Full access
Get full access to vxCube to scan suspicious files and identify threats.
0 %
- File name
- corelrepack.1
- Size
- 208.7 KB
- Format
- exe
- SHA1
- c7bcf36eb18341357b9d941492ed2b75b0f68ecc
- Analysis started
- 1663422167721.219
corelrepack.1
- Estimated result
- Clean Malware
- Threat
- Trojan.Hosts.50372
- Detected
- Tags
- Size
- 208.7 KB
- Format
- exe
- SHA1
- c7bcf36eb18341357b9d941492ed2b75b0f68ecc
- Comment
-
—
- Analysis started
- 1663422167721.219
- Use of VNC
- Sample run time
- 1 minute
- Total analysis time
- Command to run the file
- Not specified
- Sample name
- corelrepack.exe
- Connection type
- vpn://
- Monitor all processes if VNC is used
- No
- Total size limit for drops
- 64 MB
- Enable auto clicker
- No
- Сopy full raw hypervisor log
- No
- Flex sample time
- No
- Forward the specified ports from guest VM
- —
- get *.lib files and raw dumps
- No
- Maximum number of triggered breakpoints
- —
- Lifetime of processes in seconds
- —
- Start user batch script before sample
- —
- Set system date
- —
- Dump browsers modules
- Yes
- Dump memory-mapped files (only after execution)
- Yes
- Dump SSDT
- Yes
- Dump processes (only after execution)
- Yes
- Get all allocs and drops
- No
- Size of Crypto API buffers limit in Mb
- —
- Injects count limit
- —
- WriteFile buffers limit in Mb
- —
Manifest
- Package: ccc.sss
- App name: Ecok
- Version code: 825
- Version name: 13.8.88
MITRE ATT&CK Matrix
No data
Threat Identifiers
Severity
Operation
Technique Information
ID
Tactics
Platforms
Process graph
Description
-
API log
[0]
| Time | Process | Event | Arguments |
|---|
Network activity
less than 5 connections
5-10 connections
more than 10 connections
| Time | Protocol | Source | Destination | Information |
|---|
Please wait…
Report parameters
Select report format and sections to include in report.
Back
