Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | July 1, 2024, 9:25 a.m. | July 1, 2024, 9:25 a.m. |
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
IP Address | Status | Action |
---|---|---|
No hosts contacted. |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
section | INIT |
section | .plp |
section | .YRx |
section | .,"! |
section | {u'size_of_data': u'0x00159200', u'virtual_address': u'0x00b2c000', u'entropy': 7.863760767597158, u'name': u'.,"!', u'virtual_size': u'0x00159174'} | entropy | 7.8637607676 | description | A section with a high entropy has been found | |||||||||
entropy | 0.994954954955 | description | Overall entropy of this PE file is high |
Bkav | W64.AIDetectMalware |
Lionic | Trojan.Win32.Generic.4!c |
Elastic | malicious (high confidence) |
Cynet | Malicious (score: 99) |
Cylance | Unsafe |
APEX | Malicious |
F-Secure | Heuristic.HEUR/AGEN.1370877 |
Ikarus | Win32.Outbreak |
Detected | |
Avira | HEUR/AGEN.1370877 |
Microsoft | Trojan:Win32/Casdet!rfn |
DeepInstinct | MALICIOUS |
Malwarebytes | Malware.AI.4261116463 |
Fortinet | W32/PossibleThreat |
Paloalto | generic.ml |
CrowdStrike | win/malicious_confidence_70% (W) |