Report - File_pass1234.zip

ZIP Format
ScreenShot
Created 2023.03.20 18:05 Machine s1_win7_x6402
Filename File_pass1234.zip
Type Zip archive data, at least v2.0 to extract
AI Score Not founds Behavior Score
0.4
ZERO API file : malware
VT API (file) 1 detected (Archive, Bomb)
md5 477411ecd609489540e26607c6f44ac2
sha256 59f9ea6d1ca37ff3a5058a0b2158b42f0830fce15c3a9c1e4440d4388fd83db3
ssdeep 49152:N8MxV91IkJppj9Hm+CGJ2mbZdZ4z3llI0T5Lc7hJ/R4XjCmXYA904gz57jcioj3T:N8MxzZN9Hm+zeVPT5c7hqCA190FzNoX
imphash
impfuzzy
  Network IP location

Signature (1cnts)

Level Description
notice File has been identified by one AntiVirus engine on VirusTotal as malicious

Rules (1cnts)

Level Name Description Collection
info zip_file_format ZIP file format binaries (upload)

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids



Similarity measure (PE file only) - Checking for service failure