Summary | ZeroBOX

steammaa.dll

Generic Malware Malicious Packer .NET DLL PE File DLL PE32
Category Machine Started Completed
FILE s1_win7_x6401 Aug. 23, 2021, 12:43 p.m. Aug. 23, 2021, 12:43 p.m.
Size 311.5KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 a1a454066b561968825cf19ca262b2fc
SHA256 7e97e7bcc1a5808c054f14db6e909bc6dd5a0ff9a7b911b948409f68485681a1
CRC32 102616CE
ssdeep 6144:m2enCgwRoFKRDBSCgYfM6Niz6DRBhBr3XAFZMJYA4gozN:ECUCg+M6TDJi
PDB Path SteamCloudFileManagerLite.pdb
Yara
  • PE_Header_Zero - PE File Signature
  • Generic_Malware_Zero - Generic Malware
  • Is_DotNET_DLL - (no description)
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Win_Backdoor_AsyncRAT_Zero - Win Backdoor AsyncRAT
  • Malicious_Packer_Zero - Malicious Packer

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
164.124.101.2 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path SteamCloudFileManagerLite.pdb
BitDefender Trojan.GenericKD.37458642
SentinelOne Static AI - Suspicious PE
Avira TR/Dropper.Gen
Cynet Malicious (score: 99)
Ikarus Trojan.Dropper