Summary | ZeroBOX

Yxiueeomw.jpeg

PE32 .NET DLL PE File DLL
Category Machine Started Completed
FILE s1_win7_x6402 Dec. 14, 2022, 9:37 a.m. Dec. 14, 2022, 9:38 a.m.
Size 2.1MB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 35b54727b9d1ce4ce7dda7830ca9ac88
SHA256 67abb6a85477ea63c2429fc67b7cc652a34bb08b2b60968ef5b530ddc2f4e4df
CRC32 E459F94C
ssdeep 24576:vixg457C3RvED/QvAAtIuABFciyUbneDOFSaswQWgr+A5IagGhrMPPbHx:6xg457C3RvEo/iSiswQrrrxgG9IDx
Yara
  • IsPE32 - (no description)
  • Is_DotNET_DLL - (no description)
  • Win_Backdoor_AsyncRAT_Zero - Win Backdoor AsyncRAT
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

MicroWorld-eScan Gen:Variant.MSILHeracles.52633
FireEye Gen:Variant.MSILHeracles.52633
McAfee GenericRXUP-OG!35B54727B9D1
VIPRE Gen:Variant.MSILHeracles.52633
CrowdStrike win/malicious_confidence_90% (D)
Arcabit Trojan.MSILHeracles.DCD99
Cyren W32/MSIL_Agent.DEE.gen!Eldorado
Elastic malicious (high confidence)
ESET-NOD32 a variant of MSIL/Kryptik.AGPE
Cynet Malicious (score: 99)
Kaspersky HEUR:Trojan.MSIL.Kryptik.gen
BitDefender Gen:Variant.MSILHeracles.52633
Ad-Aware Gen:Variant.MSILHeracles.52633
Emsisoft Gen:Variant.MSILHeracles.52633 (B)
F-Secure Heuristic.HEUR/AGEN.1251343
McAfee-GW-Edition GenericRXUP-OG!35B54727B9D1
Ikarus Trojan.MSIL.Crypt
Avira HEUR/AGEN.1251343
ZoneAlarm HEUR:Trojan.MSIL.Kryptik.gen
GData Gen:Variant.MSILHeracles.52633
Google Detected
AhnLab-V3 Trojan/Win.DL.C5316395
ALYac Gen:Variant.MSILHeracles.52633
MAX malware (ai score=84)
Malwarebytes Malware.AI.2809579776
MaxSecure Trojan.Malware.300983.susgen
Fortinet MSIL/Kryptik.AGJS!tr