IOC Report
file.zip

loading gif

Files

File Path
Type
Category
Malicious
file.zip
Zip archive data, at least v2.0 to extract, compression method=deflate
initial sample
malicious
C:\Users\user\AppData\Local\star.exe
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
dropped
malicious
\Device\Null
ASCII text, with CRLF line terminators
dropped

IPs

IP
Domain
Country
Malicious
127.0.0.1
unknown
unknown
malicious