Summary | ZeroBOX

ncr.hta

UPX PE32 PE File
Category Machine Started Completed
FILE s1_win7_x6401 March 25, 2024, 9:18 a.m. March 25, 2024, 9:20 a.m.
Size 131.7KB
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 e4fa89413c3b355aaffa71759bae88ea
SHA256 d1d5a89d99751e1d9be2671f6f29315433990e1109aa633cbfa0fae6ac0f3568
CRC32 3ED4CECC
ssdeep 384:y7cqdIxXkRswWS/YWyiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiLiiiiiriiiih:yk0sS7wk0sS71sk0sS7hzk0sS7
PDB Path calc.pdb
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path calc.pdb
Bkav W32.Common.19D0AB1D
Lionic Trojan.Win32.Generic.4!c
CAT-QuickHeal Trojan.Script
Skyhigh RDN/Generic.dx
ALYac Gen:Variant.Strictor.288077
Cylance unsafe
VIPRE Gen:Variant.Strictor.288077
Sangfor Trojan.Win32.Agent.V1md
BitDefender Gen:Variant.Strictor.288077
Arcabit Trojan.Strictor.D4654D
Symantec Trojan Horse
McAfee RDN/Generic.dx
Avast Win32:Malware-gen
Kaspersky UDS:DangerousObject.Multi.Generic
Alibaba Trojan:Script/Generic.2831657c
MicroWorld-eScan Gen:Variant.Strictor.288077
Rising Trojan.Generic!8.C3 (CLOUD)
Emsisoft Gen:Variant.Strictor.288077 (B)
FireEye Gen:Variant.Strictor.288077
Sophos Mal/Generic-S
MAX malware (ai score=89)
Kingsoft Win32.Troj.Unknown.a
Microsoft Trojan:Win32/Znyonm
ZoneAlarm UDS:DangerousObject.Multi.Generic
GData Gen:Variant.Strictor.288077
DeepInstinct MALICIOUS
Malwarebytes Generic.Malware/Suspicious
Panda Trj/Chgt.AD
Fortinet W32/PossibleThreat
AVG Win32:Malware-gen
CrowdStrike win/malicious_confidence_60% (D)
alibabacloud Trojan:Multi/Strictor