Report - scan_documet_027839.vbs

ScreenShot
Created 2024.09.11 10:12 Machine s1_win7_x6402
Filename scan_documet_027839.vbs
Type ASCII text, with CRLF line terminators
AI Score Not founds Behavior Score
1.0
ZERO API file : clean
VT API (file) 28 detected (GenericKD, Malcode, gen102, PowerShell, REMCOS, YXEIIZ, ExpKit, ewethy, CLASSIC, DownLoader47, VBSObfs, Detected, ai score=87, Leonem, Kcnw, GuLoader)
md5 a5a98320f9ac5232423dbde020b8af40
sha256 cb6c92921e3bc58250684d6bd5dda9b92d22917f2d5e7b137c9694907309e986
ssdeep 384:40JkjQ0eWgc1pVR8YSwSPJmxNSiMFpWRD:fGjQ0e21pf8SmW28
imphash
impfuzzy
  Network IP location

Signature (2cnts)

Level Description
warning File has been identified by 28 AntiVirus engines on VirusTotal as malicious
info Queries for the computername

Rules (0cnts)

Level Name Description Collection

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids



Similarity measure (PE file only) - Checking for service failure