Summary | ZeroBOX

RECI

PE32 .NET DLL PE File DLL
Category Machine Started Completed
FILE s1_win7_x6401 May 16, 2023, 10:36 a.m. May 16, 2023, 10:36 a.m.
Size 5.5KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 459d85937f975c9571d2cb390a16c117
SHA256 3fdf3a50b34e1a5ed1becfb0699ce14e76385e7f408739d836eb33eb6192057c
CRC32 38AE7D27
ssdeep 96:izDmHh4iD2LlfZR0lJJzejFn5vYhD7o1:+DmYLWIFn5vY17o1
PDB Path C:\Users\SYSTEM ERROR\source\repos\BefDecIWtLive\RecInject\obj\Release\RecInject.pdb
Yara
  • Is_DotNET_DLL - (no description)
  • IsDLL - (no description)
  • Win_Backdoor_AsyncRAT_Zero - Win Backdoor AsyncRAT
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path C:\Users\SYSTEM ERROR\source\repos\BefDecIWtLive\RecInject\obj\Release\RecInject.pdb
Lionic Trojan.Win32.Rozena.4!c
MicroWorld-eScan Trojan.GenericKD.66914280
FireEye Trojan.GenericKD.66914280
ALYac Trojan.GenericKD.66914280
Malwarebytes Exploit.ShellCode.MSIL
VIPRE Trojan.GenericKD.66914280
Sangfor Trojan.Msil.Rozena.Vvzh
K7AntiVirus Trojan ( 0059e49f1 )
Alibaba Trojan:MSIL/Rozena.c3504323
K7GW Trojan ( 0059e49f1 )
CrowdStrike win/malicious_confidence_100% (W)
ESET-NOD32 a variant of MSIL/Rozena.HS
Paloalto generic.ml
BitDefender Trojan.GenericKD.66914280
Avast Win32:Trojan-gen
Tencent Win32.Trojan.Rozena.Sgil
Sophos Mal/Generic-S
F-Secure Trojan.TR/Rozena.ncsur
McAfee-GW-Edition Artemis!Trojan
Emsisoft Trojan.GenericKD.66914280 (B)
Avira TR/Rozena.ncsur
Antiy-AVL Trojan/MSIL.Rozena
Arcabit Trojan.Generic.D3FD07E8
GData Trojan.GenericKD.66914280
Cynet Malicious (score: 99)
McAfee Artemis!459D85937F97
MAX malware (ai score=86)
Cylance unsafe
TrendMicro-HouseCall TROJ_GEN.R03BH09E923
Ikarus Trojan.MSIL.Rozena
Fortinet MSIL/Rozena.HS!tr
AVG Win32:Trojan-gen
DeepInstinct MALICIOUS