Report - document_C540_Jun_2.js

ScreenShot
Created 2023.06.03 17:31 Machine s1_win7_x6402
Filename document_C540_Jun_2.js
Type ASCII text, with very long lines, with no line terminators
AI Score Not founds Behavior Score
1.0
ZERO API file : clean
VT API (file) 6 detected (Qbot, Eldorado, Alien, InfectedWebPageGen2, Woreflint, Detected)
md5 6c6de7c1260f8b8dc6bc8505cac4288a
sha256 f92fd50d6519608cc9c0879df446cd90878da1bdb91e521fed1363d2a1852437
ssdeep 96:7GW2V9wm0oYuZiF3XUg+VnUg4BoFmPIzc:7GhV9wm0oY6ZKOc
imphash
impfuzzy
  Network IP location

Signature (3cnts)

Level Description
notice Allocates read-write-execute memory (usually to unpack itself)
notice File has been identified by 6 AntiVirus engines on VirusTotal as malicious
info One or more processes crashed

Rules (0cnts)

Level Name Description Collection

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids



Similarity measure (PE file only) - Checking for service failure