Report - bad.ps1

Generic Malware Antivirus
ScreenShot
Created 2021.10.15 08:03 Machine s1_win7_x6401
Filename bad.ps1
Type ASCII text
AI Score Not founds Behavior Score
0.6
ZERO API file : clean
VT API (file)
md5 b1fa83e12b8185c4e3ecb3b62795daa1
sha256 08e3362fa38f0bfd8f87849be7c73da0d312ad4e84e2b43bab17ec68c20909ad
ssdeep 3072:G9OUeZhZYNu1qmCk63X0/qN+71PbYElSZZAytfeY/iqXvqKPyZsK:JZhTFCkF/5bYUSMy4uiEvqKasK
imphash
impfuzzy
  Network IP location

Signature (2cnts)

Level Description
notice Allocates read-write-execute memory (usually to unpack itself)
info Checks amount of memory in system

Rules (3cnts)

Level Name Description Collection
warning Generic_Malware_Zero Generic Malware binaries (download)
warning Generic_Malware_Zero Generic Malware binaries (upload)
watch Antivirus Contains references to security software binaries (download)

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids



Similarity measure (PE file only) - Checking for service failure