paladin316

ShareFile_vbs_2019-06-27_19_30.json

Jun 27th, 2019
2,181
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.54 KB | None | 0 0
  1.  
  2. [*] MalFamily: "Sagent"
  3.  
  4. [*] MalScore: 0.5
  5.  
  6. [*] File Name: "ShareFile.vbs"
  7. [*] File Size: 135760
  8. [*] File Type: "ASCII text, with very long lines"
  9. [*] SHA256: "7e525e5cf3048c4ac984de2e69de583748abb7f809e4c33afea4d49bb39d2619"
  10. [*] MD5: "d4cf32105257aabdd26cf6e5e81400f9"
  11. [*] SHA1: "b6ecb63ddfc18c54c6030abc2d652000bdee4415"
  12. [*] SHA512: "8930c0dbaa995d140a53c4e72543a3e7a73c9ba400a77799a482b0df94f70dbcadf73866d7df85a3dfc302c296881cd9f96aef932e8863b2e3a58a0c6a95a3b0"
  13. [*] CRC32: "444BF80A"
  14. [*] SSDEEP: "1536:yGDWFNaXTNF1YAUYNrIebq1aQZLNMQypaf:y0NF1wYNrBbqBZLvR"
  15.  
  16. [*] Process Execution: []
  17.  
  18. [*] Signatures Detected: [
  19. {
  20. "Description": "File has been identified by 4 Antiviruses on VirusTotal as malicious",
  21. "Details": [
  22. {
  23. "Kaspersky": "HEUR:Trojan.VBS.SAgent.gen"
  24. },
  25. {
  26. "DrWeb": "Trojan.DownLoader29.2186"
  27. },
  28. {
  29. "ZoneAlarm": "HEUR:Trojan.VBS.SAgent.gen"
  30. },
  31. {
  32. "Qihoo-360": "virus.vbs.crypt.c"
  33. }
  34. ]
  35. }
  36. ]
  37.  
  38. [*] Started Service: []
  39.  
  40. [*] Executed Commands: []
  41.  
  42. [*] Mutexes: []
  43.  
  44. [*] Modified Files: []
  45.  
  46. [*] Deleted Files: []
  47.  
  48. [*] Modified Registry Keys: []
  49.  
  50. [*] Deleted Registry Keys: []
  51.  
  52. [*] DNS Communications: []
  53.  
  54. [*] Domains: []
  55.  
  56. [*] Network Communication - ICMP: []
  57.  
  58. [*] Network Communication - HTTP: []
  59.  
  60. [*] Network Communication - SMTP: []
  61.  
  62. [*] Network Communication - Hosts: []
  63.  
  64. [*] Network Communication - IRC: []
  65.  
  66. [*] Static Analysis: {}
  67.  
  68. [*] Resolved APIs: []
  69.  
  70. [*] Static Analysis: {}
Advertisement
Add Comment
Please, Sign In to add comment