Summary | ZeroBOX

new_9_2022.exe

Generic Malware UPX Malicious Packer PE64 PE File OS Processor Check
Category Machine Started Completed
FILE s1_win7_x6403_us March 29, 2023, 5:33 p.m. March 29, 2023, 5:37 p.m.
Size 27.5KB
Type PE32+ executable (console) x86-64, for MS Windows
MD5 b626d6f8c491833f785c546389dcdbea
SHA256 9a676c29863d06a1344b7b983b9f8c15978ca9914542bec1c20c1c5e4985c529
CRC32 BB9F8D69
ssdeep 384:4vPhI/IqJGe/2u3bM9Var5vtLjnFToyRXU8HQSb2Wu6DsjblsgwHjJ:4XuWa2KDrNtPAhSCFhsr
PDB Path D:\POC\new_9_2022\x64\Release\new_9_2022.pdb
Yara
  • UPX_Zero - UPX packed file
  • Generic_Malware_Zero - Generic Malware
  • OS_Processor_Check_Zero - OS Processor Check
  • IsPE64 - (no description)
  • Malicious_Packer_Zero - Malicious Packer
  • PE_Header_Zero - PE File Signature

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path D:\POC\new_9_2022\x64\Release\new_9_2022.pdb
Lionic Trojan.Win32.CVE-2022-35803.4!c
MicroWorld-eScan Trojan.GenericKD.66121081
FireEye Trojan.GenericKD.66121081
McAfee Artemis!B626D6F8C491
Sangfor Exploit.Win64.CVE.Vd7r
CrowdStrike win/malicious_confidence_90% (D)
Arcabit Trojan.Generic.D3F0ED79
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
APEX Malicious
Cynet Malicious (score: 100)
Kaspersky HEUR:Exploit.Win64.CVE-2022-35803.a
BitDefender Trojan.GenericKD.66121081
Tencent Win64.Exploit.Cve-2022-35803.Pnkl
VIPRE Trojan.GenericKD.66121081
McAfee-GW-Edition BehavesLike.Win64.Rootkit.mm
Trapmine suspicious.low.ml.score
Emsisoft Trojan.GenericKD.66121081 (B)
Avira TR/Redcap.jzrir
Gridinsoft Trojan.Win64.Downloader.sa
GData Trojan.GenericKD.66121081
ALYac Exploit.CVE-2022-35803
MAX malware (ai score=83)
TrendMicro-HouseCall TROJ_GEN.R002H0CCS23
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/PossibleThreat
Panda Trj/Chgt.AD