Report - Microsoft_AntiSpam_Extension_Security.msix

ZIP Format
ScreenShot
Created 2024.08.01 15:13 Machine s1_win7_x6403
Filename Microsoft_AntiSpam_Extension_Security.msix
Type Zip archive data, at least v4.5 to extract
AI Score Not founds Behavior Score
0.6
ZERO API file : clean
VT API (file) 11 detected (GenericKD, NetSupportManager, PowerShell, Msips, ai score=81, susgen)
md5 6a364ef9c583ccfd5ea50113d7f0140e
sha256 d6c5d8fcd723579a05a7c39863f3bb6f1d1032fef1aad2a62bfbe89fd8d7c4ef
ssdeep 196608:1KFryFANIWCOQhsKghEgsSLMLoWamJNwfLwilbB:1Kc6/QFghOSLAJyfLzl
imphash
impfuzzy
  Network IP location

Signature (1cnts)

Level Description
watch File has been identified by 11 AntiVirus engines on VirusTotal as malicious

Rules (1cnts)

Level Name Description Collection
info zip_file_format ZIP file format binaries (upload)

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids



Similarity measure (PE file only) - Checking for service failure