Try VMRay Platform
Malicious
Classifications

Injector Hacktool

Threat Names

CactusTorch Cobalt Strike

Dynamic Analysis Report

Created on 2022-01-15T10:04:00

4d4d70e1918494a0a39641bd8dbfc23ae6451f3d20396b43f150623b8cfe4e93.hta

HTML Application

Remarks (1/1)

(0x0200000E): The overall sleep time of all monitored processes was truncated from "1 hour, 52 minutes" to "40 seconds" to reveal dormant functionality.

Filters:
File Name Category Type Verdict Actions
C:\Users\kEecfMwgj\Desktop\4d4d70e1918494a0a39641bd8dbfc23ae6451f3d20396b43f150623b8cfe4e93.hta Sample File HTML Application
malicious
»
MIME Type application/hta
File Size 286.62 KB
MD5 c339f9930b7a5d8172acf898f6270632 Copy to Clipboard
SHA1 c50a153458e3f8a83ace7f195605bb481d286f6e Copy to Clipboard
SHA256 4d4d70e1918494a0a39641bd8dbfc23ae6451f3d20396b43f150623b8cfe4e93 Copy to Clipboard
SSDeep 6144:uGser0A9gxLIanBrj5ysuKoAHMVIYSRjIaMMUY726AbpPjj5EZKO/ltwEDHHkqFM:4er9OEUBUBaHMVIDOMUyrSP5O4EzHkmM Copy to Clipboard
ImpHash -
YARA Matches (1)
»
Rule Name Rule Description Classification Score Actions
CactusTorch CactusTorch: payload generator Hacktool
5/5
Function Logfile
Exit-Icon

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting "security.fileuri.strict_origin_policy".


    
Before

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting "security.fileuri.strict_origin_policy".


    
After

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting "security.fileuri.strict_origin_policy".


    
Screenshot
Expand-Icon
Exit-Icon
icon_left
icon_left
image