Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | Sept. 15, 2023, 5:25 p.m. | Sept. 15, 2023, 5:27 p.m. |
-
esgla2i5.exe "C:\Users\test22\AppData\Local\Temp\esgla2i5.exe"
2556
Name | Response | Post-Analysis Lookup |
---|---|---|
z.nnnaajjjgc.com | 156.236.72.121 |
Suricata Alerts
Suricata TLS
No Suricata TLS
pdb_path | dxdiag.pdb |
resource name | MUI |
Elastic | malicious (moderate confidence) |
MicroWorld-eScan | Trojan.GenericKD.69282282 |
Malwarebytes | Generic.Malware/Suspicious |
Alibaba | Trojan:Win64/GenKryptik.51cf9c86 |
Arcabit | Trojan.Generic.D42129EA |
Symantec | ML.Attribute.HighConfidence |
ESET-NOD32 | a variant of Win64/GenKryptik.GLDA |
Cynet | Malicious (score: 99) |
APEX | Malicious |
Kaspersky | UDS:DangerousObject.Multi.Generic |
BitDefender | Trojan.GenericKD.69282282 |
Avast | Win64:Evo-gen [Trj] |
Tencent | Win32.Trojan.Crypt.Xmhl |
Emsisoft | Trojan.GenericKD.69282282 (B) |
F-Secure | Trojan.TR/Crypt.Agent.htfdt |
DrWeb | Trojan.DownLoader45.63656 |
TrendMicro | Trojan.Win64.PRIVATELOADER.YXDIOZ |
McAfee-GW-Edition | BehavesLike.Win64.Dropper.fh |
FireEye | Trojan.GenericKD.69282282 |
Sophos | Mal/Generic-S |
Ikarus | Win32.Outbreak |
Avira | TR/Crypt.Agent.htfdt |
Gridinsoft | Ransom.Win64.Sabsik.sa |
Microsoft | Trojan:Win64/PrivateLoader.RPZ!MTB |
ViRobot | Trojan.Win.Z.Agent.342016.AN |
ZoneAlarm | UDS:DangerousObject.Multi.Generic |
Detected | |
AhnLab-V3 | Trojan/Win.Generic.C5464187 |
McAfee | GenericRXAA-FA!2273152B5565 |
MAX | malware (ai score=82) |
Cylance | unsafe |
Panda | Trj/Chgt.AD |
TrendMicro-HouseCall | Trojan.Win64.PRIVATELOADER.YXDIOZ |
Rising | Downloader.Agent!8.B23 (TFE:2:EmnL0dJ0FNC) |
Fortinet | W64/GenKryptik.GLDA!tr |
AVG | Win64:Evo-gen [Trj] |
DeepInstinct | MALICIOUS |
CrowdStrike | win/malicious_confidence_100% (W) |