Summary | ZeroBOX

summit_1208.js

Category Machine Started Completed
FILE s1_win7_x6402 Dec. 9, 2022, 10:53 a.m. Dec. 9, 2022, 10:55 a.m.
Size 15.0MB
Type ASCII text, with very long lines, with no line terminators
MD5 5b411c2264642af22f27b1ab93fe55a8
SHA256 78f5031111f1a7f0e5858ce34b50d7831299e863bf46522be3c468c5fa025940
CRC32 10CFD695
ssdeep 49152:cmI8svSdeQLgTJ1Pk6dgpTcuYFyJm8V9axviQs:L
Yara None matched

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
164.124.101.2 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

count 496 name heapspray process wscript.exe total_mb 60 length 126976 protection PAGE_READWRITE
count 234 name heapspray process wscript.exe total_mb 58 length 262144 protection PAGE_READWRITE
count 331 name heapspray process wscript.exe total_mb 81 length 258048 protection PAGE_READWRITE
count 6306 name heapspray process wscript.exe total_mb 123 length 20480 protection PAGE_READWRITE