top title background image
flash

http://www.springdwnld2.com:80/advplatform/4/ae/IES.zip

Status: finished
Submission Time: 2020-05-24 19:27:27 +02:00
Clean

Comments

Tags

Details

  • Analysis ID:
    232670
  • API (Web) ID:
    361581
  • Analysis Started:
    2020-05-24 19:27:28 +02:00
  • Analysis Finished:
    2020-05-24 19:31:48 +02:00
  • Technologies:

Joe Sandbox

Engine Download Report Detection Info
clean
Score: 3
System: Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01

IPs

IP Country Detection
100.26.30.196
United States

Domains

Name IP Detection
www.springdwnld2.com
100.26.30.196

URLs

Name Detection
http://www.springdwnld2.com/advplatform/4/ae/IES.zip
http://legal.__domain__/Home/ContactUs?source=ae
http://legal.__domain__/home/terms
Click to see the 6 hidden entries
http://legal.__domain__?source=ae
http://legal.__domain__
http://legal.__domain__/Home/ContactUs
http://legal.__domain__/Home/Terms?source=ae
http://legal.__domain__/home/privacy
http://legal.__domain__/home/privacy?source=ae

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{55CCC0DC-9E2F-11EA-AADD-C25F135D3C65}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{55CCC0DE-9E2F-11EA-AADD-C25F135D3C65}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\KSU5XQMC\IES[1].zip
Zip archive data, at least v2.0 to extract
#
Click to see the 11 hidden entries
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\IES.zip.s7y0kaf.partial
Zip archive data, at least v2.0 to extract
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\IES.zip.s7y0kaf.partial:Zone.Identifier
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VINVDFP6\IES.zip:Zone.Identifier
very short file (no magic)
#
C:\Users\user\AppData\Local\Temp\JavaDeployReg.log
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\eoi2atrv.0zq\unarchiver.log
ASCII text, with CRLF line terminators
#
C:\Users\user\AppData\Local\Temp\sdizodfv.1iq\IESae\ie.png
PNG image data, 23 x 25, 8-bit/color RGBA, non-interlaced
#
C:\Users\user\AppData\Local\Temp\sdizodfv.1iq\IESae\index.html
HTML document, ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Temp\sdizodfv.1iq\IESae\script.js
ASCII text
#
C:\Users\user\AppData\Local\Temp\sdizodfv.1iq\IESae\styles.css
ASCII text
#
C:\Users\user\AppData\Local\Temp\~DFD38A255D18DDC91C.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DFFD5CFD9F14D3BDAF.TMP
data
#