File b35df928a14da501d56752fdda4226304bcaf62947ab7b7f1dd44c4f60873e83 Summary

Analyse score

12 / 14

12 antivirus venders flagged
this file as malicious

Last scanned

First submission

File type

wsf

wsf

Basic properties

CRC32

0x7b0c46b9

MD5

4b3dbcf4e01e850869f03c690dc37cd2

Magic

HTML document, Non-ISO extended-ASCII text, with very long lines, with CRLF line terminators

SHA1

0ff7d364e1b1428fe39a920a0bf266c4ef523b96

SHA256

b35df928a14da501d56752fdda4226304bcaf62947ab7b7f1dd44c4f60873e83

SHA512

6ceaa63613946524bfdf6905f22c13f31687af03a8d32d0ae7e64fb7775cda69a8dfb219016b4d05080523f8e9b886c6bbdda2477366f5f6c2f3127668f63285

SSDeep

1536:S4TyFvI5q8lQOhalawyLi+rffMxqNisaQx4V5roEIfGJZN8qbV76EX1UP09weXAZ:S4nrwyfkMY+BES09JXAnyrZalI+YQ

Size

138.67KB

Packer
  • Text: source: HTML
  • Text: format: plain text[CRLF]
TrID
  • 80.6% (.HTM/HTML) HyperText Markup Language with DOCTYPE (12501/2/4)
  • 19.3% (.HTML) HyperText Markup Language (3000/1/1)
Tags

ExifTool File Metadata

Author

pickx.cn

Description

Ϊ���������ṩ�������ѵ�006���������ϲʹ�˾���ݷ������׼��7���������ϲ���վ,��������006���������ϲʹ�˾�����ǹ�ͬ������,��վ���ṩ��׼8������ ���ϲʡ�

ExifToolVersionNumber

12.44

FileSize

142 kB

FileType

HTML

FileTypeExtension

html

Keywords

006���������ϲʹ�˾,8�����۵������ϲ�,007�����۾������ϲ�

MimeType

text/html

Title

006���������ϲʹ�˾-�������ϲʿ���

Submissions

Published Name Source Country
VirusShare_4b3dbcf4e01e850869f03c690dc37cd2 api CN

Indicators

Description Severity Category Module
Malware detection of a yara signature: Win32/WannaCry
malicious
Sandbox Detection Behavior
Communicates over HTTP with a low reputation domain
informational
C2 Behavior
Deletes itself after process termination
suspicious
Stealth Behavior
Write a file to the startup folder
suspicious
Persistence Behavior
Check for the existence of Virtual Machines
suspicious
Signature Yara

🚀 Coming soon!

Virtual Screens

🚀 Coming soon!