Report - Video.scr

PE File PE32
ScreenShot
Created 2024.09.26 12:13 Machine s1_win7_x6401
Filename Video.scr
Type PE32 executable (GUI) Intel 80386, for MS Windows
AI Score
5
Behavior Score
0.6
ZERO API file : malware
VT API (file) 4 detected (PE@1z141z3, malicious, confidence)
md5 63b8a15b94e66b800882f5ab3d7d826e
sha256 8db01fa169170644a88a2427318dc81f097b1cbeed92735007f77c7e513bd295
ssdeep 96:hq4zRdIwrXNWO18TmjRNBltq+vEpcb/Nv0hOvBAI3GFv0RJJzq5nJUTlsu:ZUwrkOqyjReBM10hO52Fv0RJMJ6lsu
imphash
impfuzzy 3::
  Network IP location

Signature (2cnts)

Level Description
notice File has been identified by 4 AntiVirus engines on VirusTotal as malicious
info The executable contains unknown PE section names indicative of a packer (could be a false positive)

Rules (2cnts)

Level Name Description Collection
info IsPE32 (no description) binaries (upload)
info PE_Header_Zero PE File Signature binaries (upload)

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids



Similarity measure (PE file only) - Checking for service failure