.D.5736639D |
Arcabit | Generic.Trojan.Havokiz.Marte.D.D5788BFD |
Symantec | ML.Attribute.HighConfidence |
ESET-NOD32 | a variant of Win64/Havoc.M |
APEX | Malicious |
McAfee | Agent-FYC!5DE123AFED96 |
Avast | Win64:Evo-gen [Trj] |
ClamAV | Win.Trojan.Havoc-10019366-0 |
Kaspersky | HEUR:Backdoor.Win64.Havoc.pef |
Alibaba | Backdoor:Win64/Havoc.ea852c1f |
MicroWorld-eScan | Generic.Trojan.Havokiz.Marte.D.5736639D |
Rising | Backdoor.Havoc!8.970A (TFE:4:ASezLeWmqZ) |
Emsisoft | Generic.Trojan.Havokiz.Marte.D.5736639D (B) |
Zillya | Trojan.Havoc.Win64.157 |
McAfeeD | ti!0A6564B0A531 |
FireEye | Generic.Trojan.Havokiz.Marte.D.5736639D |
Sophos | ATK/Havoc-G |
Ikarus | Trojan.Win64.Havoc |
Webroot | W32.Malware.Gen |
Detected | |
MAX | malware (ai score=85) |
Antiy-AVL | Trojan/Win64.Havoc |
Gridinsoft | Ransom.Win64.Wacatac.sa |
Microsoft | Trojan:Win32/Wacatac.B!ml |
ZoneAlarm | HEUR:Backdoor.Win64.Havoc.pef |
GData | Generic.Trojan.Havokiz.Marte.D.5736639D |
Varist | W64/ABTrojan.XOXP-5353 |
DeepInstinct | MALICIOUS |
Malwarebytes | Trojan.Havoc |
Panda | Trj/Chgt.AD |
Tencent | Win64.Backdoor.Havoc.Zchl |
SentinelOne | Static AI - Malicious PE |
Fortinet | W64/Havoc.M!tr |
AVG | Win64:Evo-gen [Trj] |
Paloalto | generic.ml |
CrowdStrike | win/malicious_confidence_70% (D) |
alibabacloud | Backdoor:Win/Havoc.M |