Loading ...

Play interactive tourEdit tour

Analysis Report ShowDocument.aspx

Overview

General Information

Sample Name:ShowDocument.aspx
Analysis ID:286548
MD5:8755d93498564f147763146bae31a04f
SHA1:64330de504107e8149d12cf4e439916c3d22f414
SHA256:b6721683aadc4b4eba4f081f2bc6bc57adfc0e378f6d80e2bfa0b1e3e57c85c7
Errors
  • Nothing to analyse, Joe Sandbox has not found any analysis process or sample
  • Corrupt sample or wrongly selected analyzer. Details: 80040153

Detection

Score:0
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

No high impact signatures.

Classification

Malware Configuration

No configs have been found

Yara Overview

No yara matches

Sigma Overview

No Sigma rule has matched

Signature Overview

Click to jump to signature section

Show All Signature Results

There are no malicious signatures, click here to show all signatures.

Source: classification engineClassification label: unknown0.winASPX@0/0@0/0

Mitre Att&ck Matrix

No Mitre Att&ck techniques found

Antivirus, Machine Learning and Genetic Malware Detection

Initial Sample

SourceDetectionScannerLabelLink
ShowDocument.aspx0%VirustotalBrowse

Dropped Files

No Antivirus matches

Unpacked PE Files

No Antivirus matches

Domains

No Antivirus matches

URLs

No Antivirus matches

Domains and IPs

Contacted Domains

No contacted domains info

Contacted IPs

No contacted IP infos

General Information

Joe Sandbox Version:30.0.0 Red Diamond
Analysis ID:286548
Start date:16.09.2020
Start time:20:08:39
Joe Sandbox Product:CloudBasic
Overall analysis duration:0h 1m 42s
Hypervisor based Inspection enabled:false
Report type:full
Sample file name:ShowDocument.aspx
Cookbook file name:default.jbs
Analysis system description:w10x64 Windows 10 64 bit v1803 with Office Professional Plus 2016, IE 11, Adobe Reader DC 19, Java 8 Update 211
Number of analysed new started processes analysed:1
Number of new started drivers analysed:0
Number of existing processes analysed:0
Number of existing drivers analysed:0
Number of injected processes analysed:0
Technologies:
  • HCA enabled
  • EGA enabled
  • HDC enabled
  • AMSI enabled
Analysis Mode:default
Analysis stop reason:Timeout
Detection:UNKNOWN
Classification:unknown0.winASPX@0/0@0/0
Cookbook Comments:
  • Adjust boot time
  • Enable AMSI
  • Unable to launch sample, stop analysis
Warnings:
Show All
  • Exclude process from analysis (whitelisted): svchost.exe
Errors:
  • Nothing to analyse, Joe Sandbox has not found any analysis process or sample
  • Corrupt sample or wrongly selected analyzer. Details: 80040153

Simulations

Behavior and APIs

No simulations

Joe Sandbox View / Context

IPs

No context

Domains

No context

ASN

No context

JA3 Fingerprints

No context

Dropped Files

No context

Created / dropped Files

No created / dropped files found

Static File Info

General

File type:HTML document, ASCII text, with CRLF line terminators
Entropy (8bit):5.4730687150767
TrID:
    File name:ShowDocument.aspx
    File size:4741
    MD5:8755d93498564f147763146bae31a04f
    SHA1:64330de504107e8149d12cf4e439916c3d22f414
    SHA256:b6721683aadc4b4eba4f081f2bc6bc57adfc0e378f6d80e2bfa0b1e3e57c85c7
    SHA512:638522b83e23ec9cfd11f9f13a4f2037d952b19aa6b1624f8a6a2b7e2c59f13a2f3f3edbf6c16cc18c4f851d6cf0888638ee9425b0443a152f4f2c62ef01099b
    SSDEEP:96:R1ZpNT2Z6BlOMjISrSQupwLkKkjiWzXBjgyP:TZD2Z6HlIi4DLPzxjHP
    File Content Preview:..<html>..<body bgcolor="#000000">.. <form id="hWjBk" runat="server">.. <div align="left">....<table width="100%">.....<tr>.<td>.. <table width="100%" >....<tr><td>.. <%if(Ntody(Request.QueryString["parameter"])=="A2-B4-D9-34-D3-94-B5-4

    File Icon

    Icon Hash:74f0e4e4e4e4e0e4

    Network Behavior

    No network behavior found

    Code Manipulations

    Statistics

    System Behavior

    Disassembly

    Reset < >