Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6403_us | March 9, 2023, 9:52 a.m. | March 9, 2023, 9:54 a.m. |
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
IP Address | Status | Action |
---|---|---|
No hosts contacted. |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
pdb_path | notepad.pdb |
resource name | MUI |
Elastic | malicious (moderate confidence) |
APEX | Malicious |
Kaspersky | Trojan-Downloader.Win32.Agent.xyankv |
Tencent | Win32.Trojan-Downloader.Agent.Gjgl |
AhnLab-V3 | Trojan/Win.Generic.C5392277 |
section | {u'size_of_data': u'0x00019c00', u'virtual_address': u'0x0001f000', u'entropy': 7.370267791781893, u'name': u'.rsrc', u'virtual_size': u'0x00019af0'} | entropy | 7.37026779178 | description | A section with a high entropy has been found | |||||||||
entropy | 0.486997635934 | description | Overall entropy of this PE file is high |