Summary | ZeroBOX

StealerClient_Cpp.exe

UPX Malicious Library Malicious Packer PE File OS Processor Check PE32
Category Machine Started Completed
FILE s1_win7_x6403_us Sept. 14, 2023, 7:35 a.m. Sept. 14, 2023, 7:39 a.m.
Size 1.3MB
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 a2a68318da5737ff0327f6d53438be60
SHA256 4917998ae87d6701c157bc4026f8418585148329cefdb3d96a8b968bf6b9704a
CRC32 89DDDD27
ssdeep 24576:GtpKQCcDpR/XmaX/BKx321wKbM3IFZK0FvtTrP7NraTXJC6zo3+fGua:vc/pMQbM3IvK0tt37NraTjzo3+fGua
Yara
  • UPX_Zero - UPX packed file
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • Malicious_Packer_Zero - Malicious Packer
  • OS_Processor_Check_Zero - OS Processor Check

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Bkav W32.AIDetectMalware
Lionic Trojan.Win32.RisePro.4!c
Elastic malicious (high confidence)
MicroWorld-eScan Gen:Variant.Lazy.391192
ALYac Gen:Variant.Doris.15071
Malwarebytes Spyware.PasswordStealer
Sangfor Infostealer.Win32.Agent.Vs1f
K7AntiVirus Trojan ( 005956e81 )
K7GW Trojan ( 005956e81 )
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/Agent.ADVG
APEX Malicious
Kaspersky HEUR:Trojan-PSW.Win32.RisePro.gen
BitDefender Gen:Variant.Lazy.391192
Tencent Malware.Win32.Gencirc.13eeea47
Sophos Mal/Generic-S
F-Secure Trojan.TR/Agent.rapml
DrWeb Trojan.Siggen21.28024
VIPRE Gen:Variant.Doris.15071
McAfee-GW-Edition BehavesLike.Win32.Dropper.th
Trapmine suspicious.low.ml.score
FireEye Generic.mg.a2a68318da5737ff
Emsisoft Gen:Variant.Doris.15071 (B)
Ikarus Win32.Outbreak
Avira TR/Agent.rapml
Antiy-AVL Trojan/Win32.Agent
Microsoft Trojan:Win32/Casdet!rfn
Arcabit Trojan.Doris.D3ADF
ZoneAlarm HEUR:Trojan-PSW.Win32.RisePro.gen
GData Gen:Variant.Doris.15071
Cynet Malicious (score: 100)
AhnLab-V3 Trojan/Win.Generic.C5471974
McAfee Artemis!A2A68318DA57
MAX malware (ai score=84)
DeepInstinct MALICIOUS
VBA32 TrojanPSW.RisePro
Cylance unsafe
Rising Downloader.Agent!1.D93C (CLASSIC)
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/Agent.GOC!tr
BitDefenderTheta Gen:NN.ZexaF.36662.uv0@a8760bok
AVG Win32:PWSX-gen [Trj]
Avast Win32:PWSX-gen [Trj]
CrowdStrike win/malicious_confidence_90% (D)