General
Structural Analysis
Config.0
Yara Rules99+
Sync
Community
Infection Chain
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | 22798ade0df21851037277fb3789ea08
|
| Sha1 | d3a435c8d5922345da73fece405faff8eb6db4e7
|
| Sha256 | 769940e161bd543f278dba9c0b5c58edefe07f47dde1bc54c093b752168c45e7
|
| Sha384 | 8fa92ce9df74fcaef34d99e17e874e81f741d891254396df2de6324884447bfbd177c33d65b00b6f8d1811c220fd4468
|
| Sha512 | b4d6008e4fdfaf2c2f44c72e625eb0a10bc6a7c2e7912ade949c8214348f03cd4a1fd50afe0576e8051616b94930d883f12e4e465570c4da52a70c6ac5d33308
|
| SSDeep | 192:iu5wiaJTZYOSMgqUIEIs1bSLwx4pHg1ZG2lpGMRARchQafeqQBbXT5C5oKpN6Xew:QL9Zf57JXpUqUy5msh
|
| TLSH | 9B63B24DBE1E2CC73A91EF28610C01709F7D8611B8996D597A9E3B5A83FEF0C2897D50
|
File Structure
22798ade0df21851037277fb3789ea08
Malicious
22798ade0df21851037277fb3789ea08.deobfuscated.vbs
Malicious
[Command #0]
Malicious
[Base64-Block]
Artefacts
|
Name0 | Value |
|---|---|
| URLs in VB Code - #1 | https://www.javascriptfreecode.com |
| URLs in VB Code - #2 | https://cdnjs.cloudflare.com/ajax/libs/font-awesome/4.7.0/css/font-awesome.css |
| URLs in VB Code - #3 | https://fonts.googleapis.com |
| URLs in VB Code - #4 | https://fonts.gstatic.com |
| URLs in VB Code - #5 | https://fonts.googleapis.com/css2?family=Inter:wght@400 |
| URLs in VB Code - #6 | https://api.javascripttutorial.net/v1/quotes/?limit= |
22798ade0df21851037277fb3789ea08 (70.78 KB)
File Structure
22798ade0df21851037277fb3789ea08
Malicious
22798ade0df21851037277fb3789ea08.deobfuscated.vbs
Malicious
[Command #0]
Malicious
[Base64-Block]
Characteristics
No malware configuration were found at this point.
Artefacts
|
Name0 | Value | Location |
|---|---|---|
| URLs in VB Code - #1 | https://www.javascriptfreecode.com |
22798ade0df21851037277fb3789ea08 |
| URLs in VB Code - #2 | https://cdnjs.cloudflare.com/ajax/libs/font-awesome/4.7.0/css/font-awesome.css |
22798ade0df21851037277fb3789ea08 |
| URLs in VB Code - #3 | https://fonts.googleapis.com |
22798ade0df21851037277fb3789ea08 |
| URLs in VB Code - #4 | https://fonts.gstatic.com |
22798ade0df21851037277fb3789ea08 |
| URLs in VB Code - #5 | https://fonts.googleapis.com/css2?family=Inter:wght@400 |
22798ade0df21851037277fb3789ea08 |
| URLs in VB Code - #6 | https://api.javascripttutorial.net/v1/quotes/?limit= |
22798ade0df21851037277fb3789ea08 |
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.