Summary | ZeroBOX

64_6666.exe

PE64 PE File
Category Machine Started Completed
FILE s1_win7_x6401 Nov. 27, 2023, 9:23 a.m. Nov. 27, 2023, 9:27 a.m.
Size 7.0KB
Type PE32+ executable (GUI) x86-64, for MS Windows
MD5 dbfe72085ba54253275429f078307fbd
SHA256 91429407c3dcd1947735028b7b8632187edd45bbd0e19b7ae64a9a86574c3186
CRC32 312684A9
ssdeep 24:eFGStrJ9u0/6LKnZdkBQAVbOx+gYKZqA7eNDMSCvOXpmB:is0uCkBQ1x+hmSD9C2kB
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE64 - (no description)

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
164.124.101.2 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

section .uqpy
dead_host 192.168.80.134:6666
Bkav W64.AIDetectMalware
Lionic Trojan.Win32.Metasploit.4!c
MicroWorld-eScan Trojan.Metasploit.A
CAT-QuickHeal HackTool.Metasploit.S9212471
Skyhigh BehavesLike.Win64.Infected.zz
ALYac Trojan.Metasploit.A
Malwarebytes Trojan.MalPack
VIPRE Trojan.Metasploit.A
Sangfor Suspicious.Win32.Save.a
K7AntiVirus Trojan ( 004fae881 )
Alibaba Trojan:Win64/Metasploit.e7bf078b
K7GW Trojan ( 004fae881 )
CrowdStrike win/malicious_confidence_100% (W)
VirIT Trojan.Win32.Generic.BZPS
Symantec Meterpreter
Elastic Windows.Trojan.Metasploit
ESET-NOD32 a variant of Win64/Rozena.M
APEX Malicious
Kaspersky HEUR:Trojan.Win64.Packed.gen
BitDefender Trojan.Metasploit.A
SUPERAntiSpyware Trojan.Agent/Gen-MalPack
Avast Win32:MsfShell-V [Hack]
Rising Trojan.Kryptik!1.A2F4 (CLASSIC)
Emsisoft Trojan.Metasploit.A (B)
F-Secure Trojan.TR/Crypt.XPACK.Gen7
DrWeb BackDoor.Shell.244
TrendMicro TROJ64_SWRORT.SM1
Trapmine malicious.high.ml.score
FireEye Generic.mg.dbfe72085ba54253
Sophos ATK/Meter-A
SentinelOne Static AI - Malicious PE
MAX malware (ai score=83)
Jiangmin Trojan.Generic.auyjj
Webroot W32.Malware.Gen
Google Detected
Avira TR/Crypt.XPACK.Gen7
Varist W64/S-c4a4ef26!Eldorado
Antiy-AVL GrayWare/Win32.Rozena.j
Kingsoft Win32.Troj.Unknown.a
Microsoft Trojan:Win64/Metasploit.CRTD!MTB
Gridinsoft Trojan.Win64.Gen.tr
Arcabit Trojan.Metasploit.A
ZoneAlarm HEUR:Trojan.Win64.Packed.gen
GData Win64.Trojan.Agent.GRX1TL
Cynet Malicious (score: 100)
AhnLab-V3 Trojan/Win32.RL_Generic.R357794
Acronis suspicious
McAfee Trojan-FJIN!DBFE72085BA5
Cylance unsafe
Zoner Probably Heur.ExeHeaderL