Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6402 | March 11, 2025, 1:47 p.m. | March 11, 2025, 1:50 p.m. |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
file | C:\Users\test22\AppData\Local\Temp\7zE49814758\Nexol\aah32.dll |
file | C:\Users\test22\AppData\Local\Temp\7zE49814758\Nexol\x64\x32d9.dll |
file | C:\Users\test22\AppData\Local\Temp\7zE49814758\Nexol\x64\cfg.dll |
file | C:\Users\test22\AppData\Local\Temp\7zE49814758\Nexol\x64\Vsg32.dll |
file | C:\Users\test22\AppData\Local\Temp\7zE49814758\Nexol\x64\x64d3.dll |
file | C:\Users\test22\AppData\Local\Temp\7zE49814758\Nexol\Nexol.exe |
file | C:\Users\test22\AppData\Local\Temp\7zE49814758\Nexol\inject.dll |
file | C:\Users\test22\AppData\Local\Temp\7zE49814758\Nexol\Quadv.dll |
file | C:\Users\test22\AppData\Local\Temp\7zE49814758\Nexol\version.dll |
file | C:\Users\test22\AppData\Local\Temp\7zE49814758\Nexol\Xheu.dll |
description | Escalate priviledges | rule | Escalate_priviledges | ||||||
description | PWS Memory | rule | Generic_PWS_Memory_Zero | ||||||
description | (no description) | rule | DebuggerCheck__GlobalFlags | ||||||
description | (no description) | rule | DebuggerCheck__QueryInfo | ||||||
description | (no description) | rule | DebuggerHiding__Thread | ||||||
description | (no description) | rule | DebuggerHiding__Active | ||||||
description | (no description) | rule | ThreadControl__Context | ||||||
description | (no description) | rule | SEH__vectored | ||||||
description | Checks if being debugged | rule | anti_dbg | ||||||
description | Bypass DEP | rule | disable_dep | ||||||
description | Run a KeyLogger | rule | KeyLogger |
host | 121.133.128.2 |