Summary | ZeroBOX

Ndi8RJtM5xSosyq.zip

ZIP Format
Category Machine Started Completed
FILE s1_win7_x6402 March 10, 2023, 11:35 a.m. March 10, 2023, 11:39 a.m.
Size 817.3KB
Type Zip archive data, at least v2.0 to extract
MD5 542f53c1fd9de5d3423b7a8a22f6d9bf
SHA256 44c7289a2719901900af988f7cb44562cfa62da377723831a47a92c1fda68c19
CRC32 C2F5EE83
ssdeep 6144:Jk1WVsDd6uJEO6MwHp61v06+RdQ3hU9lX5JN+Y7Q5axi:Jk1csDd6eEO6nHUssQX5CwQ5ag
Yara
  • zip_file_format - ZIP file format

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
103.132.242.26 Active Moloch
104.168.155.143 Active Moloch
159.65.88.10 Active Moloch
164.124.101.2 Active Moloch
164.90.222.65 Active Moloch
167.172.199.165 Active Moloch
182.162.143.56 Active Moloch
183.111.227.137 Active Moloch
187.63.160.88 Active Moloch
66.228.32.31 Active Moloch
72.15.201.15 Active Moloch
91.121.146.47 Active Moloch
91.207.28.33 Active Moloch

host 103.132.242.26
host 104.168.155.143
host 159.65.88.10
host 164.90.222.65
host 167.172.199.165
host 182.162.143.56
host 183.111.227.137
host 187.63.160.88
host 66.228.32.31
host 72.15.201.15
host 91.121.146.47
host 91.207.28.33
dead_host 72.15.201.15:8080
dead_host 91.207.28.33:8080
dead_host 164.90.222.65:443
dead_host 192.168.56.102:49190
dead_host 103.132.242.26:8080
dead_host 192.168.56.102:49192
dead_host 104.168.155.143:8080
dead_host 183.111.227.137:8080