Summary | ZeroBOX

shattgojas.exe

PE32 PE File
Category Machine Started Completed
FILE s1_win7_x6402 Sept. 7, 2021, 6:49 p.m. Sept. 7, 2021, 6:57 p.m.
Size 185.0KB
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 3dd433076befeaeb67f2e9aee5207b9a
SHA256 8744b1bba11ed42a3e422599468f9d7aa117bf7264875591a82ebbf1dc4dbffa
CRC32 52344C17
ssdeep 1536:rrhRpJvQmBRn7PGCbzEyUUFcST5UigiBwOM:rrhRromBlPGCUyUUFjbB
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)

Name Response Post-Analysis Lookup
img.neko.airforce 167.172.239.151
IP Address Status Action
164.124.101.2 Active Moloch
167.172.239.151 Active Moloch

Lionic Trojan.Multi.Generic.4!c
MicroWorld-eScan Gen:Variant.Razy.920150
FireEye Generic.mg.3dd433076befeaeb
McAfee Generic Obfuscated.g
Cylance Unsafe
Cybereason malicious.0c816b
Cyren W32/Trojan.ELIG-5001
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/TrojanDownloader.Agent.FVZ
APEX Malicious
Paloalto generic.ml
Kaspersky UDS:DangerousObject.Multi.Generic
BitDefender Gen:Variant.Razy.920150
NANO-Antivirus Virus.Win32.Gen.ccmw
Avast Win32:TrojanX-gen [Trj]
Rising Trojan.Generic@ML.81 (RDML:E6EUSfvJrr05vJDrNP8+Jw)
Ad-Aware Gen:Variant.Razy.920150
Sophos Mal/Generic-S
McAfee-GW-Edition BehavesLike.Win32.Backdoor.ct
Emsisoft Gen:Variant.Razy.920150 (B)
Avira TR/Crypt.ZPACK.Gen
Microsoft Trojan:Win32/Sabsik.FL.B!ml
GData Gen:Variant.Razy.920150
Cynet Malicious (score: 100)
Acronis suspicious
BitDefenderTheta Gen:NN.ZexaF.34126.luW@a4tvszdi
MAX malware (ai score=81)
VBA32 BScope.Trojan.Injects
SentinelOne Static AI - Malicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/Agent.FVZ!tr
AVG Win32:TrojanX-gen [Trj]
CrowdStrike win/malicious_confidence_100% (W)