Windows Analysis Report


General Information

Sample URL:
Analysis ID: 514100

Most interesting Screenshot:


Score: 1
Range: 0 - 100
Whitelisted: false
Confidence: 80%


HTML body contains low number of good links
Connects to several IPs in different countries
No HTML title found



HTML body contains low number of good links
Source: HTTP Parser: Number of links: 0
Source: HTTP Parser: Number of links: 0
No HTML title found
Source: HTTP Parser: HTML title missing
Source: HTTP Parser: HTML title missing
Source: HTTP Parser: No <meta name="author".. found
Source: HTTP Parser: No <meta name="author".. found
Source: HTTP Parser: No <meta name="copyright".. found
Source: HTTP Parser: No <meta name="copyright".. found
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Directory created: C:\Program Files\Google\Chrome\Application\Dictionaries Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Directory created: C:\Program Files\Google\Chrome\Application\Dictionaries\en-US-9-0.bdic Jump to behavior
Source: unknown HTTPS traffic detected: -> version: TLS 1.2
Connects to several IPs in different countries
Source: unknown Network traffic detected: IP country count 13
Source: unknown DNS traffic detected: queries for:
Source: angular.js.1.dr String found in binary or memory:
Source: angular.js.1.dr String found in binary or memory:
Source: pnacl_public_x86_64_pnacl_sz_nexe.1.dr String found in binary or memory:
Source: mirroring_hangouts.js.1.dr String found in binary or memory:
Source: mirroring_hangouts.js.1.dr String found in binary or memory:
Source: mirroring_hangouts.js.1.dr String found in binary or memory:
Source: mirroring_hangouts.js.1.dr String found in binary or memory:
Source: manifest.json.1.dr, 7629fe09-8f4f-4857-a76e-7f840ed793fc.tmp.2.dr, 7a4d6bfd-86bb-4151-ada6-fdd982ecb833.tmp.2.dr, f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: craw_window.js.1.dr String found in binary or memory:
Source: f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: manifest.json.1.dr, 7629fe09-8f4f-4857-a76e-7f840ed793fc.tmp.2.dr, 7a4d6bfd-86bb-4151-ada6-fdd982ecb833.tmp.2.dr, f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: mirroring_common.js.1.dr String found in binary or memory:
Source: mirroring_common.js.1.dr String found in binary or memory:
Source: pnacl_public_x86_64_libcrt_platform_a.1.dr String found in binary or memory:
Source: pnacl_public_x86_64_libcrt_platform_a.1.dr String found in binary or memory:
Source: 7629fe09-8f4f-4857-a76e-7f840ed793fc.tmp.2.dr, 7a4d6bfd-86bb-4151-ada6-fdd982ecb833.tmp.2.dr, f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: mirroring_hangouts.js.1.dr String found in binary or memory:
Source: manifest.json0.1.dr, manifest.json1.1.dr String found in binary or memory:
Source: 7629fe09-8f4f-4857-a76e-7f840ed793fc.tmp.2.dr, 7a4d6bfd-86bb-4151-ada6-fdd982ecb833.tmp.2.dr, f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: mirroring_hangouts.js.1.dr String found in binary or memory:
Source: f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: pnacl_public_x86_64_ld_nexe.1.dr String found in binary or memory:
Source: pnacl_public_x86_64_ld_nexe.1.dr String found in binary or memory:
Source: f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: manifest.json.1.dr String found in binary or memory:
Source: common.js.1.dr, mirroring_cast_streaming.js.1.dr String found in binary or memory:
Source: mirroring_hangouts.js.1.dr String found in binary or memory:
Source: 6bc793fe-8b45-4e39-8be7-c1b73ab9686d.tmp.2.dr, 91adff0b-dae8-46e3-b259-1408c3267668.tmp.2.dr, 81845bdb-4489-46cb-8745-1eb6b4d95f84.tmp.2.dr, 7629fe09-8f4f-4857-a76e-7f840ed793fc.tmp.2.dr, 7a4d6bfd-86bb-4151-ada6-fdd982ecb833.tmp.2.dr, f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: mirroring_common.js.1.dr String found in binary or memory:
Source: manifest.json.1.dr String found in binary or memory:
Source: 7629fe09-8f4f-4857-a76e-7f840ed793fc.tmp.2.dr, 7a4d6bfd-86bb-4151-ada6-fdd982ecb833.tmp.2.dr, f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: manifest.json.1.dr String found in binary or memory:;
Source: 7629fe09-8f4f-4857-a76e-7f840ed793fc.tmp.2.dr, 7a4d6bfd-86bb-4151-ada6-fdd982ecb833.tmp.2.dr, f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: manifest.json.1.dr String found in binary or memory:;
Source: angular.js.1.dr String found in binary or memory:
Source: craw_background.js.1.dr, craw_window.js.1.dr String found in binary or memory:
Source: mirroring_hangouts.js.1.dr String found in binary or memory:
Source: f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: mirroring_hangouts.js.1.dr String found in binary or memory:
Source: manifest.json.1.dr String found in binary or memory:
Source: mirroring_hangouts.js.1.dr String found in binary or memory:
Source: mirroring_common.js.1.dr String found in binary or memory:
Source: mirroring_hangouts.js.1.dr String found in binary or memory:
Source: mirroring_common.js.1.dr String found in binary or memory:
Source: 7629fe09-8f4f-4857-a76e-7f840ed793fc.tmp.2.dr, 7a4d6bfd-86bb-4151-ada6-fdd982ecb833.tmp.2.dr, f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: manifest.json0.1.dr, craw_window.js.1.dr String found in binary or memory:
Source: mirroring_hangouts.js.1.dr String found in binary or memory:
Source: mirroring_hangouts.js.1.dr String found in binary or memory:
Source: f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: manifest.json0.1.dr, craw_window.js.1.dr String found in binary or memory:
Source: History Provider Cache.1.dr String found in binary or memory:
Source: 7629fe09-8f4f-4857-a76e-7f840ed793fc.tmp.2.dr, 7a4d6bfd-86bb-4151-ada6-fdd982ecb833.tmp.2.dr, f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: messages.json27.1.dr, feedback.html.1.dr String found in binary or memory:
Source: messages.json27.1.dr, feedback.html.1.dr String found in binary or memory:
Source: craw_background.js.1.dr, craw_window.js.1.dr String found in binary or memory:
Source: f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: manifest.json.1.dr, 7629fe09-8f4f-4857-a76e-7f840ed793fc.tmp.2.dr, 7a4d6bfd-86bb-4151-ada6-fdd982ecb833.tmp.2.dr, f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: manifest.json0.1.dr String found in binary or memory:
Source: craw_window.js.1.dr String found in binary or memory:
Source: craw_window.js.1.dr String found in binary or memory:
Source: craw_window.js.1.dr String found in binary or memory:
Source: craw_window.js.1.dr String found in binary or memory:
Source: craw_background.js.1.dr String found in binary or memory:
Source: mirroring_hangouts.js.1.dr String found in binary or memory:
Source: feedback_script.js.1.dr String found in binary or memory:
Source: manifest.json.1.dr String found in binary or memory:;
Source: f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: craw_background.js.1.dr, 7629fe09-8f4f-4857-a76e-7f840ed793fc.tmp.2.dr, 7a4d6bfd-86bb-4151-ada6-fdd982ecb833.tmp.2.dr, f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, craw_window.js.1.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: manifest.json0.1.dr String found in binary or memory:
Source: manifest.json.1.dr String found in binary or memory:
Source: manifest.json.1.dr String found in binary or memory:
Source: manifest.json0.1.dr String found in binary or memory:
Source: manifest.json0.1.dr String found in binary or memory:
Source: manifest.json.1.dr String found in binary or memory:
Source: manifest.json.1.dr String found in binary or memory:
Source: manifest.json.1.dr String found in binary or memory:
Source: manifest.json.1.dr String found in binary or memory:
Source: manifest.json.1.dr String found in binary or memory:
Source: manifest.json0.1.dr String found in binary or memory:
Source: manifest.json0.1.dr String found in binary or memory:
Source: manifest.json.1.dr String found in binary or memory:
Source: mirroring_common.js.1.dr String found in binary or memory:
Source: mirroring_common.js.1.dr String found in binary or memory:
Source: f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: 7629fe09-8f4f-4857-a76e-7f840ed793fc.tmp.2.dr, 7a4d6bfd-86bb-4151-ada6-fdd982ecb833.tmp.2.dr, f52db802-6859-45b7-8928-df25f066b2bd.tmp.2.dr, f2ceeec2-35ec-46a5-9257-6fb7597513a9.tmp.2.dr String found in binary or memory:
Source: common.js.1.dr String found in binary or memory:
Source: manifest.json.1.dr String found in binary or memory:;
Source: History Provider Cache.1.dr String found in binary or memory:
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user~1\AppData\Local\Temp\e2524fb5-dae4-4dc3-89db-84c45e773e98.tmp Jump to behavior
Source: classification engine Classification label:
Source: unknown Process created: C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --enable-automation "
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1536,1080383137737942703,10415530265892783596,131072 --lang=en-US --service-sandbox-type=network --enable-audio-service-sandbox --mojo-platform-channel-handle=1920 /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --field-trial-handle=1536,1080383137737942703,10415530265892783596,131072 --lang=en-US --service-sandbox-type=network --enable-audio-service-sandbox --mojo-platform-channel-handle=1920 /prefetch:8 Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Process created: unknown unknown Jump to behavior
Source: Joe Sandbox Cloud Basic: Detection: clean Score: 0 Perma Link
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Program Files\Google\Chrome\Application\Dictionaries Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe File created: C:\Users\user\AppData\Local\Google\Chrome\User Data\BrowserMetrics\BrowserMetrics-618204C3-984.pma Jump to behavior
Source: Window Recorder Window detected: More than 3 window changes detected
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Directory created: C:\Program Files\Google\Chrome\Application\Dictionaries Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exe Directory created: C:\Program Files\Google\Chrome\Application\Dictionaries\en-US-9-0.bdic Jump to behavior
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs