Report - nlb.txt.vbs

Antivirus
ScreenShot
Created 2024.07.15 09:21 Machine s1_win7_x6401
Filename nlb.txt.vbs
Type ASCII text, with very long lines, with CRLF line terminators
AI Score Not founds Behavior Score
0.6
ZERO API file : mailcious
VT API (file) 10 detected (gen80, PowerShell, Runner, A suspicious, Alien, TOPIS, V57SxEang5G, Detected, Wacatac)
md5 afd1fa691ac9b0ab5b39fd8a0d0e40d7
sha256 540a7db5bd2b8fb61ffba65243e5334243aaeaf2f03379d3b5a3ca8e7a6e0dc8
ssdeep 96:4VbsSspVb+VblVbnVbGVb4VbQVbaVb0VbPVbSVbXVbEGVbBVbuVb5VbhVblVbgVF:5zf2Zza8
imphash
impfuzzy
  Network IP location

Signature (1cnts)

Level Description
watch File has been identified by 10 AntiVirus engines on VirusTotal as malicious

Rules (1cnts)

Level Name Description Collection
watch Antivirus Contains references to security software binaries (upload)

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids



Similarity measure (PE file only) - Checking for service failure