Recommended action: Do not release this file without IT/security review.
Why this verdict: Strong malicious indicators were present, such as detection hits, direct malicious signatures, persistence behavior, malware config extraction, or concerning network activity.
Important: This report should not say a file is absolutely safe. A better phrase is: no obvious malicious behavior was observed in this sandbox run.
VirusTotal: Unavailable/error from CAPE: Unable to complete connection to VirusTotal. Status code: 429
Manual lookup: Open SHA256 in VirusTotal
This report only uses VirusTotal detection counts if they are present in the CAPE JSON. A link alone is not the same as a local detection result.
| File name | Credit_Memo-Alenke_.html |
|---|---|
| File type | JavaScript source, Unicode text, UTF-8 text, with very long lines (502) |
| Size | 682111 |
| MD5 | d5036d63efe089f6ed07fef91511b661 |
| SHA1 | cd7f93d3d2882168ec30413d36085440d5b49ae7 |
| SHA256 | ef33bc068a4275e086abe512123551c65df37a2cd264d9cbd8fdcb9aeee37214 |
| VirusTotal lookup | Open SHA256 in VirusTotal |
| Task ID | 13 |
|---|---|
| Started | 2026-06-16 12:00:53 |
| Ended | 2026-06-16 12:01:40 |
| Duration | 47 seconds |
| Package | edge |
| Route | none |
| Machine | cuckoo1 |
| CAPE score | 2.1 |
| CAPE status | |
| Digital signature | No signer data found in CAPE JSON. |
| Severity | Confidence | Signature | Meaning |
|---|---|---|---|
| 3 | 80% | binary_yara | Binary file triggered multiple YARA rules |
| 1 | 100% | suspicious_html_title | Sample contains empty HTML title |
| Observed item | Count |
|---|---|
| Executed commands / child processes | 0 |
| File writes | 0 |
| File deletes | 0 |
| Registry writes | 0 |
| Created services | 0 |
| Started services | 0 |
| CAPE payload-like items | 0 |
| CAPE extracted configs | 0 |
| Dropped/related files captured | 0 |
No CAPE payload-like items were extracted.
None observed.No network activity recorded in this report.
Generated 2026-06-16T12:02:01 from /opt/CAPEv2/storage/analyses/13/reports/report.json