Summary | ZeroBOX

OnlineFix64.dll

PE64 PE File DLL
Category Machine Started Completed
FILE s1_win7_x6403_us Dec. 15, 2023, 3:02 p.m. Dec. 15, 2023, 3:05 p.m.
Size 10.3MB
Type PE32+ executable (DLL) (GUI) x86-64, for MS Windows
MD5 0cccdd04b47dfcd6d20b4d1e21738cca
SHA256 a188ff24aec863479408cee54b337a2fce25b9372ba5573595f7a54b784c65f8
CRC32 90109E5E
ssdeep 196608:g3giiPVCn+q0Xa8YNUAu9weVbiGEL92ZjSnzo2+pIyis:gQ9VC9oeUAYgpzmph
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE64 - (no description)

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
164.124.101.2 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

section _RDATA
section .of0
section .of1
section .of2
section {u'size_of_data': u'0x00a41600', u'virtual_address': u'0x007f2000', u'entropy': 7.792344098265798, u'name': u'.of2', u'virtual_size': u'0x00a41408'} entropy 7.79234409827 description A section with a high entropy has been found
entropy 0.99980958728 description Overall entropy of this PE file is high
Bkav W64.AIDetectMalware
Lionic Trojan.Win32.VMProtect.4!c
MicroWorld-eScan Trojan.GenericKD.70399118
CAT-QuickHeal Trojan.Agent
Skyhigh BehavesLike.Win64.PWSZbot.vc
ALYac Trojan.GenericKD.70399118
VIPRE Trojan.GenericKD.70399118
Sangfor Hacktool.Win64.VMProtect.V78e
K7AntiVirus Trojan ( 005ae5201 )
Alibaba HackTool:Win32/VMProtect.7179b257
K7GW Trojan ( 005ae5201 )
CrowdStrike win/grayware_confidence_100% (D)
Symantec Trojan Horse
Elastic malicious (moderate confidence)
ESET-NOD32 a variant of Win64/Packed.VMProtect.AC suspicious
Cynet Malicious (score: 100)
BitDefender Trojan.GenericKD.70399118
Avast Win64:MiscX-gen [PUP]
Emsisoft Trojan.GenericKD.70399118 (B)
FireEye Trojan.GenericKD.70399118
Sophos Generic Reputation PUA (PUA)
Webroot W32.Hack.Tool
Varist W64/ABRisk.ORWK-0817
MAX malware (ai score=84)
Antiy-AVL Trojan[Packed]/Win64.VMProtect
Microsoft HackTool:Win32/GameHack!MSR
Gridinsoft Trojan.Win64.Packed.ns
Arcabit Trojan.Generic.D432348E
GData Trojan.GenericKD.70399118
Google Detected
McAfee Artemis!0CCCDD04B47D
Cylance unsafe
Panda Trj/Chgt.AD
TrendMicro-HouseCall TROJ_GEN.R002H0CKM23
MaxSecure Trojan.Malware.220349854.susgen
Fortinet Riskware/Application
AVG Win64:MiscX-gen [PUP]
DeepInstinct MALICIOUS