Summary | ZeroBOX

Meeting-details.zip

Category Machine Started Completed
FILE s1_win7_x6402 July 26, 2021, 6:46 p.m. July 26, 2021, 6:49 p.m.
Size 266.5KB
Type Zip archive data, at least v2.0 to extract
MD5 00e267f6c6d5594c91577b92af32f952
SHA256 87fc9901eb7c3b335b82c5050e35458a2154747cd3e61110eed4c107f4ffada9
CRC32 A9226D73
ssdeep 6144:7k2am6nvxQ71ZNTuIKWBjcAZWvQlnWbpyTIlXSLSdMOspyCJb:ZivqfNTum1ZWvQBiQTkXSLSdMOCJb
Yara None matched

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Lionic Trojan.Win32.Doina.4!c
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Doina.18418
FireEye Gen:Variant.Doina.18418
Cylance Unsafe
Sangfor Trojan.Win32.Save.a
K7GW Riskware ( 0040eff71 )
K7AntiVirus Riskware ( 0040eff71 )
Arcabit Trojan.Doina.D47F2
Cyren W32/Trojan.OWUM-1458
ESET-NOD32 Win32/TrojanDownloader.Agent.FTH
TrendMicro-HouseCall TrojanSpy.Win32.TRICKBOT.SMC
Avast Win32:Trojan-gen
Kaspersky HEUR:Trojan.Win32.Bingoml.gen
BitDefender Gen:Variant.Doina.18418
Emsisoft Gen:Variant.Doina.18418 (B)
TrendMicro TrojanSpy.Win32.TRICKBOT.SMC
McAfee-GW-Edition BehavesLike.MultiPlug.dc
Sophos Generic PUA MD (PUA)
SentinelOne Static AI - Malicious Archive
Avira TR/Dldr.Agent.vmryh
Gridinsoft Suspicious_WebDownload.bot!yf
Microsoft Program:Win32/Wacapew.C!ml
GData Gen:Variant.Doina.18418
Cynet Malicious (score: 99)
AhnLab-V3 Trojan/Win.TRICKBOT.C4553710
McAfee RDN/Generic PWS.y
MAX malware (ai score=88)
Malwarebytes Malware.AI.334160484
MaxSecure Trojan.Malware.109135027.susgen
Fortinet W32/TrojanSpy_Win32_TRICKBOT.SMC
BitDefenderTheta Gen:NN.ZexaF.34050.wu0@amGqDUii
AVG Win32:Trojan-gen
Panda Trj/GdSda.A