Report - 1U7BvIdACPCYa33aYRwgjh4ygq8niHcRB

ScreenShot
Created 2021.03.30 09:21 Machine s1_win7_x6401
Filename 1U7BvIdACPCYa33aYRwgjh4ygq8niHcRB
Type Microsoft Excel 2007+
AI Score Not founds Behavior Score
1.4
ZERO API file : clean
VT API (file) 10 detected (GenericKDZ, ZLoader, ai score=83, 07defname)
md5 6427bca6617804a2d53c77f931cc355a
sha256 a5dd3f20aab6618011877deb16b0d212a15b6c8f4c16340b0b9c9e49768f2c11
ssdeep 384:2YRGlU7J2Nco5SScwxwXome8LURIUlM9zNf5reYBMwrqs:ZGU7J2NcokUOe6+Ixp5ruLs
imphash
impfuzzy
  Network IP location

Signature (3cnts)

Level Description
watch File has been identified by 10 AntiVirus engines on VirusTotal as malicious
notice Allocates read-write-execute memory (usually to unpack itself)
notice Creates hidden or system file

Rules (0cnts)

Level Name Description Collection

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids



Similarity measure (PE file only) - Checking for service failure