Report - Get-FileHash.ps1

Generic Malware Antivirus
ScreenShot
Created 2024.10.20 10:07 Machine s1_win7_x6403
Filename Get-FileHash.ps1
Type ASCII text
AI Score Not founds Behavior Score
0.4
ZERO API file : mailcious
VT API (file)
md5 ee20d99a70ec226f66bcd0b26a0c6caf
sha256 4f973166e51d65dcfdd16e6f8306f869f11c0121666002b37ccb0ae6f19ddfeb
ssdeep 384:f+yFoljaSb0gJuvPA7R1EqzevQFKPzBw8y5GlkWOr0I7:2h7HEhIKFw8YyLO
imphash
impfuzzy
  Network IP location

Signature (1cnts)

Level Description
notice Allocates read-write-execute memory (usually to unpack itself)

Rules (3cnts)

Level Name Description Collection
warning Generic_Malware_Zero Generic Malware binaries (download)
watch Antivirus Contains references to security software binaries (download)
watch Antivirus Contains references to security software binaries (upload)

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids



Similarity measure (PE file only) - Checking for service failure