Summary | ZeroBOX

x64.dll

UPX Downloader Malicious Library PE64 PE File DLL OS Processor Check
Category Machine Started Completed
FILE s1_win7_x6401 April 27, 2023, 11:34 a.m. April 27, 2023, 11:34 a.m.
Size 90.0KB
Type PE32+ executable (DLL) (GUI) x86-64, for MS Windows
MD5 679795d1f387d9a6bedda306964f7aca
SHA256 275a9a7b99f3474cbf8a61964a6022e3cf7baf76e0ee2fba31a708d8f1e25bd0
CRC32 5C4A02EA
ssdeep 1536:PlDf5UB2vFMiSI6vlOV9JZ+OLJs7UsWe1Ed09dlf/4ia:PlDf5JmiB6tarZ+ii7bcMN/4ia
PDB Path C:\DLL\Dll\x64\Release\Dll.pdb
Yara
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
  • IsDLL - (no description)
  • Network_Downloader - File Downloader
  • IsPE64 - (no description)
  • PE_Header_Zero - PE File Signature
  • Malicious_Library_Zero - Malicious_Library

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path C:\DLL\Dll\x64\Release\Dll.pdb
section _RDATA
Lionic Trojan.Win32.Agent.Y!c
MicroWorld-eScan Gen:Variant.Tedy.236313
FireEye Gen:Variant.Tedy.236313
CAT-QuickHeal TrojanDownloader.Agent
McAfee Artemis!679795D1F387
VIPRE Gen:Variant.Tedy.236313
Sangfor Downloader.Win32.Small.Vd2v
K7AntiVirus Riskware ( 00584baa1 )
BitDefender Gen:Variant.Tedy.236313
K7GW Riskware ( 00584baa1 )
Cyren W64/ABRisk.MNKJ-3712
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Generik.FUXZVC
Cynet Malicious (score: 100)
Paloalto generic.ml
Kaspersky UDS:Trojan-Downloader.Win32.Agent
Alibaba Trojan:Win32/Malagent.6c5a7bbc
ViRobot Trojan.Win32.Z.Agent.92160.BMC
Rising Downloader.Small!8.B41 (CLOUD)
Emsisoft Gen:Variant.Tedy.236313 (B)
Zillya Downloader.Agent.Win32.501138
TrendMicro TROJ_GEN.R002C0DKB22
McAfee-GW-Edition BehavesLike.Win64.Generic.nm
Trapmine suspicious.low.ml.score
Webroot W32.Trojan.GenKD
Avira TR/Dldr.Small.tvnxz
MAX malware (ai score=87)
Antiy-AVL Trojan[Downloader]/Win32.Small
Microsoft Trojan:Win32/Malagent!MSR
Gridinsoft Malware.Win64.Downloader.cc
Arcabit Trojan.Tedy.D39B19
GData Gen:Variant.Tedy.236313
Google Detected
Acronis suspicious
ALYac Gen:Variant.Tedy.236313
Malwarebytes Malware.AI.4235280156
Panda Trj/CI.A
TrendMicro-HouseCall TROJ_GEN.R002C0DKB22
Tencent Win32.Trojan.Dldr.Jtgl
MaxSecure Trojan.Malware.7520.susgen
Fortinet W32/PossibleThreat
AVG Win64:Malware-gen
Avast Win64:Malware-gen