ScreenShot
Created 2023.08.11 17:47 Machine s1_win7_x6401
Filename Mac_App.exe
Type Mach-O 64-bit x86_64 executable
AI Score Not founds Behavior Score
1.2
ZERO API file : malware
VT API (file) 18 detected (CobaltStrike, a variant of OSX, Beacon, MacOS, CobalStrike, Cobalt, Detected, SAgnt, ai score=83, CLASSIC)
md5 4b29c67a00bcda2f4e861fd036b7dd2d
sha256 21b3e304db526e2c80df1f2da2f69ab130bdad053cb6df1e05eb487a86a19b7c
ssdeep 98304:QTbvmvut3qy84Jif+r3HEtoEvNGsuw/GskejHre4HfV:NutTXUtocsJw/GsdLe
imphash
impfuzzy
  Network IP location

Signature (3cnts)

Level Description
watch File has been identified by 18 AntiVirus engines on VirusTotal as malicious
notice Encryption keys have been identified in this analysis
info One or more processes crashed

Rules (0cnts)

Level Name Description Collection

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids



Similarity measure (PE file only) - Checking for service failure