Try VMRay Platform
Malicious
Classifications

Spyware Injector

Threat Names

FormBook Mal/Generic-S Gen:Variant.Razy.679962

Remarks (2/2)

(0x0200000E): The overall sleep time of all monitored processes was truncated from "8 hours, 16 minutes, 24 seconds" to "8 seconds" to reveal dormant functionality.

(0x02000004): The operating system was rebooted during the analysis because the sample installed a startup script, task or application for persistence.

General

92.49 KB total sent
127.14 KB total received
1 ports: 80
19 contacted IP addresses
0 URLs extracted
0 files downloaded
0 malicious hosts detected

DNS

34 DNS requests for 23 domains
1 nameserver contacted
15 total requests returned errors

HTTP/S

37 URLs contacted, 18 servers
45 sessions, 84.31 KB sent, 76.18 KB received
Function Logfile
Exit-Icon

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting "security.fileuri.strict_origin_policy".


    
Before

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting "security.fileuri.strict_origin_policy".


    
After

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting "security.fileuri.strict_origin_policy".


    
Screenshot
Expand-Icon
Exit-Icon
icon_left
icon_left
image