Summary | ZeroBOX

11.exe

Generic Malware Malicious Library UPX PE File OS Processor Check PE32
Category Machine Started Completed
FILE s1_win7_x6403_us June 18, 2024, 7:39 a.m. June 18, 2024, 7:41 a.m.
Size 280.0KB
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 792d2de7d845aac6a8e94566ca610952
SHA256 45fb98f7ecd43b92f5d67c34905732326b83d7ff34c3117a6e58e5f9cfb8fd17
CRC32 A1C537D1
ssdeep 3072:KZRQxhmYHAVW6SlPVSMTWyRW9jXvzAAvZiOBP5ygfzb+Zz5fCbHZUqXEb0:eenVSMTFW9jUAhPcgbbWsPY0
PDB Path D:\SVN\trunk\毛毛\反向\Chicken\Release\Chicken.pdb
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
  • Generic_Malware_Zero - Generic Malware
  • OS_Processor_Check_Zero - OS Processor Check

IP Address Status Action
164.124.101.2 Active Moloch
47.111.82.157 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path D:\SVN\trunk\毛毛\反向\Chicken\Release\Chicken.pdb
description 11.exe tried to sleep 157 seconds, actually delayed analysis time by 157 seconds
dead_host 47.111.82.157:60003