Summary | ZeroBOX

WJveX71agmOQ6Gw_1698762642.jpg.exe

Generic Malware Antivirus .NET DLL PE File DLL PE32
Category Machine Started Completed
FILE s1_win7_x6401 Nov. 2, 2023, 10:30 a.m. Nov. 2, 2023, 10:30 a.m.
Size 71.5KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 83c130bed712ef7ac4297b9c9d5f70e9
SHA256 684e3173946dac1a89bb4f6cb9d56f50569a2ac49338b12d97ce38792b1140b5
CRC32 79A1941A
ssdeep 1536:N+wjaUtC6LsO8FPnBa/9b+mn3eJG53G73mxdvdv:N+wmD6IOEPnBa/9b+mn32GhNvN
PDB Path F:\Arquivos\Crypter bypass all and vbs e js 13-16-2023 original png\New Private Panell Src 3.0 PASTE.EE\New Private Panell Src 3.0\Rump C# 3.0 Fix New\ClassLibrary1\obj\Debug\Fiber.pdb
Yara
  • Is_DotNET_DLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Antivirus - Contains references to security software
  • Generic_Malware_Zero - Generic Malware

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path F:\Arquivos\Crypter bypass all and vbs e js 13-16-2023 original png\New Private Panell Src 3.0 PASTE.EE\New Private Panell Src 3.0\Rump C# 3.0 Fix New\ClassLibrary1\obj\Debug\Fiber.pdb
CrowdStrike win/malicious_confidence_90% (D)
ESET-NOD32 a variant of MSIL/TrojanDownloader.Agent.PIX
Kaspersky VHO:Trojan.MSIL.Disfa.gen
ZoneAlarm VHO:Trojan.MSIL.Disfa.gen
AhnLab-V3 Trojan/Win32.RL_Generic.C4281038
DeepInstinct MALICIOUS
SentinelOne Static AI - Malicious PE
Fortinet MSIL/Injector.UWS!tr
section {u'size_of_data': u'0x00011600', u'virtual_address': u'0x00002000', u'entropy': 6.934842400290796, u'name': u'.text', u'virtual_size': u'0x00011524'} entropy 6.93484240029 description A section with a high entropy has been found
entropy 0.978873239437 description Overall entropy of this PE file is high