File b73921df5897572b40afccffba0bbb656824fc73d8420b64a7232a8b99fc5e61 Summary

Analyse score

0 / 14

No antivirus venders flagged
this file as malicious

Last scanned

First submission

Basic properties

CRC32

0x681b86a5

MD5

4b9625af910bac271ac47232263528f6

Magic

data

SHA1

7d886fb71a55a435c15095af689282f5bca816d1

SHA256

b73921df5897572b40afccffba0bbb656824fc73d8420b64a7232a8b99fc5e61

SHA512

b85daf4c0247a4d0fdbcfbcf2560968ffb1fe539f1b4c4578cb405b0a814c37fc20f16fc4375c9adf8badf902276eafaa9b8667376940d3f7d7318bf6a45242f

SSDeep

Size

670B

Packer
  • Binary: Nothing found
TrID
  • 100.0% (.VBE) VBScript Encoded script (4005/2)

ExifTool File Metadata

Submissions

Published Name Source Country
malware.vbe web undefined

Indicators

Description Severity Category Module
Malware detection of a yara signature: Win32/WannaCry
malicious
Sandbox Detection Behavior
Communicates over HTTP with a low reputation domain
informational
C2 Behavior
Deletes itself after process termination
suspicious
Stealth Behavior
Write a file to the startup folder
suspicious
Persistence Behavior
Check for the existence of Virtual Machines
suspicious
Signature Yara

🚀 Coming soon!

Virtual Screens

🚀 Coming soon!