Summary | ZeroBOX

4496vTvIHfMUrCXRfmmfIKPViTIY.exe

UPX Malicious Library Malicious Packer PE64 PE File OS Processor Check
Category Machine Started Completed
FILE s1_win7_x6403_us April 25, 2023, 5:48 p.m. April 25, 2023, 5:51 p.m.
Size 1.8MB
Type PE32+ executable (GUI) x86-64, for MS Windows
MD5 472582241e1d476578bd3b4dd159fd52
SHA256 8c2f279f19084c2f3e22142293aa362052d74122a46d0bcb8bed5abf3b6c697c
CRC32 96F21FBB
ssdeep 24576:bWQ2euysaEizverUghVHRHrWf8RBNOaGChKKmvmC1bV0T2A8kZZzXTVqb85GLcTl:igEQ2YghPHrWf8tGCMKm904kZZ1b5G
Yara
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
  • IsPE64 - (no description)
  • Malicious_Packer_Zero - Malicious Packer
  • PE_Header_Zero - PE File Signature
  • Malicious_Library_Zero - Malicious_Library

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

section _RDATA
Lionic Trojan.Win32.Mikey.4!c
Cynet Malicious (score: 100)
ALYac Gen:Variant.Mikey.146525
Cylance unsafe
VIPRE Gen:Variant.Mikey.146525
Sangfor Infostealer.Win64.Agent.V3x7
Alibaba TrojanPSW:Win64/MalwareX.b6a8d26e
CrowdStrike win/malicious_confidence_70% (W)
Cyren W64/Kryptik.JQZ.gen!Eldorado
Symantec ML.Attribute.HighConfidence
Elastic malicious (moderate confidence)
ESET-NOD32 a variant of Win64/PSW.Agent.DR
APEX Malicious
BitDefender Gen:Variant.Mikey.146525
MicroWorld-eScan Gen:Variant.Mikey.146525
Avast Win64:MalwareX-gen [Trj]
Tencent Win32.Trojan.Agen.Vdkl
Emsisoft Gen:Variant.Mikey.146525 (B)
F-Secure Heuristic.HEUR/AGEN.1319430
McAfee-GW-Edition BehavesLike.Win64.BrowseFox.th
FireEye Gen:Variant.Mikey.146525
Sophos Mal/Generic-S
GData Gen:Variant.Mikey.146525
Avira HEUR/AGEN.1319430
Antiy-AVL Trojan/Win32.Wacatac
Gridinsoft Ransom.Win64.Sabsik.sa
Arcabit Trojan.Mikey.D23C5D
Microsoft Trojan:Win32/Sabsik.FL.B!ml
Google Detected
AhnLab-V3 Malware/Win.Generic.C5415278
McAfee Artemis!472582241E1D
MAX malware (ai score=82)
Malwarebytes Malware.AI.2098936833
Rising Stealer.Agent!8.C2 (TFE:5:kpRjsb6V97B)
MaxSecure Trojan.Malware.300983.susgen
Fortinet W64/Agent.DR!tr.pws
AVG Win64:MalwareX-gen [Trj]
DeepInstinct MALICIOUS