2020-01-11 08:43:46,173 [cuckoo.core.scheduler] DEBUG: Processing task #16 2020-01-11 08:43:46,181 [cuckoo.core.scheduler] INFO: Starting analysis of FILE "trex2.png" (task #16, options "procmemdump=yes,route=none") 2020-01-11 08:43:46,212 [cuckoo.core.scheduler] INFO: Task #16: acquired machine Windows7-Cuckoo (label=Windows7-Cuckoo) 2020-01-11 08:43:46,213 [cuckoo.core.resultserver] DEBUG: Now tracking machine 192.168.56.101 for task #16 2020-01-11 08:43:46,213 [cuckoo.core.plugins] DEBUG: Started auxiliary module: Replay 2020-01-11 08:43:46,221 [cuckoo.auxiliary.sniffer] INFO: Started sniffer with PID 11237 (interface=vboxnet0, host=192.168.56.101) 2020-01-11 08:43:46,222 [cuckoo.core.plugins] DEBUG: Started auxiliary module: Sniffer 2020-01-11 08:43:46,242 [cuckoo.machinery.virtualbox] DEBUG: Starting vm Windows7-Cuckoo 2020-01-11 08:43:46,357 [cuckoo.machinery.virtualbox] DEBUG: Restoring virtual machine Windows7-Cuckoo to its current snapshot 2020-01-11 08:43:49,663 [cuckoo.core.guest] INFO: Starting analysis #16 on guest (id=Windows7-Cuckoo, ip=192.168.56.101) 2020-01-11 08:43:50,665 [cuckoo.core.guest] DEBUG: Windows7-Cuckoo: not ready yet 2020-01-11 08:43:51,669 [cuckoo.core.guest] DEBUG: Windows7-Cuckoo: not ready yet 2020-01-11 08:43:52,673 [cuckoo.core.guest] DEBUG: Windows7-Cuckoo: not ready yet 2020-01-11 08:43:52,718 [cuckoo.core.guest] DEBUG: Windows7-Cuckoo: not ready yet 2020-01-11 08:43:58,569 [cuckoo.core.guest] INFO: Guest is running Cuckoo Agent 0.10 (id=Windows7-Cuckoo, ip=192.168.56.101) 2020-01-11 08:44:07,908 [cuckoo.core.guest] DEBUG: Uploading analyzer to guest (id=Windows7-Cuckoo, ip=192.168.56.101, monitor=latest, size=3884763) 2020-01-11 08:44:26,378 [cuckoo.core.resultserver] DEBUG: Task #16: live log analysis.log initialized. 2020-01-11 08:44:31,194 [cuckoo.core.resultserver] DEBUG: Task #16: File upload for 'shots/0001.jpg' 2020-01-11 08:44:31,208 [cuckoo.core.resultserver] DEBUG: Task #16 uploaded file length: 52729 2020-01-11 08:44:33,513 [cuckoo.core.resultserver] DEBUG: Task #16: File upload for 'shots/0002.jpg' 2020-01-11 08:44:33,527 [cuckoo.core.resultserver] DEBUG: Task #16 uploaded file length: 46904 2020-01-11 08:44:36,743 [cuckoo.core.resultserver] DEBUG: Task #16: File upload for 'shots/0003.jpg' 2020-01-11 08:44:36,854 [cuckoo.core.resultserver] DEBUG: Task #16 uploaded file length: 52590 2020-01-11 08:44:41,843 [cuckoo.core.resultserver] DEBUG: Task #16 had connection reset for 2020-01-11 08:44:47,336 [cuckoo.core.guest] INFO: Windows7-Cuckoo: analysis completed successfully 2020-01-11 08:44:47,352 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Replay 2020-01-11 08:44:47,426 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Sniffer 2020-01-11 08:44:47,427 [cuckoo.machinery.virtualbox] DEBUG: Stopping vm Windows7-Cuckoo 2020-01-11 08:44:48,722 [cuckoo.core.resultserver] DEBUG: Stopped tracking machine 192.168.56.101 for task #16 2020-01-11 08:44:48,732 [cuckoo.core.scheduler] DEBUG: Released database task #16 2020-01-11 08:44:48,792 [cuckoo.core.plugins] DEBUG: Executed processing module "AnalysisInfo" for task #16 2020-01-11 08:44:48,794 [cuckoo.processing.behavior] WARNING: Analysis results folder does not contain any behavior log files. 2020-01-11 08:44:48,794 [cuckoo.core.plugins] DEBUG: Executed processing module "BehaviorAnalysis" for task #16 2020-01-11 08:44:48,794 [cuckoo.core.plugins] DEBUG: Executed processing module "Dropped" for task #16 2020-01-11 08:44:48,795 [cuckoo.core.plugins] DEBUG: Executed processing module "DroppedBuffer" for task #16 2020-01-11 08:44:48,796 [cuckoo.core.plugins] DEBUG: Executed processing module "MetaInfo" for task #16 2020-01-11 08:44:48,796 [cuckoo.core.plugins] DEBUG: Executed processing module "ProcessMemory" for task #16 2020-01-11 08:44:48,797 [cuckoo.core.plugins] DEBUG: Executed processing module "Procmon" for task #16 2020-01-11 08:44:48,823 [cuckoo.core.plugins] DEBUG: Executed processing module "Screenshots" for task #16 2020-01-11 08:44:48,824 [cuckoo.core.plugins] DEBUG: Executed processing module "Static" for task #16 2020-01-11 08:44:48,825 [cuckoo.core.plugins] DEBUG: Executed processing module "Strings" for task #16 2020-01-11 08:44:48,827 [cuckoo.core.plugins] DEBUG: Executed processing module "TargetInfo" for task #16 2020-01-11 08:44:48,907 [cuckoo.core.plugins] DEBUG: Executed processing module "NetworkAnalysis" for task #16 2020-01-11 08:44:48,907 [cuckoo.core.plugins] DEBUG: Executed processing module "Extracted" for task #16 2020-01-11 08:44:48,908 [cuckoo.core.plugins] DEBUG: Executed processing module "TLSMasterSecrets" for task #16 2020-01-11 08:44:48,910 [cuckoo.core.plugins] DEBUG: Executed processing module "Debug" for task #16 2020-01-11 08:44:48,932 [cuckoo.core.plugins] DEBUG: Running 542 signatures 2020-01-11 08:44:49,088 [cuckoo.core.plugins] DEBUG: Executed reporting module "JsonDump" 2020-01-11 08:44:49,121 [cuckoo.core.plugins] DEBUG: Executed reporting module "MongoDB" 2020-01-11 08:44:49,122 [cuckoo.core.scheduler] INFO: Task #16: reports generation completed 2020-01-11 08:44:49,129 [cuckoo.core.scheduler] INFO: Task #16: analysis procedure completed