Try VMRay Platform
Malicious
Classifications

Injector Spyware

Threat Names

Trojan.Agent.FNJS Generic.Exploit.Shellcode.RDI.1.83306058 Gen:Variant.Cerbu.64651

Dynamic Analysis Report

Created on 2021-09-27T18:00:00

c3b12369d950f2420697e8b05b80a29a0cea58fd7d858d7a622611291d3496f5.exe

Windows Exe (x86-32)

Remarks (2/2)

(0x0200000E): The overall sleep time of all monitored processes was truncated from "5 hours, 35 minutes, 35 seconds" to "28 seconds" to reveal dormant functionality.

(0x02000010): The operating system was rebooted during the analysis.

General

38.75 KB total sent
1.32 MB total received
3 ports: 80 , 449 , 443
6 contacted IP addresses
0 URLs extracted
0 files downloaded
0 malicious hosts detected

DNS

6 DNS requests for 6 domains
1 nameserver contacted
2 total requests returned errors

HTTP/S

23 URLs contacted, 5 servers
14 sessions, 38.75 KB sent, 1.32 MB received
Function Logfile
Exit-Icon

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting "security.fileuri.strict_origin_policy".


    
Before

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting "security.fileuri.strict_origin_policy".


    
After

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting "security.fileuri.strict_origin_policy".


    
Screenshot
Expand-Icon
Exit-Icon
icon_left
icon_left
image