83870dd4...d947 | VMRay Analyzer Report
Try VMRay Analyzer
VTI SCORE: 90/100
Dynamic Analysis Report
Classification: Riskware, Wiper, Trojan, Ransomware

83870dd4c1c44775e9c3aa5d5bd4abce782cb07f3454de4a82bf24f26381d947 (SHA256)

WscParent.exe

Windows Exe (x86-32)

Created at 2018-10-03 03:10:00

Notifications (2/2)

Some extracted files may be missing in the report since the total file extraction size limit was reached during the analysis. You can increase the limit in the configuration settings.

The operating system was rebooted during the analysis.

Top Threat Indicators (View all 50 threat indicators)

Screenshots

Monitored Processes

Analysis Information

Creation Time 2018-10-03 05:10 (UTC+2)
Analysis Duration 00:05:35
Number of Monitored Processes 5
Execution Successful True
Reputation Enabled True
WHOIS Enabled True
YARA Enabled True
Termination Reason Timeout
Tags

Sample Information

ID #229242
MD5 a51357c529b915b24d18105d30c9dd91 Copy to Clipboard
SHA1 77ab5f79590793bce0d3901b4a39ffccdec0e391 Copy to Clipboard
SHA256 83870dd4c1c44775e9c3aa5d5bd4abce782cb07f3454de4a82bf24f26381d947 Copy to Clipboard
SSDeep 3072:FiGqGhFIcZLkdFoB6CPYqivJUBe9hxWK+:NIMAsbLqJUBe9s Copy to Clipboard
ImpHash 6d14d3b3795c5bed30dff0aef2cb62cb Copy to Clipboard
Filename WscParent.exe
File Size 272.00 KB
File Type Windows Exe (x86-32)

Analyzer Information

Dynamic Analyzer Build Date 2018-07-24 20:08 (UTC+2)
Dynamic Analyzer Version 2.4.0
Static Analyzer Version 1.0.0
VTI Ruleset Version 3.0
YARA Built-in Ruleset Version 1.0
Analysis Report Layout Version 3
Function Logfile
Exit-Icon

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting "security.fileuri.strict_origin_policy".


    
Before

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting "security.fileuri.strict_origin_policy".


    
After

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting "security.fileuri.strict_origin_policy".


    
Screenshot
Expand-Icon
Exit-Icon
icon_left
icon_left
image