ScreenShot
Created | 2024.12.01 12:42 | Machine | s1_win7_x6403 |
Filename | kim.url | ||
Type | MS Windows 95 Internet shortcut text (URL= |
||
AI Score | Not founds | Behavior Score |
|
ZERO API | file : clean | ||
VT API (file) | 7 detected (internetshortcut, UrlDownloader, ezohxo, SuspLnk) | ||
md5 | f2950c78d47e36fd25aeb7178ec87968 | ||
sha256 | a59b317d1e7678430149a303b09f1d2bfe3cfe450cf9d325fd90ec288beee53a | ||
ssdeep | 3:HRAbABGQYm/+BBIVQslJPc1Mf18PKgDeNIkXpPMBHKs7V25YdimVVG/VClAWHyn:HRYFVm/gIVQWJJ2ygKjMQs7A54vVG/4c | ||
imphash | |||
impfuzzy |
Network IP location
Signature (4cnts)
Level | Description |
---|---|
watch | One or more non-whitelisted processes were created |
notice | File has been identified by 7 AntiVirus engines on VirusTotal as malicious |
notice | Performs some HTTP requests |
notice | Uses Windows utilities for basic Windows functionality |
Rules (2cnts)
Level | Name | Description | Collection |
---|---|---|---|
info | url_file_format | Microsoft Windows Internet Shortcut File Format | binaries (upload) |
info | zip_file_format | ZIP file format | binaries (download) |