File name:

Trojan.JS.Offiz.js

Full analysis: https://app.any.run/tasks/527d3d0f-9810-4683-90cb-8885831796a1
Verdict: No threats detected
Analysis date: August 22, 2019, 07:35:00
OS: Windows 7 Professional Service Pack 1 (build: 7601, 32 bit)
Indicators:
MIME: text/html
File info: HTML document, ASCII text
MD5:

B03527E252E150F48B089994F6E67B48

SHA1:

C2A8269C98CAB102E8AB15F9B0EBFB3882EEF7EB

SHA256:

8703D8EC81DDF320A7B87B2B8F7C37B232220722D4A9CDF113A86CBBB97B04C5

SSDEEP:

48:myZ5hIWCfIk5qWdyUhyhdLSyeXRQATVLTLTLTLTLTLbbAWckeKJyoCycJoCJwbGq:mkhIFf9dV0E3XRJXXXXX1ThPWEsSieKw

ANY.RUN is an interactive service which provides full access to the guest system. Information in this report could be distorted by user actions and is provided for user acknowledgement as it is. ANY.RUN does not guarantee maliciousness or safety of the content.
  • MALICIOUS

    No malicious indicators.
  • SUSPICIOUS

    No suspicious indicators.
  • INFO

    No info indicators.
Find more information about signature artifacts and mapping to MITRE ATT&CK™ MATRIX at the full report
No Malware configuration.

TRiD

.html | HyperText Markup Language (100)

EXIF

HTML

Title: You are an idiot!
No data.
screenshotscreenshotscreenshotscreenshotscreenshotscreenshot
All screenshots are available in the full report
All screenshots are available in the full report
Total processes
35
Monitored processes
1
Malicious processes
0
Suspicious processes
0

Behavior graph

Click at the process to see the details
start wscript.exe no specs

Process information

PID
CMD
Path
Indicators
Parent process
3432"C:\Windows\System32\WScript.exe" "C:\Users\admin\AppData\Local\Temp\Trojan.JS.Offiz.js"C:\Windows\System32\WScript.exeexplorer.exe
User:
admin
Company:
Microsoft Corporation
Integrity Level:
MEDIUM
Description:
Microsoft ® Windows Based Script Host
Exit code:
1
Version:
5.8.7600.16385
Modules
Images
c:\windows\system32\wscript.exe
c:\systemroot\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\kernelbase.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\sechost.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
Total events
10
Read events
10
Write events
0
Delete events
0

Modification events

No data
Executable files
0
Suspicious files
0
Text files
0
Unknown types
0

Dropped files

No data
Download PCAP, analyze network streams, HTTP content and a lot more at the full report
HTTP(S) requests
0
TCP/UDP connections
0
DNS requests
0
Threats
0

HTTP requests

No HTTP requests
Download PCAP, analyze network streams, HTTP content and a lot more at the full report

Connections

No data

DNS requests

No data

Threats

No threats detected
No debug info