File 90178c92e1c1dcc2a8403309a378f53c56baf807429ef89f1be120db476a3158 Summary

Analyse score

0 / 14

No antivirus venders flagged
this file as malicious

Last scanned

First submission

File type

js

js

Basic properties

CRC32

0x5c79d431

MD5

595a271a4390934a9ff395e82b4e8d40

Magic

RFC 822 mail, ASCII text, with very long lines

SHA1

3ae474812c57fa92db7c27e24121b386ebd914aa

SHA256

90178c92e1c1dcc2a8403309a378f53c56baf807429ef89f1be120db476a3158

SHA512

2fd54f3b4f48c9710d3e397c9859305621192694d52f3986b9f9fd66c0de5a15d10ea3d716096eddc4380e7de6f95a9cc7c5fe384d99ff7d32486a639044952c

SSDeep

192:Rm59zWdpeR3hwKbbX45BfXPBonWP4UxoYl60Iqp+1xE+jorRE+5U/kVbSIXaiHy:Rm5mpGrWdL6epES+jorR4GE

Size

14.02KB

Packer
  • Text: format: plain text[LF]
TrID
  • Warning: file seems to be plain text/ASCII
  • TrID is best suited to analyze binary files!
  • 100.0% (.EML) E-Mail message (Var. 5) (18000/1/3)

ExifTool File Metadata

ExifToolVersionNumber

12.62

FileSize

14 kB

FileType

TXT

FileTypeExtension

txt

LineCount

212

MimeEncoding

us-ascii

MimeType

text/plain

Newlines

Unix LF

WordCount

470

Submissions

Published Name Source Country
MailAttachment.eml web GH

Indicators

Description Severity Category Module
Malware detection of a yara signature: Win32/WannaCry
malicious
Sandbox Detection Behavior
Communicates over HTTP with a low reputation domain
informational
C2 Behavior
Deletes itself after process termination
suspicious
Stealth Behavior
Write a file to the startup folder
suspicious
Persistence Behavior
Check for the existence of Virtual Machines
suspicious
Signature Yara

🚀 Coming soon!

Virtual Screens

🚀 Coming soon!