Malicious
Malicious

4df76e02e20a416128016b5b69125944

ZIP Archive
MD5: 4df76e02e20a416128016b5b69125944
Size: 13.98 KB
application/zip
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 4df76e02e20a416128016b5b69125944
Sha1 08513cc1dc8b4df23407e4ce9917088576b6481c
Sha256 792fcd3bc518a9a0ab152e6e74283066bac208a66df68545960c83814c1103a0
Sha384 cbf62108b801089ac30d30dd419575a25d89d2738546aee8d60466f02a1556707c756dcc5b19eaed954911fbcb3aeafd
Sha512 19fbffc5efab91b99aa777b6620885a2dc36d5d104799f04b6cb1f120adba6b8df17c024da0796f806a5fb99625249f9a2f14f86afb4094d9c1fdf5e8765e8ac
SSDeep 384:E88888888888888888888888888888888888888888888888888888888888888L:E888888888888888888888888888888r
TLSH 6A5202785429428197333AA33AF95F06EA9408FD2DE1779C36087B23DAD87490A6DD1F
Deobfuscated PowerShell UNKNWOWNmalicious
Copy-Ihuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
No malware configuration was found at this point.
Deobfuscated PowerShell UNKNWOWNmalicious
Copy-Ihuhuhuhuhuhuhuhuhuhuhu
4df76e02e20a416128016b5b69125944 › Swift-015062026.vbs › Swift-015062026.vbs.deobfuscated.vbs › [Command #0] › [PowerShell Command]
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙