flash

https://app.box.com/s/4c3tf7iumvvg3c3q6e7udjiq7o0yealq

Status: finished
Submission Time: 23.02.2021 17:33:17
Malicious

Comments

Tags

Details

  • Analysis ID:
    356834
  • API (Web) ID:
    615663
  • Analysis Started:
    23.02.2021 17:33:42
  • Analysis Finished:
    23.02.2021 17:39:55
  • Technologies:
Full Report Management Report IOC Report Engine Info Verdict Score Reports
New

System: Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 85, IE 11, Adobe Reader DC 19, Java 8 Update 211

malicious
56/100

malicious

IPs

IP Country Detection
185.235.236.200
Germany
104.18.22.207
United States
185.235.236.197
Germany
Click to see the 2 hidden entries
185.235.236.201
Germany
104.18.26.114
United States

Domains

Name IP Detection
api.box.com
185.235.236.197
public.boxcloud.com
185.235.236.200
codesandbox.io
104.18.22.207
Click to see the 3 hidden entries
app.box.com
185.235.236.201
dy2ln.csb.app
104.18.26.114
cdn01.boxcdn.net
0.0.0.0

URLs

Name Detection
https://dy2ln.csb.app/
https://dy2ln.csb.app/
https://dy2ln.csb.app/3tf7iumvvg3c3q6e7udjiq7o0yealq
Click to see the 56 hidden entries
https://dy2ln.csb.app/4c3tf7iumvvg3c3q6e7udjiq7o0yealq
https://dy2ln.csb.app/favicon.ico
https://dy2ln.csb.app/favicon.ico~
https://app.box.chttps://app.box.com/s/4c3tf7iumvvg3c3q6e7udjiq7o0yealq
https://dy2ln.csb.app/)
https://feross.org
https://github.com/derek-watson/jsUri
https://cdn01.boxcdn.net/fonts/1.0.2/lato/Lato-woff.css
https://support.box.com
https://cdn01.boxcdn.net/_assets/img/favicons/apple-touch-icon-114x114-busq-D.png
https://cdn01.boxcdn.net/_assets/img/favicons/manifest-rw1AEP.json
http://rock.mit-license.org
https://cdn01.boxcdn.net/_assets/img/favicons/notification-favicon-96x96-TOQ9Kg.png
https://codesandbox.io/static/js/sandbox.ba8055760.js
https://cdn01.boxcdn.net/_assets/img/favicons/notification-favicon-32x32-brwW_W.png
https://cdn01.boxcdn.net/_assets/img/favicons/apple-touch-icon-120x120-K-u4U5.png
https://cdn01.boxcdn.net/fonts/1.0.2/lato/Lato-Regular.woff)
https://cdn01.boxcdn.net/_assets/img/favicons/mstile-144x144-pllCM8.png
https://cdn01.boxcdn.net/_assets/img/favicons/favicon-32x32-VwW37b.png
http://www.box.com)
https://cdn01.boxcdn.net/_assets/img/favicons/apple-touch-icon-180x180-tV001c.png
https://app.box.com/s/4c3tf7iumvvg3c3q6e7udjiq7o0yealq
https://cdn01.boxcdn.net/_assets/img/favicons/favicon-yz-tj-.ico
https://codesandbox.io/static/js/vendors~app~embed~sandbox-startup.10f5f18b4.chunk.js
https://cdn01.boxcdn.net/_assets/img/favicons/notification-favicon-EHWWyP.ico
https://github.com/zloirock/core-js
https://cdn01.boxcdn.net/enduser/app.e93a3fd295.css
https://cdn01.boxcdn.net/fonts/1.0.2/lato/Lato-Regular.woff2)
https://cdn01.boxcdn.net/_assets/img/favicons/browserconfig-fdBReK.xml
https://cdn01.boxcdn.net/_assets/img/favicons/apple-touch-icon-57x57-fLlEpj.png
https://codesandbox.io/static/js/sandbox-startup.788fc841a.js
https://cdn01.boxcdn.net/fonts/1.0.2/lato/Lato-Bold.woff2)
https://codesandbox.io/static/js/vendors~sandbox.4c1b5e5ac.chunk.js
https://app.box.c3tf7iumvvg3c3q6e7udjiq7o0yealqRoot
https://cdn01.boxcdn.net/_assets/img/favicons/apple-touch-icon-144x144-va9pYs.png
https://cdn01.boxcdn.net/_assets/img/favicons/apple-touch-icon-76x76-ZVGnRV.png
https://codesandbox.io/static/js/default~app~embed~sandbox.cc6bf977b.chunk.js
https://codesandbox.io/static/browserfs12/browserfs.min.js
https://cdn01.boxcdn.net/_assets/img/favicons/notification-favicon-16x16-Ou5N87.png
https://codesandbox.io/static/js/common-sandbox.71780db40.chunk.js
https://codesandbox.io/static/js/vendors~app~codemirror-editor~monaco-editor~sandbox.e68dd7bee.chunk
https://app.box.com/s/4c3tf7iumvvg3c3q6e7udjiq7o0yealq
https://app.box.com/s/4c3tf7iumvvg3c3q6e7udjiq7o0yealqRoot
https://cdn01.boxcdn.net/_assets/img/favicons/android-chrome-192x192-96i97M.png
http://jedwatson.github.io/classnames
https://cdn01.boxcdn.net/_assets/img/favicons/safari-pinned-tab-jyt2W4.svg
https://app.box.com/s/4c3tf7iumvvg3c3q6e7udjiq7o0yealqRGuardian
https://cdn01.boxcdn.net/_assets/img/favicons/favicon-96x96-XU7UE1.png
https://cdn01.boxcdn.net/_assets/img/favicons/apple-touch-icon-152x152-r5tWgh.png
https://cdn01.boxcdn.net/_assets/img/favicons/apple-touch-icon-60x60-Uv0qzu.png
https://cdn01.boxcdn.net/_assets/img/favicons/apple-touch-icon-72x72-7aVqne.png
https://cdn01.boxcdn.net/_assets/img/favicons/favicon-16x16-_kQSW4.png
https://app.box.cRoot
https://cdn01.boxcdn.net/fonts/1.0.2/lato/Lato-Bold.woff)
https://codesandbox.io/static/js/vendors~app~sandbox.b5f1eee3a.chunk.js
http://blog.stevenlevithan.com/archives/parseuri

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\IUHEMSR9\dy2ln.csb[1].xml
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\DOMStore\T8DRMTJ1\app.box[1].xml
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{70671297-7640-11EB-90E6-ECF4BB82F7E0}.dat
Microsoft Word Document
#
Click to see the 60 hidden entries
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{70671299-7640-11EB-90E6-ECF4BB82F7E0}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{76EEC4C1-7640-11EB-90E6-ECF4BB82F7E0}.dat
Microsoft Word Document
#
C:\Users\user\AppData\Local\Microsoft\Internet Explorer\imagestore\po60zt0\imagestore.dat
data
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0MX4YUS9\favicon-32x32-VwW37b[1].png
PNG image data, 32 x 32, 8-bit colormap, non-interlaced
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0MX4YUS9\favicon[1].ico
MS Windows icon resource - 3 icons, 48x48, 32 bits/pixel, 32x32, 32 bits/pixel
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0MX4YUS9\messagecenter~preview-components~uploads-manager-enduser.a1ab85c9dd[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0MX4YUS9\pdf.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0MX4YUS9\pdf_viewer.min[1].css
assembler source, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0MX4YUS9\pdf_viewer.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0MX4YUS9\preview-components~shared-file.058e604af1[1].css
ASCII text, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0MX4YUS9\promise[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0MX4YUS9\shared-file.ae65917135[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0MX4YUS9\uploads-manager-enduser.140e76ab37[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\0MX4YUS9\uploads-manager-enduser.e1818dd8a3[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2K7JPOQS\Lato-Bold[1].woff
Web Open Font Format, TrueType, length 118272, version 1.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2K7JPOQS\Lato-Regular[1].woff
Web Open Font Format, TrueType, length 119132, version 1.0
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2K7JPOQS\browserfs.min[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2K7JPOQS\content[1].jpg
[TIFF image data, big-endian, direntries=5, xresolution=74, yresolution=82, resolutionunit=1], baseline, precision 8, 723x1024, frames 3
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2K7JPOQS\content[1].pdf
PDF document, version 1.5
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2K7JPOQS\hub-details~messagecenter~uploads-manager-enduser.a7025cad8b[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2K7JPOQS\intersection-observer[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2K7JPOQS\messagecenter~preview-components~uploads-manager-enduser.3fdcd5d60c[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2K7JPOQS\preview-components.c15b965048[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\2K7JPOQS\preview-components.fa55a1d652[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\4c3tf7iumvvg3c3q6e7udjiq7o0yealq[1].htm
HTML document, ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\Lato-woff[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\app.0c21638046[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\app.e93a3fd295[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\default~app~embed~sandbox.cc6bf977b.chunk[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\exif.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\lang-en-AU~lang-en-CA~lang-en-GB~lang-en-US~lang-en-x-pseudo.57dba5f597[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\lang-en-US.ebc1f6441d[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\loading[1].gif
GIF image data, version 89a, 30 x 30
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\pdf.worker.min[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\runtime.fdaecdb86e[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\vendors~app.15f4043a47[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\vendors~app~codemirror-editor~monaco-editor~sandbox.e68dd7bee.chunk[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\vendors~app~embed~sandbox-startup.10f5f18b4.chunk[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\vendors~app~sandbox.b5f1eee3a.chunk[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\6M6D1PMD\vendors~sandbox.4c1b5e5ac.chunk[1].js
HTML document, ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VAHFWDJC\MUI8VD1X.htm
HTML document, ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VAHFWDJC\as-security~change-current-user-role-modal~collaborators~collection-detail-page~content-explorer-mod~2da256af.a0db8de5f2[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VAHFWDJC\common-sandbox.71780db40.chunk[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VAHFWDJC\content-sidebar.0ff11d4a03[1].css
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VAHFWDJC\content-sidebar.3947dacfa1[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VAHFWDJC\core.min[1].js
UTF-8 Unicode text, with very long lines, with LF, NEL line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VAHFWDJC\preview-components~shared-file.8b8bb8ddac[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VAHFWDJC\preview[1].css
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VAHFWDJC\preview[1].js
UTF-8 Unicode text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VAHFWDJC\sandbox-startup.788fc841a[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VAHFWDJC\sandbox.ba8055760[1].js
ASCII text, with very long lines
#
C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\IE\VAHFWDJC\shared-file.e033e213bd[1].js
ASCII text, with very long lines, with no line terminators
#
C:\Users\user\AppData\Local\Temp\datA757.tmp
Web Open Font Format, TrueType, length 119132, version 1.0
#
C:\Users\user\AppData\Local\Temp\datA786.tmp
Web Open Font Format (Version 2), TrueType, length 84396, version 2.983
#
C:\Users\user\AppData\Local\Temp\datC4E3.tmp
OpenType font data
#
C:\Users\user\AppData\Local\Temp\datC523.tmp
OpenType font data
#
C:\Users\user\AppData\Local\Temp\datC543.tmp
2005Cal
#
C:\Users\user\AppData\Local\Temp\~DF06DEECED06AE8102.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DF494EE8F4D493C88D.TMP
data
#
C:\Users\user\AppData\Local\Temp\~DF7291DDFAB2583D8F.TMP
data
#