language-detector.jar
This report is generated from a file or URL submitted to this webservice on March 26th 2020 14:55:16 (UTC)
Guest System: Windows 7 64 bit, Professional, 6.1 (build 7601), Service Pack 1
Report generated by
Falcon Sandbox v8.30 © Hybrid Analysis
Indicators
Not all malicious and suspicious indicators are displayed. Get your own cloud service or the full version to view all details.
-
Informative 4
-
External Systems
-
Sample was identified as clean by Antivirus engines
- details
- 0/53 Antivirus vendors marked sample as malicious (0% detection rate)
- source
- External System
- relevance
- 10/10
-
Sample was identified as clean by Antivirus engines
-
Installation/Persistance
-
Dropped files
- details
- "17dfc292991c7c62.timestamp" has type "ASCII text with CRLF line terminators"
- source
- Binary File
- relevance
- 3/10
-
Touches files in the Windows directory
- details
-
"javaw.exe" touched file "%WINDIR%\System32\tzres.dll"
"javaw.exe" touched file "%WINDIR%\Globalization\Sorting\SortDefault.nls"
"javaw.exe" touched file "%WINDIR%\System32\en-US\kernel32.dll.mui"
"javaw.exe" touched file "%WINDIR%\System32\en-US\KernelBase.dll.mui" - source
- API Call
- relevance
- 7/10
-
Dropped files
-
Network Related
-
Found potential URL in binary/memory
- details
-
Pattern match: "http://www.apache.org/licenses/"
Pattern match: "http://www.apache.org/licenses/LICENSE-2.0"
Pattern match: "http://maven.apache.org/POM/4.0.0"
Pattern match: "https://github.com/optimaize/language-detector"
Pattern match: "http://maven.apache.org/guides/mini/guide-encryption.html"
Pattern match: "https://oss.sonatype.org/content/repositories/snapshots" - source
- File/Memory
- relevance
- 10/10
-
Found potential URL in binary/memory
File Details
language-detector.jar
- Filename
- language-detector.jar
- Size
- 4.2MiB (4361891 bytes)
- Type
- java compressed jar
- Description
- Java archive data (JAR)
- Architecture
- WINDOWS
- SHA256
- b88a9860a05bf9fc34156a2ccdb6442e4d3a6c7fc6f7cb8f91e2cf150b9bf25b
- MD5
- ab06a2aea446587c0ab1863c59dab8a1
- SHA1
- 76a6ee4d5ef0b015f8b43bd58c5e8bfc8a28a12d
- ssdeep
- 49152:0CcKh9SI9acZ96IhTKVaOcXtMYDsZPDvveF8AkL/amwCdYMZ1y6xSYWn/IWfs53Z:3CdYMZ
Classification (TrID)
- 53.0% (.SPE) SPSS Extension
- 25.6% (.JAR) Java Archive
- 12.3% (.MAFF) Mozilla Archive Format (gen)
- 7.0% (.ZIP) ZIP compressed archive
- 1.7% (.BIN) PrintFox/Pagefox bitmap (var. P)
Screenshots
Loading content, please wait...
Hybrid Analysis
Tip: Click an analysed process below to view more details.
Analysed 1 process in total.
- javaw.exe -jar "C:\language-detector.jar" (PID: 3360)
Network Analysis
DNS Requests
No relevant DNS requests were made.
Contacted Hosts
No relevant hosts were contacted.
HTTP Traffic
No relevant HTTP requests were made.
Extracted Strings
Extracted Files
-
Informative 1
-
-
17dfc292991c7c62.timestamp
- Size
- 51B (51 bytes)
- Type
- text
- Description
- ASCII text, with CRLF line terminators
- Runtime Process
- javaw.exe (PID: 3360)
- MD5
- ba5bbde10b6b5236c2cdc5dbe77143c7
- SHA1
- bfef02936916b08398bd16f9959de4dbe5cb39d7
- SHA256
- 97b1ff4afc8a484b444692dedc4c1807153bb61a7c7c998136b0209c49bdd453
-