Summary | ZeroBOX

Corridor%20NYC%20Project%20Plan.lnk

PDF ZIP Format
Category Machine Started Completed
FILE s1_win7_x6403_us April 14, 2023, 7:39 a.m. April 14, 2023, 7:41 a.m.
Size 1.9MB
Type PDF document, version 1.7
MD5 a871fae6b1494686545ee1f783722c15
SHA256 132f46d4419dfc008a1a00f79fc62405dad8405e4233f849c92e64f22a1b9590
CRC32 A84D2866
ssdeep 49152:33bRTIAa1/EMjhKCTF7v7PLpEaWPSt6auCrCivZ3dxtjBa35gH:33bRTr3UhJTVPdTWPStruSJdxtjE35gH
Yara
  • PDF_Format_Z - PDF Format

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
164.124.101.2 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

request GET http://acroipm2.adobe.com/20/rdr/ENU/win/nooem/none/consumer/278_20_6_20042.zip
request GET http://acroipm2.adobe.com/20/rdr/ENU/win/nooem/none/consumer/280_20_6_20042.zip
request GET http://acroipm2.adobe.com/20/rdr/ENU/win/nooem/none/consumer/281_20_6_20042.zip
request GET http://acroipm2.adobe.com/20/rdr/ENU/win/nooem/none/consumer/277_20_6_20042.zip
request GET http://acroipm2.adobe.com/20/rdr/ENU/win/nooem/none/consumer/message.zip
cmdline "C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe" --backgroundcolor=16514043
parent_process acrord32.exe martian_process "C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe" --backgroundcolor=16514043