Summary | ZeroBOX

bb-bbccc.pdf

AsyncRAT
Category Machine Started Completed
FILE s1_win7_x6401 April 2, 2021, 8:59 a.m. April 2, 2021, 9:01 a.m.
Size 57.1KB
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 a50a813f19ec334b3791016a1506bc95
SHA256 ac552a0297579cdda26c79d41c88717ef94880a46162dae366b3229e5024b25d
CRC32 E66DA433
ssdeep 768:hqQzioP3ztxHgfCBcf6FWmvGBNJWMOahNf0EBiNTi0ToGflgGflvx/FIwJGun51J:AQH/fgfC3BGpsmf5BeTfT67Clp
Yara
  • Win_Backdoor_AsyncRAT_Zero - Win Backdoor AsyncRAT
  • PE_Header_Zero - PE File Signature Zero
  • IsPE32 - (no description)
  • IsNET_EXE - (no description)
  • IsWindowsGUI - (no description)
  • HasOverlay - Overlay Check

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

MicroWorld-eScan Gen:Variant.Bulz.413992
FireEye Gen:Variant.Bulz.413992
Sangfor Trojan.Win32.Save.a
Arcabit Trojan.Bulz.D65128
BitDefenderTheta Gen:NN.ZemsilCO.34662.dm1@ayNDxbd
Cyren W32/MSIL_Kryptik.DNB.gen!Eldorado
ESET-NOD32 a variant of MSIL/TrojanDownloader.Agent.HRD
Avast Win32:Malware-gen
Kaspersky UDS:DangerousObject.Multi.Generic
BitDefender Gen:Variant.Bulz.413992
Ad-Aware Gen:Variant.Bulz.413992
Emsisoft Gen:Variant.Bulz.413992 (B)
DrWeb Trojan.DownloaderNET.151
McAfee-GW-Edition Artemis!Trojan
APEX Malicious
MAX malware (ai score=88)
Microsoft Trojan:Win32/AgentTesla!ml
GData Gen:Variant.Bulz.413992
AhnLab-V3 Trojan/Win.Kryptik.C4399405
McAfee Artemis!A50A813F19EC
Ikarus Trojan-Downloader.MSIL.Agent
eGambit Unsafe.AI_Score_90%
Fortinet MSIL/Kryptik.DNK!tr.dldr
AVG Win32:Malware-gen
Cybereason malicious.31348f