Report - d473b802-eb5f-11e7-8ccc-5944bc969a40

ScreenShot
Created 2022.01.18 10:48 Machine s1_win7_x6401
Filename d473b802-eb5f-11e7-8ccc-5944bc969a40
Type Zip archive data, at least v2.0 to extract
AI Score Not founds Behavior Score
1.0
ZERO API file : malware
VT API (file) 35 detected (malicious, high confidence, RemoteAdmin, RDPWrap, RemAdm, Unsafe, LQT6LV, RemoteTool, JKQF, SecurityRisk, gen1, A potentially unsafe, eyvlpq, HKTL, RADMIN, component, ASMalwS, score, ai score=94, Undefined, CLOUD, 39OEp2Y0vOM, susgen)
md5 c26a2c5f6154225e8d83c4000306f162
sha256 35a9481ddbed5177431a9ea4bd09468fe987797d7b1231d64942d17eb54ec269
ssdeep 49152:cPEbpqUPr0OMPjmNgyV24OXxr2/NV0CA7QUmu4LnB:cPEbpPPrC4gWFOBr4Wfg
imphash
impfuzzy
  Network IP location

Signature (1cnts)

Level Description
danger File has been identified by 35 AntiVirus engines on VirusTotal as malicious

Rules (0cnts)

Level Name Description Collection

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids



Similarity measure (PE file only) - Checking for service failure