Analyzer Log
2025-11-07 11:41:35,030 [analyzer] DEBUG: Starting analyzer from: C:\tmpht3fil
2025-11-07 11:41:35,030 [analyzer] DEBUG: Pipe server name: \??\PIPE\bgutgIbwoNFlQFauqlrNELJUqZ
2025-11-07 11:41:35,030 [analyzer] DEBUG: Log pipe server name: \??\PIPE\jcuyyPrZawFjwhSSmTCgekxhYYTI
2025-11-07 11:41:35,515 [analyzer] DEBUG: Started auxiliary module Curtain
2025-11-07 11:41:35,515 [analyzer] DEBUG: Started auxiliary module DbgView
2025-11-07 11:41:36,030 [analyzer] DEBUG: Started auxiliary module Disguise
2025-11-07 11:41:36,250 [analyzer] DEBUG: Loaded monitor into process with pid 504
2025-11-07 11:41:36,250 [analyzer] DEBUG: Started auxiliary module DumpTLSMasterSecrets
2025-11-07 11:41:36,250 [analyzer] DEBUG: Started auxiliary module Human
2025-11-07 11:41:36,250 [analyzer] DEBUG: Started auxiliary module InstallCertificate
2025-11-07 11:41:36,265 [analyzer] DEBUG: Started auxiliary module Reboot
2025-11-07 11:41:36,312 [analyzer] DEBUG: Started auxiliary module RecentFiles
2025-11-07 11:41:36,312 [analyzer] DEBUG: Started auxiliary module Screenshots
2025-11-07 11:41:36,312 [analyzer] DEBUG: Started auxiliary module Sysmon
2025-11-07 11:41:36,312 [analyzer] DEBUG: Started auxiliary module LoadZer0m0n
2025-11-07 11:41:36,640 [lib.api.process] INFO: Successfully executed process from path u'C:\\Users\\ADMINI~1\\AppData\\Local\\Temp\\9f1feed00b2a75fecfb621d0c2839ce8b34584201906b735921b8fa0d9d81f7b.exe' with arguments '' and pid 2956
2025-11-07 11:41:36,842 [analyzer] DEBUG: Loaded monitor into process with pid 2956
2025-11-07 11:41:36,983 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\Pythonwin\mfc140u.dll
2025-11-07 11:41:45,390 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\Pythonwin\win32ui.pyd
2025-11-07 11:41:46,983 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\VCRUNTIME140.dll
2025-11-07 11:41:47,140 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\VCRUNTIME140_1.dll
2025-11-07 11:41:47,217 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\_asyncio.pyd
2025-11-07 11:41:47,342 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\_brotli.cp312-win_amd64.pyd
2025-11-07 11:41:48,296 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\_bz2.pyd
2025-11-07 11:41:48,421 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\_cffi_backend.cp312-win_amd64.pyd
2025-11-07 11:41:48,640 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\_ctypes.pyd
2025-11-07 11:41:48,842 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\_decimal.pyd
2025-11-07 11:41:49,187 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\_hashlib.pyd
2025-11-07 11:41:49,296 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\_lzma.pyd
2025-11-07 11:41:49,578 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\_multiprocessing.pyd
2025-11-07 11:41:49,640 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\_overlapped.pyd
2025-11-07 11:41:49,733 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\_queue.pyd
2025-11-07 11:41:49,812 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\_socket.pyd
2025-11-07 11:41:49,953 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\_ssl.pyd
2025-11-07 11:41:50,233 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\_wmi.pyd
2025-11-07 11:41:50,296 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-console-l1-1-0.dll
2025-11-07 11:41:50,342 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-datetime-l1-1-0.dll
2025-11-07 11:41:50,390 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-debug-l1-1-0.dll
2025-11-07 11:41:50,421 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-errorhandling-l1-1-0.dll
2025-11-07 11:41:50,467 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-fibers-l1-1-0.dll
2025-11-07 11:41:50,515 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-fibers-l1-1-1.dll
2025-11-07 11:41:50,546 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-file-l1-1-0.dll
2025-11-07 11:41:50,592 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-file-l1-2-0.dll
2025-11-07 11:41:50,640 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-file-l2-1-0.dll
2025-11-07 11:41:50,671 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-handle-l1-1-0.dll
2025-11-07 11:41:50,717 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-heap-l1-1-0.dll
2025-11-07 11:41:50,765 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-interlocked-l1-1-0.dll
2025-11-07 11:41:50,796 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-kernel32-legacy-l1-1-1.dll
2025-11-07 11:41:50,842 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-libraryloader-l1-1-0.dll
2025-11-07 11:41:50,890 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-localization-l1-2-0.dll
2025-11-07 11:41:50,921 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-memory-l1-1-0.dll
2025-11-07 11:41:50,983 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-namedpipe-l1-1-0.dll
2025-11-07 11:41:51,030 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-processenvironment-l1-1-0.dll
2025-11-07 11:41:51,062 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-processthreads-l1-1-0.dll
2025-11-07 11:41:51,108 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-processthreads-l1-1-1.dll
2025-11-07 11:41:51,155 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-profile-l1-1-0.dll
2025-11-07 11:41:51,187 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-rtlsupport-l1-1-0.dll
2025-11-07 11:41:51,233 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-string-l1-1-0.dll
2025-11-07 11:41:51,280 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-synch-l1-1-0.dll
2025-11-07 11:41:51,328 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-synch-l1-2-0.dll
2025-11-07 11:41:51,375 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-sysinfo-l1-1-0.dll
2025-11-07 11:41:51,421 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-sysinfo-l1-2-0.dll
2025-11-07 11:41:51,467 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-timezone-l1-1-0.dll
2025-11-07 11:41:51,515 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-core-util-l1-1-0.dll
2025-11-07 11:41:51,546 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-crt-conio-l1-1-0.dll
2025-11-07 11:41:51,592 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-crt-convert-l1-1-0.dll
2025-11-07 11:41:51,625 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-crt-environment-l1-1-0.dll
2025-11-07 11:41:51,671 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-crt-filesystem-l1-1-0.dll
2025-11-07 11:41:51,703 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-crt-heap-l1-1-0.dll
2025-11-07 11:41:51,750 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-crt-locale-l1-1-0.dll
2025-11-07 11:41:51,780 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-crt-math-l1-1-0.dll
2025-11-07 11:41:51,828 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-crt-multibyte-l1-1-0.dll
2025-11-07 11:41:51,890 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-crt-process-l1-1-0.dll
2025-11-07 11:41:51,937 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-crt-runtime-l1-1-0.dll
2025-11-07 11:41:51,967 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-crt-stdio-l1-1-0.dll
2025-11-07 11:41:52,015 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-crt-string-l1-1-0.dll
2025-11-07 11:41:52,062 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-crt-time-l1-1-0.dll
2025-11-07 11:41:52,108 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\api-ms-win-crt-utility-l1-1-0.dll
2025-11-07 11:41:52,155 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\base_library.zip
2025-11-07 11:41:53,905 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\certifi\cacert.pem
2025-11-07 11:41:54,421 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\charset_normalizer\md.cp312-win_amd64.pyd
2025-11-07 11:41:54,467 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\charset_normalizer\md__mypyc.cp312-win_amd64.pyd
2025-11-07 11:41:54,640 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\cryptography-44.0.3.dist-info\INSTALLER
2025-11-07 11:41:54,671 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\cryptography-44.0.3.dist-info\METADATA
2025-11-07 11:41:54,703 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\cryptography-44.0.3.dist-info\RECORD
2025-11-07 11:41:54,750 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\cryptography-44.0.3.dist-info\WHEEL
2025-11-07 11:41:54,796 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\cryptography-44.0.3.dist-info\licenses\LICENSE
2025-11-07 11:41:54,828 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\cryptography-44.0.3.dist-info\licenses\LICENSE.APACHE
2025-11-07 11:41:54,875 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\cryptography-44.0.3.dist-info\licenses\LICENSE.BSD
2025-11-07 11:41:54,937 [analyzer] INFO: Added new file to list with pid 2956 and path C:\Users\Administrator\AppData\Local\Temp\_MEI29562\cryptography\hazmat\bindings\_rust.pyd
2025-11-07 11:42:05,655 [analyzer] INFO: Analysis timeout hit, terminating analysis.
2025-11-07 11:42:05,953 [analyzer] INFO: Terminating remaining processes before shutdown.
2025-11-07 11:42:05,953 [lib.api.process] INFO: Successfully terminated process with pid 2956.
2025-11-07 11:42:06,562 [analyzer] INFO: Analysis completed.
Cuckoo Log
2025-11-15 15:57:33,519 [cuckoo.core.scheduler] DEBUG: Task #7085659: no machine available yet
2025-11-15 15:57:34,534 [cuckoo.core.scheduler] DEBUG: Task #7085659: no machine available yet
2025-11-15 15:57:35,562 [cuckoo.core.scheduler] DEBUG: Task #7085659: no machine available yet
2025-11-15 15:57:36,592 [cuckoo.core.scheduler] DEBUG: Task #7085659: no machine available yet
2025-11-15 15:57:38,396 [cuckoo.core.scheduler] DEBUG: Task #7085659: no machine available yet
2025-11-15 15:57:39,546 [cuckoo.core.scheduler] DEBUG: Task #7085659: no machine available yet
2025-11-15 15:57:40,606 [cuckoo.core.scheduler] DEBUG: Task #7085659: no machine available yet
2025-11-15 15:57:42,101 [cuckoo.core.scheduler] DEBUG: Task #7085659: no machine available yet
2025-11-15 15:57:43,368 [cuckoo.core.scheduler] DEBUG: Task #7085659: no machine available yet
2025-11-15 15:57:44,454 [cuckoo.core.scheduler] INFO: Task #7085659: acquired machine win7x6411 (label=win7x6411)
2025-11-15 15:57:44,455 [cuckoo.core.resultserver] DEBUG: Now tracking machine 192.168.168.211 for task #7085659
2025-11-15 15:57:45,020 [cuckoo.auxiliary.sniffer] INFO: Started sniffer with PID 2962877 (interface=vboxnet0, host=192.168.168.211)
2025-11-15 16:00:54,517 [cuckoo.machinery.virtualbox] DEBUG: Starting vm win7x6411
2025-11-15 16:00:55,598 [cuckoo.machinery.virtualbox] DEBUG: Restoring virtual machine win7x6411 to vmcloak
2025-11-15 16:03:01,743 [cuckoo.core.guest] INFO: Starting analysis #7085659 on guest (id=win7x6411, ip=192.168.168.211)
2025-11-15 16:03:02,755 [cuckoo.core.guest] DEBUG: win7x6411: not ready yet
2025-11-15 16:03:07,902 [cuckoo.core.guest] INFO: Guest is running Cuckoo Agent 0.10 (id=win7x6411, ip=192.168.168.211)
2025-11-15 16:03:08,072 [cuckoo.core.guest] DEBUG: Uploading analyzer to guest (id=win7x6411, ip=192.168.168.211, monitor=latest, size=6660546)
2025-11-15 16:03:10,719 [cuckoo.core.resultserver] DEBUG: Task #7085659: live log analysis.log initialized.
2025-11-15 16:03:11,914 [cuckoo.core.resultserver] DEBUG: Task #7085659 is sending a BSON stream
2025-11-15 16:03:12,449 [cuckoo.core.resultserver] DEBUG: Task #7085659 is sending a BSON stream
2025-11-15 16:03:13,158 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'shots/0001.jpg'
2025-11-15 16:03:13,196 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 133486
2025-11-15 16:03:25,414 [cuckoo.core.guest] DEBUG: win7x6411: analysis #7085659 still processing
2025-11-15 16:03:40,536 [cuckoo.core.guest] DEBUG: win7x6411: analysis #7085659 still processing
2025-11-15 16:03:41,471 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'curtain/1762512125.73.curtain.log'
2025-11-15 16:03:41,473 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 36
2025-11-15 16:03:41,662 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'sysmon/1762512125.92.sysmon.xml'
2025-11-15 16:03:41,756 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 1588202
2025-11-15 16:03:41,765 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/2b7b1026f18a297e_cacert.pem'
2025-11-15 16:03:41,767 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/847e2b2c69ca623e__decimal.pyd'
2025-11-15 16:03:41,769 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/39095f59c41d76ec_api-ms-win-core-handle-l1-1-0.dll'
2025-11-15 16:03:41,771 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 21944
2025-11-15 16:03:41,772 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/60fc31d2a0c63441_api-ms-win-core-string-l1-1-0.dll'
2025-11-15 16:03:41,774 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22056
2025-11-15 16:03:41,775 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/b66a5a1a4aa1f187__multiprocessing.pyd'
2025-11-15 16:03:41,777 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 36856
2025-11-15 16:03:41,778 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/6ee44dd0d8510dc0_api-ms-win-core-localization-l1-2-0.dll'
2025-11-15 16:03:41,780 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22080
2025-11-15 16:03:41,781 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/b203d862ddef1dd6_api-ms-win-core-sysinfo-l1-1-0.dll'
2025-11-15 16:03:41,782 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22072
2025-11-15 16:03:41,784 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/fc9d86cec621383e_api-ms-win-core-fibers-l1-1-1.dll'
2025-11-15 16:03:41,785 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22072
2025-11-15 16:03:41,786 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/33f4fddc181066fc_api-ms-win-core-timezone-l1-1-0.dll'
2025-11-15 16:03:41,788 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22056
2025-11-15 16:03:41,789 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/9a9e2a65a281644e_api-ms-win-crt-filesystem-l1-1-0.dll'
2025-11-15 16:03:41,791 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22056
2025-11-15 16:03:41,792 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/5ccb89e93d67bc32_api-ms-win-core-processthreads-l1-1-0.dll'
2025-11-15 16:03:41,794 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22096
2025-11-15 16:03:41,795 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/3e0c7c091a948b82_license'
2025-11-15 16:03:41,796 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 197
2025-11-15 16:03:41,797 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/86f136553ba301c7__cffi_backend.cp312-win_amd64.pyd'
2025-11-15 16:03:41,800 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/a9c5a153d8c0286f_api-ms-win-crt-stdio-l1-1-0.dll'
2025-11-15 16:03:41,802 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 26168
2025-11-15 16:03:41,803 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 179712
2025-11-15 16:03:41,810 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 257904
2025-11-15 16:03:41,812 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 283771
2025-11-15 16:03:41,814 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/643ce7fe6a203c53_mfc140u.dll'
2025-11-15 16:03:41,876 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 5664848
2025-11-15 16:03:41,895 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/3761c2c9b00b0b2f_metadata'
2025-11-15 16:03:41,900 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 5724
2025-11-15 16:03:41,909 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/3a72b4f29f39a265_api-ms-win-core-synch-l1-1-0.dll'
2025-11-15 16:03:41,911 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22056
2025-11-15 16:03:41,917 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/4ad565a8ba3ef0ea_api-ms-win-core-processthreads-l1-1-1.dll'
2025-11-15 16:03:41,919 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22072
2025-11-15 16:03:41,923 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/a9b13a1cd1b8c19b_api-ms-win-core-kernel32-legacy-l1-1-1.dll'
2025-11-15 16:03:41,924 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22080
2025-11-15 16:03:41,929 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/cd5516feef83d1bc_record'
2025-11-15 16:03:41,939 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 16286
2025-11-15 16:03:41,941 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/b762061b688aae67_api-ms-win-crt-conio-l1-1-0.dll'
2025-11-15 16:03:41,948 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22056
2025-11-15 16:03:41,951 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/bac2870d61a72be5__asyncio.pyd'
2025-11-15 16:03:41,953 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/1bd81dfd19204b44_api-ms-win-core-datetime-l1-1-0.dll'
2025-11-15 16:03:41,955 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22056
2025-11-15 16:03:41,956 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/178c6eeb30843e65__bz2.pyd'
2025-11-15 16:03:41,958 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 73960
2025-11-15 16:03:41,959 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/591358eb4d1531e9_api-ms-win-core-debug-l1-1-0.dll'
2025-11-15 16:03:41,961 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 21944
2025-11-15 16:03:41,962 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/17d63275d00bdd86_api-ms-win-crt-environment-l1-1-0.dll'
2025-11-15 16:03:41,964 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22080
2025-11-15 16:03:41,964 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 86760
2025-11-15 16:03:41,966 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/ebb2ae5535a64f65_api-ms-win-crt-convert-l1-1-0.dll'
2025-11-15 16:03:41,967 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 26056
2025-11-15 16:03:41,969 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/602c4c7482de6479_license.bsd'
2025-11-15 16:03:41,970 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 1532
2025-11-15 16:03:41,973 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/93c624b366ba16c6_api-ms-win-core-file-l2-1-0.dll'
2025-11-15 16:03:41,975 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 21960
2025-11-15 16:03:41,978 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/6eda016742a61712_api-ms-win-core-util-l1-1-0.dll'
2025-11-15 16:03:41,980 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 21944
2025-11-15 16:03:41,983 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/f6156b1020380ec4_api-ms-win-crt-process-l1-1-0.dll'
2025-11-15 16:03:41,985 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22096
2025-11-15 16:03:41,988 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/823717926adce6b3__hashlib.pyd'
2025-11-15 16:03:41,991 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 67576
2025-11-15 16:03:41,994 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/2703635d835396af_api-ms-win-core-sysinfo-l1-2-0.dll'
2025-11-15 16:03:41,996 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22080
2025-11-15 16:03:41,999 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/c5902934d026d7e1_api-ms-win-crt-runtime-l1-1-0.dll'
2025-11-15 16:03:42,001 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 26152
2025-11-15 16:03:42,004 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/7809160932f44e59_api-ms-win-core-profile-l1-1-0.dll'
2025-11-15 16:03:42,006 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22080
2025-11-15 16:03:42,010 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/91d249d7bc0e38ef_api-ms-win-core-fibers-l1-1-0.dll'
2025-11-15 16:03:42,012 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22072
2025-11-15 16:03:42,015 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/9ffdedd0f1f09f21__ctypes.pyd'
2025-11-15 16:03:42,018 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 127208
2025-11-15 16:03:42,020 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/ceebae7b8927a322_installer'
2025-11-15 16:03:42,022 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 4
2025-11-15 16:03:42,024 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/7c7f6393f06de117_api-ms-win-crt-time-l1-1-0.dll'
2025-11-15 16:03:42,025 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22096
2025-11-15 16:03:42,067 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/56eb3f4fdb84fd2f__rust.pyd'
2025-11-15 16:03:42,108 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 6443008
2025-11-15 16:03:42,120 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/af1077d6377d5a0a__wmi.pyd'
2025-11-15 16:03:42,123 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 40304
2025-11-15 16:03:42,127 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/c566d85d4b08ab7f_base_library.zip'
2025-11-15 16:03:42,135 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 1333418
2025-11-15 16:03:42,140 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/aac73b3148f6d1d7_license.apache'
2025-11-15 16:03:42,142 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 11360
2025-11-15 16:03:42,152 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/5f7b34623a17f357_win32ui.pyd'
2025-11-15 16:03:42,158 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 1051648
2025-11-15 16:03:42,162 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/bab9ac3ec83e380a_api-ms-win-crt-heap-l1-1-0.dll'
2025-11-15 16:03:42,164 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22096
2025-11-15 16:03:42,165 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/c05f1fffe3b5a273_api-ms-win-core-namedpipe-l1-1-0.dll'
2025-11-15 16:03:42,167 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22096
2025-11-15 16:03:42,171 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/0e6081da5bbf8fcd__overlapped.pyd'
2025-11-15 16:03:42,173 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 57336
2025-11-15 16:03:42,175 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/0e2c1089974a2757__socket.pyd'
2025-11-15 16:03:42,177 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 85864
2025-11-15 16:03:42,180 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/82a2f9ae1e6146ae_vcruntime140_1.dll'
2025-11-15 16:03:42,182 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 49744
2025-11-15 16:03:42,185 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/bd14c67ea28e21d6_api-ms-win-crt-locale-l1-1-0.dll'
2025-11-15 16:03:42,186 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22080
2025-11-15 16:03:42,189 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/88ace577a9c51061_api-ms-win-core-console-l1-1-0.dll'
2025-11-15 16:03:42,191 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22072
2025-11-15 16:03:42,193 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/4cadbc0c39da7c67_api-ms-win-core-file-l1-2-0.dll'
2025-11-15 16:03:42,195 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22056
2025-11-15 16:03:42,197 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/53b25e753ca785bf_api-ms-win-core-interlocked-l1-1-0.dll'
2025-11-15 16:03:42,199 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22072
2025-11-15 16:03:42,202 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/d56ce7b1cd76108a_api-ms-win-core-errorhandling-l1-1-0.dll'
2025-11-15 16:03:42,203 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22096
2025-11-15 16:03:42,206 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/7f39ba298b41e496_api-ms-win-core-libraryloader-l1-1-0.dll'
2025-11-15 16:03:42,208 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22056
2025-11-15 16:03:42,211 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/ffe8d64a38b40600_md__mypyc.cp312-win_amd64.pyd'
2025-11-15 16:03:42,213 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 125440
2025-11-15 16:03:42,215 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/efc1e4460984a73c_api-ms-win-core-synch-l1-2-0.dll'
2025-11-15 16:03:42,217 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22080
2025-11-15 16:03:42,219 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/5c11b2fbe20a75ae_md.cp312-win_amd64.pyd'
2025-11-15 16:03:42,220 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 10752
2025-11-15 16:03:42,223 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/25b8f83a7767211b_api-ms-win-crt-string-l1-1-0.dll'
2025-11-15 16:03:42,225 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 26176
2025-11-15 16:03:42,227 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/8f105771b236dbcb_api-ms-win-core-heap-l1-1-0.dll'
2025-11-15 16:03:42,229 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22072
2025-11-15 16:03:42,232 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/d8ba5f17b9ffcbf3_api-ms-win-crt-utility-l1-1-0.dll'
2025-11-15 16:03:42,248 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 21952
2025-11-15 16:03:42,280 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/9dc1e91e71c7c054_api-ms-win-core-rtlsupport-l1-1-0.dll'
2025-11-15 16:03:42,282 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 21960
2025-11-15 16:03:42,283 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/788acbfd0edd6ca3__brotli.cp312-win_amd64.pyd'
2025-11-15 16:03:42,285 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/f6e0c786395ccc7b__lzma.pyd'
2025-11-15 16:03:42,287 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/1e7f5bcad669386a_wheel'
2025-11-15 16:03:42,289 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 94
2025-11-15 16:03:42,290 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/37622ca591fb8e45__queue.pyd'
2025-11-15 16:03:42,292 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 33784
2025-11-15 16:03:42,317 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/95f49efbe8107786_api-ms-win-crt-multibyte-l1-1-0.dll'
2025-11-15 16:03:42,320 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 30248
2025-11-15 16:03:42,353 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/36585912e5eaf83b_vcruntime140.dll'
2025-11-15 16:03:42,355 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 160624
2025-11-15 16:03:42,366 [cuckoo.core.resultserver] DEBUG: Task #7085659 had connection reset for <Context for LOG>
2025-11-15 16:03:42,378 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/0512a35316ec9180_api-ms-win-core-memory-l1-1-0.dll'
2025-11-15 16:03:42,380 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 22056
2025-11-15 16:03:42,382 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/c4eca98c3c67b639_api-ms-win-core-processenvironment-l1-1-0.dll'
2025-11-15 16:03:42,427 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 21968
2025-11-15 16:03:42,429 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/1ca895aba4e74355_api-ms-win-core-file-l1-1-0.dll'
2025-11-15 16:03:42,431 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 26152
2025-11-15 16:03:42,432 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/81344e3e16cf6f2d__ssl.pyd'
2025-11-15 16:03:42,434 [cuckoo.core.resultserver] DEBUG: Task #7085659: File upload for 'files/606d66d82db562ea_api-ms-win-crt-math-l1-1-0.dll'
2025-11-15 16:03:42,436 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 30248
2025-11-15 16:03:42,437 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 180080
2025-11-15 16:03:42,439 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 120400
2025-11-15 16:03:42,443 [cuckoo.core.resultserver] DEBUG: Task #7085659 uploaded file length: 821248
2025-11-15 16:03:43,553 [cuckoo.core.guest] INFO: win7x6411: analysis completed successfully
2025-11-15 16:03:43,569 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Redsocks
2025-11-15 16:03:43,598 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Sniffer
2025-11-15 16:03:44,835 [cuckoo.machinery.virtualbox] INFO: Successfully generated memory dump for virtual machine with label win7x6411 to path /srv/cuckoo/cwd/storage/analyses/7085659/memory.dmp
2025-11-15 16:03:44,836 [cuckoo.machinery.virtualbox] DEBUG: Stopping vm win7x6411
2025-11-15 16:06:25,724 [cuckoo.core.resultserver] DEBUG: Stopped tracking machine 192.168.168.211 for task #7085659
2025-11-15 16:06:27,484 [cuckoo.core.scheduler] DEBUG: Released database task #7085659
2025-11-15 16:06:27,542 [cuckoo.core.scheduler] INFO: Task #7085659: analysis procedure completed