File DIIA_users_DB_2025.zip

Size 85.4MB
Type Zip archive data, at least v2.0 to extract, compression method=deflate
MD5 bc9e7e7d33191a591ec9f91ae4cd1eb5
SHA1 817af36cc278ddfeb856097628e5ef61a5a504e6
SHA256 a6f40effcd5982f8e3eb158ec8fad3b039548d5d48dc431dd976356a81bf7c5d
SHA512
28f56c47e3a763adce2d906ba0542d98e1c2192eddcd4a136eb45acb1991839bbabc4cb1beb546508d7f40942ba455738df997850028fcfc88b2e5181368dbfa
CRC32 45B5E91A
ssdeep None
Yara
  • shellcode - Matched shellcode byte patterns

Score

This file appears fairly benign with a score of 0.1 out of 10.

Please notice: The scoring system is currently still in development and should be considered an alpha feature.


Feedback

Expecting different results? Send us this analysis and we will inspect it. Click here

Information on Execution

Analysis
Category Started Completed Duration Routing Logs
FILE Sept. 21, 2025, 10:11 a.m. Sept. 21, 2025, 10:12 a.m. 52 seconds internet Show Analyzer Log
Show Cuckoo Log

Analyzer Log

2025-09-21 10:11:46,010 [root] DEBUG: Starting analyzer from: /tmp/tmpDQf8bT
2025-09-21 10:11:46,011 [root] DEBUG: Storing results at: /tmp/kUeJERtFGV
2025-09-21 10:11:46,013 [root] ERROR: Traceback (most recent call last):
  File "/tmp/tmpDQf8bT/analyzer.py", line 340, in <module>
    success = analyzer.run()
  File "/tmp/tmpDQf8bT/analyzer.py", line 129, in run
    self.config.file_name, **kwargs)
  File "/tmp/tmpDQf8bT/lib/core/packages.py", line 42, in choose_package_class
    "exist.".format(name))
Exception: Unable to import package "7z": it does not exist.
Traceback (most recent call last):
  File "/tmp/tmpDQf8bT/analyzer.py", line 340, in <module>
    success = analyzer.run()
  File "/tmp/tmpDQf8bT/analyzer.py", line 129, in run
    self.config.file_name, **kwargs)
  File "/tmp/tmpDQf8bT/lib/core/packages.py", line 42, in choose_package_class
    "exist.".format(name))
Exception: Unable to import package "7z": it does not exist.

Cuckoo Log

2025-09-21 10:11:54,832 [cuckoo.core.scheduler] INFO: Task #6977318: acquired machine Ubuntu1904x642 (label=Ubuntu1904x642)
2025-09-21 10:11:54,834 [cuckoo.core.resultserver] DEBUG: Now tracking machine 192.168.168.102 for task #6977318
2025-09-21 10:11:55,827 [cuckoo.auxiliary.sniffer] INFO: Started sniffer with PID 1172136 (interface=vboxnet0, host=192.168.168.102)
2025-09-21 10:11:56,467 [androguard.apk] WARNING: Missing AndroidManifest.xml. Is this an APK file?
2025-09-21 10:11:56,510 [cuckoo.machinery.virtualbox] DEBUG: Starting vm Ubuntu1904x642
2025-09-21 10:11:57,861 [cuckoo.machinery.virtualbox] DEBUG: Restoring virtual machine Ubuntu1904x642 to Snapshot
2025-09-21 10:12:14,922 [cuckoo.core.guest] INFO: Starting analysis #6977318 on guest (id=Ubuntu1904x642, ip=192.168.168.102)
2025-09-21 10:12:15,956 [cuckoo.core.guest] DEBUG: Ubuntu1904x642: not ready yet
2025-09-21 10:12:20,983 [cuckoo.core.guest] INFO: Guest is running Cuckoo Agent 0.10 (id=Ubuntu1904x642, ip=192.168.168.102)
2025-09-21 10:12:21,010 [cuckoo.core.guest] DEBUG: Uploading analyzer to guest (id=Ubuntu1904x642, ip=192.168.168.102, monitor=latest, size=73219)
2025-09-21 10:12:28,760 [cuckoo.core.resultserver] DEBUG: Task #6977318: live log analysis.log initialized.
2025-09-21 10:12:31,543 [cuckoo.core.guest] INFO: Ubuntu1904x642: analysis completed successfully
2025-09-21 10:12:31,555 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Redsocks
2025-09-21 10:12:31,580 [cuckoo.core.plugins] DEBUG: Stopped auxiliary module: Sniffer
2025-09-21 10:12:34,068 [cuckoo.machinery.virtualbox] INFO: Successfully generated memory dump for virtual machine with label Ubuntu1904x642 to path /srv/cuckoo/cwd/storage/analyses/6977318/memory.dmp
2025-09-21 10:12:34,071 [cuckoo.machinery.virtualbox] DEBUG: Stopping vm Ubuntu1904x642
2025-09-21 10:12:43,539 [cuckoo.core.resultserver] DEBUG: Stopped tracking machine 192.168.168.102 for task #6977318
2025-09-21 10:12:44,276 [cuckoo.core.scheduler] DEBUG: Released database task #6977318
2025-09-21 10:12:44,298 [cuckoo.core.scheduler] INFO: Task #6977318: analysis procedure completed

Signatures

Yara rule detected for file (1 event)
description Matched shellcode byte patterns rule shellcode
Screenshots
No screenshots available.
Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action VT Location
No hosts contacted.
Cuckoo

We're processing your submission... This could take a few seconds.