Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | Sept. 11, 2021, 2:58 p.m. | Sept. 11, 2021, 3:14 p.m. |
-
e9374bbefcce30c811d2f0091f1886c3.exe "C:\Users\test22\AppData\Local\Temp\e9374bbefcce30c811d2f0091f1886c3.exe"
1116
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
IP Address | Status | Action |
---|---|---|
164.124.101.2 | Active | Moloch |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
pdb_path | C:\zuvicukudezum\noji\xahi\zexinacukezu_gexixo\lutuz\milu.pdb |
section | {u'size_of_data': u'0x0007b000', u'virtual_address': u'0x00026000', u'entropy': 7.988378348431419, u'name': u'.data', u'virtual_size': u'0x02783c5c'} | entropy | 7.98837834843 | description | A section with a high entropy has been found | |||||||||
entropy | 0.666215301286 | description | Overall entropy of this PE file is high |
Bkav | W32.AIDetect.malware1 |
Elastic | malicious (high confidence) |
CAT-QuickHeal | Ransom.Stop.Z5 |
Cylance | Unsafe |
Sangfor | Trojan.Win32.Save.a |
K7GW | Trojan ( 00581f861 ) |
Cybereason | malicious.9c9ec4 |
BitDefenderTheta | Gen:NN.ZexaF.34142.UuW@ayL3jBjO |
Symantec | Packed.Generic.620 |
ESET-NOD32 | a variant of Win32/Kryptik.HMKH |
APEX | Malicious |
Paloalto | generic.ml |
Sophos | ML/PE-A |
McAfee-GW-Edition | BehavesLike.Win32.Lockbit.bc |
FireEye | Generic.mg.e9374bbefcce30c8 |
Ikarus | Trojan.Win32.Azorult |
MaxSecure | Trojan.Malware.300983.susgen |
Microsoft | Trojan:Win32/Azorult!ml |
Cynet | Malicious (score: 100) |
Acronis | suspicious |
McAfee | Packed-GDT!E9374BBEFCCE |
VBA32 | BScope.Trojan.AET.281105 |
Rising | Trojan.Kryptik!1.D975 (CLASSIC) |
SentinelOne | Static AI - Malicious PE |
eGambit | Unsafe.AI_Score_92% |
CrowdStrike | win/malicious_confidence_100% (D) |