Summary | ZeroBOX

cafiii.jpg

ZIP Format
Category Machine Started Completed
FILE s1_win7_x6401 Oct. 8, 2023, noon Oct. 8, 2023, 12:04 p.m.
Size 63.2KB
Type Zip archive data, at least v2.0 to extract
MD5 eb52f4c919c1466d334996cbc02f64ab
SHA256 f2254cee40cac5d924929dfb7978485b62e4b1328e1474fd5923e166038723ca
CRC32 794126FE
ssdeep 768:YN5ooWY80unrrJhWCkPmDfdKChwGfuUQmoBDXPA9QyX6Rk2pDVRhhEYIME8BZq9V:NremLdP5sry4/xVPPcQjpz5BAonhU
Yara
  • zip_file_format - ZIP file format

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
156.236.72.121 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

host 156.236.72.121
Lionic Trojan.ZIP.Kryptik.4!c
MicroWorld-eScan Trojan.GenericKD.69614616
FireEye Trojan.GenericKD.69614616
VIPRE Trojan.GenericKD.69614616
BitDefender Trojan.GenericKD.69614616
Cyren ABRisk.XPMM-6
ESET-NOD32 multiple detections
Avast Script:SNH-gen [Trj]
Kaspersky HEUR:Trojan.PowerShell.Kryptik.gen
Alibaba Trojan:MSIL/Kryptik.286be2d5
ViRobot HTML.Z.Agent.226446
Rising Trojan.Agent/VBS!8.11E09 (TOPIS:E0:3hlG8fHXB1N)
Emsisoft Trojan.GenericKD.69614616 (B)
McAfee-GW-Edition Artemis!Trojan
GData Trojan.GenericKD.69614616
MAX malware (ai score=87)
Antiy-AVL Trojan/VBS.Agent
Arcabit Trojan.Generic.D4263C18
ZoneAlarm HEUR:Trojan.PowerShell.Kryptik.gen
Google Detected
Tencent Win32.Trojan.Kryptik.Kcnw
Ikarus Trojan.BAT.Agent
AVG Script:SNH-gen [Trj]
dead_host 192.168.56.101:49809