Summary | ZeroBOX

miner.bin

Malicious Packer PE32 PE File .NET EXE
Category Machine Started Completed
FILE s1_win7_x6402 June 11, 2021, 12:07 p.m. June 11, 2021, 12:30 p.m.
Size 6.5KB
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 9559bcadf47a53f861b8fc7769a5ba9f
SHA256 1748ea6ced193f8e817357a60694e440042e7f59c226b0341965e43b4196b555
CRC32 34FAF8AF
ssdeep 96:M4oCzMYR4yudtRhzTLV+klb31mVJVWsd6nNt:t3yhT8bVW86N
PDB Path e:\Documenti\Coding\HTTPBotFe\Miner\Miner\obj\Release\Miner.pdb
Yara
  • PE_Header_Zero - PE File Signature
  • Is_DotNET_EXE - (no description)
  • Malicious_Packer_Zero - Malicious Packer
  • IsPE32 - (no description)

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path e:\Documenti\Coding\HTTPBotFe\Miner\Miner\obj\Release\Miner.pdb
MicroWorld-eScan Trojan.GenericKD.37031643
FireEye Generic.mg.9559bcadf47a53f8
ALYac Trojan.GenericKD.37031643
Cylance Unsafe
Cybereason malicious.a4df98
Cyren W32/Trojan.UPXO-7048
Symantec ML.Attribute.HighConfidence
APEX Malicious
Avast FileRepMalware
BitDefender Trojan.GenericKD.37031643
Paloalto generic.ml
ViRobot Trojan.Win32.Z.Agent.6662
Ad-Aware Trojan.GenericKD.37031643
Sophos Generic ML PUA (PUA)
McAfee-GW-Edition RDN/Generic.RP
Emsisoft Trojan.GenericKD.37031643 (B)
SentinelOne Static AI - Suspicious PE
Jiangmin Trojan.MSIL.hcnt
Antiy-AVL Trojan/Generic.ASMalwS.30F8AC4
Gridinsoft Malware.Win32.Gen.cc!s1
Microsoft Trojan:Win32/Wacatac.B!ml
AegisLab Trojan.Win32.Generic.4!c
GData Trojan.GenericKD.37031643
AhnLab-V3 Trojan/Win32.BitCoinMiner.C237991
McAfee RDN/Generic.RP
MAX malware (ai score=85)
VBA32 Trojan.MSIL.gen.m
Malwarebytes Trojan.BitCoinMiner
TrendMicro-HouseCall TROJ_GEN.R002H06F621
eGambit Unsafe.AI_Score_99%
Fortinet PossibleThreat
BitDefenderTheta Gen:NN.ZemsilF.34738.am1@aScu9pc
AVG FileRepMalware
Panda Trj/GdSda.A
CrowdStrike win/malicious_confidence_80% (W)
MaxSecure Trojan.Malware.300983.susgen