Back to Malware Drops

ebc990e80330b7647cfa48b16d4f1e54ecbf756acbd4460ffa6f93bce4f14b66

MD5b22d561b860d435490ed8e64ed170566
SSDEEP
File Typetext/x-script
Size1.1 KB
Sources46
Downloads0
First SeenJul 16, 2022
Last SeenJul 17, 2022
Download sample (.zip, password: infected)

Live malware — handle only in an isolated analysis environment.

Originating Attacks

Honeypot sessions that dropped this sample. Drop URLs are defanged; commands are shown verbatim and are not links.

Indicators of Compromise

Values are defanged (e.g. hxxp://, [.]) — not live links.

domain (1)

  • zilean[.]cf

url (1)

  • hxxp://zilean[.]cf:6969/JBPjnc/wintsk[.]tar