Summary | ZeroBOX

Moneta-Bankdeposit.txt.jar

ZIP Format
Category Machine Started Completed
FILE s1_win7_x6401 June 13, 2024, 1:10 p.m. June 13, 2024, 1:12 p.m.
Size 527.3KB
Type Zip archive data, at least v2.0 to extract
MD5 55ef9bbcb17c61bd3687d9abf98d6dc9
SHA256 993b27eb1194b953d2e9f83a19446241d75cadf11f11a126be273e4aba40e159
CRC32 7BB3C229
ssdeep 384:CaVbemHY8zCz4IoteYLoXYGMMxeCdsBuzFLkKpXfER:CaVbemHYgo4I0emUYObdsBuzBtA
Yara
  • zip_file_format - ZIP file format

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Time & API Arguments Status Return Repeated

GlobalMemoryStatusEx

1 1 0
Time & API Arguments Status Return Repeated

NtProtectVirtualMemory

process_identifier: 2556
stack_dep_bypass: 0
stack_pivoted: 0
heap_dep_bypass: 1
length: 2555904
protection: 64 (PAGE_EXECUTE_READWRITE)
base_address: 0x00000000024c0000
process_handle: 0xffffffffffffffff
1 0 0
BitDefender Trojan.GenericKD.73108442
Arcabit Trojan.Generic.D45B8BDA
Symantec Trojan.Maljava
ESET-NOD32 Java/Agent.RP
Kaspersky HEUR:Trojan.Java.Agent.gen
MicroWorld-eScan Trojan.GenericKD.73108442
Emsisoft Trojan.GenericKD.73108442 (B)
FireEye Trojan.GenericKD.73108442
Microsoft Trojan:Win32/Casdet!rfn
ZoneAlarm HEUR:Trojan.Java.Agent.gen
GData Trojan.GenericKD.73108442
MAX malware (ai score=87)
count 2849 name heapspray process java.exe total_mb 712 length 262144 protection PAGE_READWRITE