Report - fatherscientificpro.zip

ZIP Format
ScreenShot
Created 2024.07.14 17:58 Machine s1_win7_x6401
Filename fatherscientificpro.zip
Type Zip archive data, at least v1.0 to extract
AI Score Not founds Behavior Score
1.2
ZERO API file : malware
VT API (file) 42 detected (Azorult, malicious, moderate confidence, score, Trojanpws, Vvvk, GenericKD, Artemis, RATX, TrojanPSW, CLOUD, ybnpc, DownLoaderNET, R002C0XGC24, Detected, cgoya, Wacatac, ABDownloader, ai score=80, susgen)
md5 23cad24465d730936b5c3d2b7de5bfd1
sha256 0d0c3719afef2b4f8c02dd291702a558008881e49df5d47c1c76c12f070b9f37
ssdeep 3072:vL5xU6ADGGQw8B6LCgvdxmyKy5XptysjihJA/vzsz:vLrwEBICgvdMgXjnjIJ4sz
imphash
impfuzzy
  Network IP location

Signature (1cnts)

Level Description
danger File has been identified by 42 AntiVirus engines on VirusTotal as malicious

Rules (1cnts)

Level Name Description Collection
info zip_file_format ZIP file format binaries (upload)

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids



Similarity measure (PE file only) - Checking for service failure