4deff7d8434583ea8e5c3ef9b4c64674dfb165b1720ddf63b5abdd8ed6a7399c (SHA256)
sous.exe
Created at 2018-04-13 00:34:00
Notifications (2/2)
Due to a reputation service error, no query could be made to determine the reputation status of any contacted URL.
The operating system was rebooted during the analysis.
Severity | Category | Operation | Classification | |
---|---|---|---|---|
5/5
|
File System | Encrypts content of user files | Ransomware | |
|
||||
5/5
|
Device | Writes to Master Boot Record (MBR) | - | |
|
||||
4/5
|
OS | Modifies Windows automatic backups | - | |
|
||||
3/5
|
Kernel | Executes code with kernel privileges | - | |
|
||||
1/5
|
Anti Analysis | Tries to detect debugger | - | |
|
||||
1/5
|
Process | Creates process with hidden window | - | |
|
||||
|
||||
|
||||
|
||||
1/5
|
Anti Analysis | Resolves APIs dynamically to possibly evade static detection | - | |
|
||||
1/5
|
Masquerade | Changes folder appearance | Riskware | |
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
1/5
|
Device | Monitors mouse movements and clicks | - | |
|
||||
1/5
|
File System | Creates an unusually large number of files | - | |
|
||||
1/5
|
Network | Downloads data | Downloader | |
|
||||
1/5
|
Network | Connects to HTTP server | - | |
|
||||
1/5
|
Persistence | Installs system service | - | |
|