Overview
overview
10Static
static
10CodeSpark/...rk.exe
windows7-x64
10CodeSpark/...rk.exe
windows10-2004-x64
10CodeSpark/...DME.js
windows7-x64
3CodeSpark/...DME.js
windows10-2004-x64
3CodeSpark/...ten.js
windows7-x64
3CodeSpark/...ten.js
windows10-2004-x64
3CodeSpark/...DME.js
windows7-x64
3CodeSpark/...DME.js
windows10-2004-x64
3CodeSpark/...dex.js
windows7-x64
3CodeSpark/...dex.js
windows10-2004-x64
3CodeSpark/...ams.js
windows7-x64
3CodeSpark/...ams.js
windows10-2004-x64
3CodeSpark/...DME.js
windows7-x64
3CodeSpark/...DME.js
windows10-2004-x64
3CodeSpark/...its.js
windows7-x64
3CodeSpark/...its.js
windows10-2004-x64
3CodeSpark/...ser.js
windows7-x64
3CodeSpark/...ser.js
windows10-2004-x64
3CodeSpark/...DME.js
windows7-x64
3CodeSpark/...DME.js
windows10-2004-x64
3CodeSpark/...min.js
windows7-x64
3CodeSpark/...min.js
windows10-2004-x64
3CodeSpark/...DME.js
windows7-x64
3CodeSpark/...DME.js
windows10-2004-x64
3CodeSpark/...dex.js
windows7-x64
3CodeSpark/...dex.js
windows10-2004-x64
3CodeSpark/...DME.js
windows7-x64
3CodeSpark/...DME.js
windows10-2004-x64
3CodeSpark/...dex.js
windows7-x64
3CodeSpark/...dex.js
windows10-2004-x64
3CodeSpark/...DME.js
windows7-x64
3CodeSpark/...DME.js
windows10-2004-x64
3Analysis
-
max time kernel
138s -
max time network
158s -
platform
windows10-2004_x64 -
resource
win10v2004-20240226-en -
resource tags
arch:x64arch:x86image:win10v2004-20240226-enlocale:en-usos:windows10-2004-x64system -
submitted
30-06-2024 16:13
Behavioral task
behavioral1
Sample
CodeSpark/CodeSpark.exe
Resource
win7-20240611-en
Behavioral task
behavioral2
Sample
CodeSpark/CodeSpark.exe
Resource
win10v2004-20240508-en
Behavioral task
behavioral3
Sample
CodeSpark/Monaco/fileaccess/node_modules/array-flatten/README.js
Resource
win7-20240508-en
Behavioral task
behavioral4
Sample
CodeSpark/Monaco/fileaccess/node_modules/array-flatten/README.js
Resource
win10v2004-20240508-en
Behavioral task
behavioral5
Sample
CodeSpark/Monaco/fileaccess/node_modules/array-flatten/array-flatten.js
Resource
win7-20240221-en
Behavioral task
behavioral6
Sample
CodeSpark/Monaco/fileaccess/node_modules/array-flatten/array-flatten.js
Resource
win10v2004-20240508-en
Behavioral task
behavioral7
Sample
CodeSpark/Monaco/fileaccess/node_modules/body-parser/README.js
Resource
win7-20240611-en
Behavioral task
behavioral8
Sample
CodeSpark/Monaco/fileaccess/node_modules/body-parser/README.js
Resource
win10v2004-20240508-en
Behavioral task
behavioral9
Sample
CodeSpark/Monaco/fileaccess/node_modules/iconv-lite/lib/index.js
Resource
win7-20240508-en
Behavioral task
behavioral10
Sample
CodeSpark/Monaco/fileaccess/node_modules/iconv-lite/lib/index.js
Resource
win10v2004-20240611-en
Behavioral task
behavioral11
Sample
CodeSpark/Monaco/fileaccess/node_modules/iconv-lite/lib/streams.js
Resource
win7-20240221-en
Behavioral task
behavioral12
Sample
CodeSpark/Monaco/fileaccess/node_modules/iconv-lite/lib/streams.js
Resource
win10v2004-20240611-en
Behavioral task
behavioral13
Sample
CodeSpark/Monaco/fileaccess/node_modules/inherits/README.js
Resource
win7-20240419-en
Behavioral task
behavioral14
Sample
CodeSpark/Monaco/fileaccess/node_modules/inherits/README.js
Resource
win10v2004-20240611-en
Behavioral task
behavioral15
Sample
CodeSpark/Monaco/fileaccess/node_modules/inherits/inherits.js
Resource
win7-20231129-en
Behavioral task
behavioral16
Sample
CodeSpark/Monaco/fileaccess/node_modules/inherits/inherits.js
Resource
win10v2004-20240508-en
Behavioral task
behavioral17
Sample
CodeSpark/Monaco/fileaccess/node_modules/inherits/inherits_browser.js
Resource
win7-20240220-en
Behavioral task
behavioral18
Sample
CodeSpark/Monaco/fileaccess/node_modules/inherits/inherits_browser.js
Resource
win10v2004-20240508-en
Behavioral task
behavioral19
Sample
CodeSpark/Monaco/fileaccess/node_modules/ipaddr.js/README.js
Resource
win7-20240611-en
Behavioral task
behavioral20
Sample
CodeSpark/Monaco/fileaccess/node_modules/ipaddr.js/README.js
Resource
win10v2004-20240508-en
Behavioral task
behavioral21
Sample
CodeSpark/Monaco/fileaccess/node_modules/ipaddr.js/ipaddr.min.js
Resource
win7-20240508-en
Behavioral task
behavioral22
Sample
CodeSpark/Monaco/fileaccess/node_modules/ipaddr.js/ipaddr.min.js
Resource
win10v2004-20240226-en
Behavioral task
behavioral23
Sample
CodeSpark/Monaco/fileaccess/node_modules/media-typer/README.js
Resource
win7-20240221-en
Behavioral task
behavioral24
Sample
CodeSpark/Monaco/fileaccess/node_modules/media-typer/README.js
Resource
win10v2004-20240508-en
Behavioral task
behavioral25
Sample
CodeSpark/Monaco/fileaccess/node_modules/media-typer/index.js
Resource
win7-20240221-en
Behavioral task
behavioral26
Sample
CodeSpark/Monaco/fileaccess/node_modules/media-typer/index.js
Resource
win10v2004-20240611-en
Behavioral task
behavioral27
Sample
CodeSpark/Monaco/fileaccess/node_modules/merge-descriptors/README.js
Resource
win7-20240419-en
Behavioral task
behavioral28
Sample
CodeSpark/Monaco/fileaccess/node_modules/merge-descriptors/README.js
Resource
win10v2004-20240508-en
Behavioral task
behavioral29
Sample
CodeSpark/Monaco/fileaccess/node_modules/merge-descriptors/index.js
Resource
win7-20240611-en
Behavioral task
behavioral30
Sample
CodeSpark/Monaco/fileaccess/node_modules/merge-descriptors/index.js
Resource
win10v2004-20240508-en
Behavioral task
behavioral31
Sample
CodeSpark/Monaco/fileaccess/node_modules/methods/README.js
Resource
win7-20240611-en
Behavioral task
behavioral32
Sample
CodeSpark/Monaco/fileaccess/node_modules/methods/README.js
Resource
win10v2004-20240611-en
General
-
Target
CodeSpark/Monaco/fileaccess/node_modules/ipaddr.js/ipaddr.min.js
-
Size
9KB
-
MD5
25cbb7a40252e3e2004437b72e1eaee5
-
SHA1
9abb27f31a6af75d8fedc6b97a0ffadc87238ce6
-
SHA256
ab95215c182a1bea49617080dc12e52e3e80521894c37ce0478b69326c151440
-
SHA512
3e309d7b0d16ab26dd9d68628b57e5d77a462ad044644b2fb3b63bf095bb68d5851d97a6336e7bc31550c64b67577bbca94ea2fea70ea9654f9de50bfa80ac5b
-
SSDEEP
192:sr++pWF8arWiasLV17s5W/KG1xZQ19asIBdh9yNyuEuSyj+CShTJ9W:srppWF8arasLV17s5W/ZxZQ10sIBdh9k
Malware Config
Signatures
-
Command and Scripting Interpreter: JavaScript 1 TTPs
Processes
-
C:\Windows\system32\wscript.exewscript.exe C:\Users\Admin\AppData\Local\Temp\CodeSpark\Monaco\fileaccess\node_modules\ipaddr.js\ipaddr.min.js1⤵
-
C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe"C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=utility --utility-sub-type=asset_store.mojom.AssetStoreService --lang=en-US --service-sandbox-type=asset_store_service --no-appcompat-clear --mojo-platform-channel-handle=1412 --field-trial-handle=2276,i,5697607538120380977,9987005253899555344,262144 --variations-seed-version /prefetch:81⤵