Summary | ZeroBOX

K1.zip

ZIP Format
Category Machine Started Completed
FILE s1_win7_x6402 July 23, 2024, 2:53 p.m. July 23, 2024, 2:56 p.m.
Size 2.8MB
Type Zip archive data, at least v2.0 to extract
MD5 eb834c6eb71e2a950f9123b506ab4763
SHA256 016b443391531dc4a9bac3127fe82d6149b14ee529ff448de8d60c9868b74602
CRC32 0FA99A43
ssdeep 49152:lm0aitd+JLyeh79YQ+7svv3ujDg8tozVUaIiArjdaCbkq6CYKW7BSIV0:g0Z+td91IsHCdSz+pifCbkIeBFV0
Yara
  • zip_file_format - ZIP file format

Name Response Post-Analysis Lookup
tveight8vs.top 185.68.93.123
IP Address Status Action
164.124.101.2 Active Moloch
185.68.93.123 Active Moloch

suspicious_features POST method with no referer header suspicious_request POST http://tveight8vs.top/v1/upload.php
request POST http://tveight8vs.top/v1/upload.php
request POST http://tveight8vs.top/v1/upload.php
domain tveight8vs.top description Generic top level domain TLD
NANO-Antivirus Virus.Win32.Gen.ccmw
DrWeb Program.Unwanted.5065