Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | Dec. 11, 2022, 3:31 p.m. | Dec. 11, 2022, 3:33 p.m. |
-
notepads.exe "C:\Users\test22\AppData\Local\Temp\notepads.exe"
2672
Suricata Alerts
Suricata TLS
No Suricata TLS
section | _RANDOMX |
section | _SHA3_25 |
section | _TEXT_CN |
section | _RDATA |
host | 45.155.37.228 |
Elastic | malicious (high confidence) |
ClamAV | Win.Trojan.Coinminer-9866537-0 |
ALYac | Gen:Variant.Application.Miner.24 |
Malwarebytes | BitcoinMiner.Trojan.Miner.DDS |
Zillya | Trojan.Miner.Win32.14577 |
Sangfor | Trojan.Win32.Save.a |
BitDefender | Gen:Variant.Application.Miner.24 |
Cybereason | malicious.0773b6 |
Arcabit | Trojan.Application.Miner.24 |
Cyren | W64/Coinminer.BN.gen!Eldorado |
Symantec | ML.Attribute.HighConfidence |
ESET-NOD32 | a variant of Win64/CoinMiner.PO potentially unwanted |
APEX | Malicious |
Cynet | Malicious (score: 100) |
Kaspersky | HEUR:Trojan.Win32.Miner.gen |
Alibaba | Trojan:Win64/Miners.d0f47b22 |
MicroWorld-eScan | Gen:Variant.Application.Miner.24 |
Rising | Trojan.Miner!8.EA1 (TFE:5:et5CjEw2LFL) |
Ad-Aware | Gen:Variant.Application.Miner.24 |
Sophos | XMRig Miner (PUA) |
F-Secure | Heuristic.HEUR/AGEN.1213073 |
VIPRE | Gen:Variant.Application.Miner.24 |
Trapmine | suspicious.low.ml.score |
FireEye | Generic.mg.3ceae9e0773b6366 |
Emsisoft | Gen:Variant.Application.Miner.24 (B) |
SentinelOne | Static AI - Malicious PE |
Jiangmin | Trojan.Miner.qpa |
Avira | HEUR/AGEN.1213073 |
MAX | malware (ai score=79) |
Antiy-AVL | Trojan/Win32.Miner |
Gridinsoft | Risk.Win64.CoinMiner.sd!i |
Microsoft | Trojan:Win64/DisguisedXMRigMiner |
ZoneAlarm | not-a-virus:HEUR:RiskTool.Win32.BitMiner.gen |
GData | Win64.Application.Coinminer.CP |
Detected | |
AhnLab-V3 | Win-Trojan/Miner3.Exp |
Acronis | suspicious |
McAfee | GenericRXAA-AA!3CEAE9E0773B |
Cylance | Unsafe |
Panda | Trj/CI.A |
TrendMicro-HouseCall | TROJ_GEN.R002C0DL422 |
Tencent | RiskTool.Win64.BitMiner.ha |
Ikarus | PUA.CoinMiner |
MaxSecure | Trojan.Malware.300983.susgen |
Fortinet | Riskware/CoinMiner |
AVG | Win64:Evo-gen [Trj] |
Avast | Win64:Evo-gen [Trj] |
CrowdStrike | win/grayware_confidence_60% (D) |