Report - df-messenger.js.pobrane

Javascript_Blob ftp
ScreenShot
Created 2025.04.20 23:29 Machine s1_win7_x6402
Filename df-messenger.js.pobrane
Type ASCII text, with very long lines
AI Score Not founds Behavior Score
0.6
ZERO API file : clean
VT API (file)
md5 bb5bc5caff8ff2af6d2a707ec967af39
sha256 39f62237807c09decc57aa8b1c8e27287359080da57bd2d6227a54265379ba2f
ssdeep 6144:v3I+ZDozC5CzD4bU2bUZT8zu1NOu3VKD92KqawvdAWn7jd1jKyj6Gxr6GqHoAsDs:QZzw2KqZ7jd1pBwqDXxXV8Bv5/im
imphash
impfuzzy
  Network IP location

Signature (2cnts)

Level Description
notice Allocates read-write-execute memory (usually to unpack itself)
info One or more processes crashed

Rules (2cnts)

Level Name Description Collection
notice Javascript_Blob use blob(Binary Large Objec) javascript binaries (upload)
info ftp_command ftp command binaries (upload)

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids



Similarity measure (PE file only) - Checking for service failure