URL |
---|
http://hsviftagjwib.com/ |
Please notice: The scoring system is currently still in development and should be considered an alpha feature.
Category | Started | Completed | Duration | Logs |
---|---|---|---|---|
URL | Jan. 20, 2019, 1:41 a.m. | Jan. 20, 2019, 1:41 a.m. | 29 seconds |
Name | Label | Started On | Shutdown On |
---|---|---|---|
win7x64 | win7x64 | 2019-01-20 01:41:27 | 2019-01-20 01:41:54 |
2019-01-19 17:41:24,030 [analyzer] DEBUG: Starting analyzer from: C:\dgfsxdgnni 2019-01-19 17:41:24,062 [analyzer] DEBUG: Pipe server name: \\.\PIPE\klSldkRtMdDzQhRnvsSbipUp 2019-01-19 17:41:24,062 [analyzer] DEBUG: Log pipe server name: \\.\PIPE\CMJhQlUqKFKIEjAlnWRwVRO 2019-01-19 17:41:25,871 [analyzer] DEBUG: Started auxiliary module Disguise 2019-01-19 17:41:26,355 [analyzer] DEBUG: Loaded monitor into process with pid 508 2019-01-19 17:41:26,355 [analyzer] DEBUG: Started auxiliary module DumpTLSMasterSecrets 2019-01-19 17:41:26,355 [analyzer] DEBUG: Started auxiliary module Human 2019-01-19 17:41:26,355 [analyzer] DEBUG: Started auxiliary module InstallCertificate 2019-01-19 17:41:26,355 [analyzer] DEBUG: Started auxiliary module Reboot 2019-01-19 17:41:26,683 [analyzer] DEBUG: Started auxiliary module RecentFiles 2019-01-19 17:41:26,683 [modules.auxiliary.screenshots] WARNING: Python Image Library is not installed, screenshots are disabled 2019-01-19 17:41:26,683 [analyzer] DEBUG: Started auxiliary module Screenshots 2019-01-19 17:41:26,792 [lib.api.process] INFO: Successfully executed process from path 'C:\\Windows\\System32\\cmd.exe' with arguments ['/c', 'start', '/wait', '"OZwee"', 'http://hsviftagjwib.com/'] and pid 2304 2019-01-19 17:41:27,415 [analyzer] DEBUG: Loaded monitor into process with pid 2304 2019-01-19 17:41:28,742 [analyzer] DEBUG: Received request to inject pid=2304, but we are already injected there. 2019-01-19 17:41:32,907 [analyzer] INFO: Process with pid 2304 has terminated 2019-01-19 17:41:32,907 [analyzer] INFO: Process list is empty, terminating analysis. 2019-01-19 17:41:33,921 [analyzer] INFO: Terminating remaining processes before shutdown. 2019-01-19 17:41:33,921 [analyzer] INFO: Analysis completed.
2019-01-20 01:41:25,118 [lib.cuckoo.core.scheduler] INFO: Task #1172: acquired machine win7x64 (label=win7x64) 2019-01-20 01:41:27,650 [modules.auxiliary.sniffer] INFO: Started sniffer with PID 7160 (interface=eth2, host=192.168.128.109, pcap=/opt/cuckoo/storage/analyses/1172/dump.pcap) 2019-01-20 01:41:35,914 [lib.cuckoo.core.guest] INFO: Starting analysis on guest (id=win7x64, ip=192.168.128.109) 2019-01-20 01:41:53,573 [lib.cuckoo.core.guest] INFO: win7x64: analysis completed successfully 2019-01-20 01:41:54,959 [lib.cuckoo.core.plugins] WARNING: The processing module "Suricata" returned the following error: Unable to locate Suricata binary 2019-01-20 01:41:56,112 [elasticsearch] WARNING: HEAD http://127.0.0.1:9200/_template/cuckoo_template [status:N/A request:0.000s] Traceback (most recent call last): File "/usr/local/lib/python2.7/dist-packages/elasticsearch/connection/http_urllib3.py", line 94, in perform_request response = self.pool.urlopen(method, url, body, retries=False, headers=self.headers, **kw) File "/usr/local/lib/python2.7/dist-packages/urllib3/connectionpool.py", line 643, in urlopen _stacktrace=sys.exc_info()[2]) File "/usr/local/lib/python2.7/dist-packages/urllib3/util/retry.py", line 251, in increment raise six.reraise(type(error), error, _stacktrace) File "/usr/local/lib/python2.7/dist-packages/urllib3/connectionpool.py", line 594, in urlopen chunked=chunked) File "/usr/local/lib/python2.7/dist-packages/urllib3/connectionpool.py", line 361, in _make_request conn.request(method, url, **httplib_request_kw) File "/usr/lib/python2.7/httplib.py", line 1017, in request self._send_request(method, url, body, headers) File "/usr/lib/python2.7/httplib.py", line 1051, in _send_request self.endheaders(body) File "/usr/lib/python2.7/httplib.py", line 1013, in endheaders self._send_output(message_body) File "/usr/lib/python2.7/httplib.py", line 864, in _send_output self.send(msg) File "/usr/lib/python2.7/httplib.py", line 826, in send self.connect() File "/usr/local/lib/python2.7/dist-packages/urllib3/connection.py", line 163, in connect conn = self._new_conn() File "/usr/local/lib/python2.7/dist-packages/urllib3/connection.py", line 147, in _new_conn self, "Failed to establish a new connection: %s" % e) NewConnectionError: <urllib3.connection.HTTPConnection object at 0x7f76cae51090>: Failed to establish a new connection: [Errno 111] Connection refused 2019-01-20 01:41:56,113 [elasticsearch] WARNING: HEAD http://127.0.0.1:9200/_template/cuckoo_template [status:N/A request:0.000s] Traceback (most recent call last): File "/usr/local/lib/python2.7/dist-packages/elasticsearch/connection/http_urllib3.py", line 94, in perform_request response = self.pool.urlopen(method, url, body, retries=False, headers=self.headers, **kw) File "/usr/local/lib/python2.7/dist-packages/urllib3/connectionpool.py", line 643, in urlopen _stacktrace=sys.exc_info()[2]) File "/usr/local/lib/python2.7/dist-packages/urllib3/util/retry.py", line 251, in increment raise six.reraise(type(error), error, _stacktrace) File "/usr/local/lib/python2.7/dist-packages/urllib3/connectionpool.py", line 594, in urlopen chunked=chunked) File "/usr/local/lib/python2.7/dist-packages/urllib3/connectionpool.py", line 361, in _make_request conn.request(method, url, **httplib_request_kw) File "/usr/lib/python2.7/httplib.py", line 1017, in request self._send_request(method, url, body, headers) File "/usr/lib/python2.7/httplib.py", line 1051, in _send_request self.endheaders(body) File "/usr/lib/python2.7/httplib.py", line 1013, in endheaders self._send_output(message_body) File "/usr/lib/python2.7/httplib.py", line 864, in _send_output self.send(msg) File "/usr/lib/python2.7/httplib.py", line 826, in send self.connect() File "/usr/local/lib/python2.7/dist-packages/urllib3/connection.py", line 163, in connect conn = self._new_conn() File "/usr/local/lib/python2.7/dist-packages/urllib3/connection.py", line 147, in _new_conn self, "Failed to establish a new connection: %s" % e) NewConnectionError: <urllib3.connection.HTTPConnection object at 0x7f76cae51c10>: Failed to establish a new connection: [Errno 111] Connection refused 2019-01-20 01:41:56,114 [elasticsearch] WARNING: HEAD http://127.0.0.1:9200/_template/cuckoo_template [status:N/A request:0.000s] Traceback (most recent call last): File "/usr/local/lib/python2.7/dist-packages/elasticsearch/connection/http_urllib3.py", line 94, in perform_request response = self.pool.urlopen(method, url, body, retries=False, headers=self.headers, **kw) File "/usr/local/lib/python2.7/dist-packages/urllib3/connectionpool.py", line 643, in urlopen _stacktrace=sys.exc_info()[2]) File "/usr/local/lib/python2.7/dist-packages/urllib3/util/retry.py", line 251, in increment raise six.reraise(type(error), error, _stacktrace) File "/usr/local/lib/python2.7/dist-packages/urllib3/connectionpool.py", line 594, in urlopen chunked=chunked) File "/usr/local/lib/python2.7/dist-packages/urllib3/connectionpool.py", line 361, in _make_request conn.request(method, url, **httplib_request_kw) File "/usr/lib/python2.7/httplib.py", line 1017, in request self._send_request(method, url, body, headers) File "/usr/lib/python2.7/httplib.py", line 1051, in _send_request self.endheaders(body) File "/usr/lib/python2.7/httplib.py", line 1013, in endheaders self._send_output(message_body) File "/usr/lib/python2.7/httplib.py", line 864, in _send_output self.send(msg) File "/usr/lib/python2.7/httplib.py", line 826, in send self.connect() File "/usr/local/lib/python2.7/dist-packages/urllib3/connection.py", line 163, in connect conn = self._new_conn() File "/usr/local/lib/python2.7/dist-packages/urllib3/connection.py", line 147, in _new_conn self, "Failed to establish a new connection: %s" % e) NewConnectionError: <urllib3.connection.HTTPConnection object at 0x7f76cae51e10>: Failed to establish a new connection: [Errno 111] Connection refused 2019-01-20 01:41:56,114 [elasticsearch] WARNING: HEAD http://127.0.0.1:9200/_template/cuckoo_template [status:N/A request:0.000s] Traceback (most recent call last): File "/usr/local/lib/python2.7/dist-packages/elasticsearch/connection/http_urllib3.py", line 94, in perform_request response = self.pool.urlopen(method, url, body, retries=False, headers=self.headers, **kw) File "/usr/local/lib/python2.7/dist-packages/urllib3/connectionpool.py", line 643, in urlopen _stacktrace=sys.exc_info()[2]) File "/usr/local/lib/python2.7/dist-packages/urllib3/util/retry.py", line 251, in increment raise six.reraise(type(error), error, _stacktrace) File "/usr/local/lib/python2.7/dist-packages/urllib3/connectionpool.py", line 594, in urlopen chunked=chunked) File "/usr/local/lib/python2.7/dist-packages/urllib3/connectionpool.py", line 361, in _make_request conn.request(method, url, **httplib_request_kw) File "/usr/lib/python2.7/httplib.py", line 1017, in request self._send_request(method, url, body, headers) File "/usr/lib/python2.7/httplib.py", line 1051, in _send_request self.endheaders(body) File "/usr/lib/python2.7/httplib.py", line 1013, in endheaders self._send_output(message_body) File "/usr/lib/python2.7/httplib.py", line 864, in _send_output self.send(msg) File "/usr/lib/python2.7/httplib.py", line 826, in send self.connect() File "/usr/local/lib/python2.7/dist-packages/urllib3/connection.py", line 163, in connect conn = self._new_conn() File "/usr/local/lib/python2.7/dist-packages/urllib3/connection.py", line 147, in _new_conn self, "Failed to establish a new connection: %s" % e) NewConnectionError: <urllib3.connection.HTTPConnection object at 0x7f76cae51090>: Failed to establish a new connection: [Errno 111] Connection refused 2019-01-20 01:41:56,115 [lib.cuckoo.core.plugins] ERROR: Failed to run the reporting module "ElasticSearch": Traceback (most recent call last): File "/opt/cuckoo/lib/cuckoo/core/plugins.py", line 533, in process current.run(self.results) File "/opt/cuckoo/modules/reporting/elasticsearch.py", line 196, in run self.connect() File "/opt/cuckoo/modules/reporting/elasticsearch.py", line 79, in connect if not self.es.indices.exists_template("cuckoo_template"): File "/usr/local/lib/python2.7/dist-packages/elasticsearch/client/utils.py", line 69, in _wrapped return func(*args, params=params, **kwargs) File "/usr/local/lib/python2.7/dist-packages/elasticsearch/client/indices.py", line 491, in exists_template name), params=params) File "/usr/local/lib/python2.7/dist-packages/elasticsearch/transport.py", line 327, in perform_request status, headers, data = connection.perform_request(method, url, params, body, ignore=ignore, timeout=timeout) File "/usr/local/lib/python2.7/dist-packages/elasticsearch/connection/http_urllib3.py", line 105, in perform_request raise ConnectionError('N/A', str(e), e) ConnectionError: ConnectionError(<urllib3.connection.HTTPConnection object at 0x7f76cae51090>: Failed to establish a new connection: [Errno 111] Connection refused) caused by: NewConnectionError(<urllib3.connection.HTTPConnection object at 0x7f76cae51090>: Failed to establish a new connection: [Errno 111] Connection refused)
No domains contacted.
No hosts contacted.
Opened files
Registry keys read
DLLs Loaded
No hosts contacted.
No domains contacted.
No TCP connections recorded.
No UDP connections recorded.
No HTTP requests performed.
No ICMP traffic performed.
No IRC requests performed.
No Suricata Alerts
No Suricata TLS
No Snort Alerts
Task ID | 1172 |
---|---|
Mongo ID | 5c44183411d3080d9d440764 |
Cuckoo release | 2.0-dev |