Summary | ZeroBOX

EHSU.zip

ZIP Format
Category Machine Started Completed
FILE s1_win7_x6402 Nov. 7, 2023, 9:43 a.m. Nov. 7, 2023, 9:45 a.m.
Size 123.5KB
Type Zip archive data, at least v2.0 to extract
MD5 056f1e5e64d6246b96f5fa6b3322f3e1
SHA256 e62a3ff01cc8506f823372acfa552f39e5cd91ec6f8665614a850958e2aa7880
CRC32 6A6483C0
ssdeep 3072:f2UuzhQAkeZP1cwsr90DyU8j01n8hUhYE5d3VnC:OUuFQAkqawFDC018hUaQd3hC
Yara
  • zip_file_format - ZIP file format

Name Response Post-Analysis Lookup
www.ssl.com 3.213.199.135
IP Address Status Action
164.124.101.2 Active Moloch
167.235.241.120 Active Moloch
3.213.199.135 Active Moloch

suspicious_features Connection to IP address suspicious_request GET http://167.235.241.120/jogX/Olluc
request GET http://www.ssl.com/repository/SSLcomRootCertificationAuthorityRSA.crt
request GET http://167.235.241.120/jogX/Olluc
host 167.235.241.120