Summary | ZeroBOX

fcon.dll

Gen1 UPX Malicious Library Malicious Packer PE64 PE File DLL OS Processor Check
Category Machine Started Completed
FILE s1_win7_x6401 April 10, 2023, 9:44 p.m. April 10, 2023, 9:47 p.m.
Size 312.0KB
Type PE32+ executable (DLL) (console) x86-64, for MS Windows
MD5 7ce957f22b7f412ab41de9604aa9c674
SHA256 7d0d7e3df2fdf261585d0491c1d4b7d47ae9d6a9562a8ac372d8d37036d8b363
CRC32 E39DFC5C
ssdeep 6144:MyA+a/5f7IRdAjeR62njOnxsfC9lHoCfdoC2SKC:e+a/5f7IzAjeR6SjS8ClaqK
PDB Path fcon.pdb
Yara
  • UPX_Zero - UPX packed file
  • Malicious_Library_Zero - Malicious_Library
  • Win32_Trojan_Gen_2_0904B0_Zero - Win32 Trojan Gen
  • OS_Processor_Check_Zero - OS Processor Check
  • Win32_Trojan_Gen_1_0904B0_Zero - Win32 Trojan Emotet
  • IsDLL - (no description)
  • IsPE64 - (no description)
  • Malicious_Packer_Zero - Malicious Packer
  • PE_Header_Zero - PE File Signature

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
164.124.101.2 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS