Summary | ZeroBOX

notice_11_jul_7701757.js

Category Machine Started Completed
FILE s1_win7_x6402 July 12, 2023, 8:02 a.m. July 12, 2023, 8:04 a.m.
Size 439.4KB
Type Little-endian UTF-16 Unicode text, with very long lines, with CRLF, CR, LF line terminators
MD5 5dc5797adb91fb7c0609d3d6a7b7184a
SHA256 aff022471daf3087b5492eb57b0c22197826ea5bd31392fe3b72cad8553c3f96
CRC32 8F028B28
ssdeep 3072:Y7iPO80tXW8UsIAAZRQlnqiKm0t0eirr1OFdo1ltXpc2pUjqTRECoNjrdH37D:x
Yara None matched

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
164.124.101.2 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Time & API Arguments Status Return Repeated

GetComputerNameW

computer_name: TEST22-PC
1 1 0
Time & API Arguments Status Return Repeated

IWbemServices_ExecMethod

inargs.CurrentDirectory: None
inargs.CommandLine: time
inargs.ProcessStartupInformation: None
outargs.ProcessId: None
outargs.ReturnValue: 9
flags: 0
method: Create
class: Win32_Process
1 0 0