Summary | ZeroBOX

spoofer.sys

PE64 PE File
Category Machine Started Completed
FILE s1_win7_x6401 July 2, 2024, 10:15 a.m. July 2, 2024, 10:15 a.m.
Size 11.7KB
Type PE32+ executable (native) x86-64, for MS Windows
MD5 ece894602ee9353cce23dc4ece8a5445
SHA256 93a516ebdd6bb1fe9dc5951b21fbacdff660997548bbb3df57dba92417caa33d
CRC32 5E8410FE
ssdeep 192:QreOkMkNIcwT4ZdVynlkR2N6quhu58JLTWY4fuo5XDNboli:weuPnlkR2N6b3LTS0i
PDB Path \\192.168.0.111\работа\414\driver\x64\Debug\hwid.pdb
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE64 - (no description)

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path \\192.168.0.111\работа\414\driver\x64\Debug\hwid.pdb
section INIT
Bkav W64.AIDetectMalware
Lionic Trojan.Win32.Hitbrovi.4!c
Skyhigh Artemis!Trojan
ALYac Gen:Variant.Tedy.576430
Cylance Unsafe
VIPRE Gen:Variant.Tedy.576430
Sangfor Trojan.Win32.Agent.V1ks
BitDefender Gen:Variant.Tedy.576430
Cybereason malicious.02ee93
Arcabit Trojan.Tedy.D8CBAE
Symantec Trojan.Gen.MBT
APEX Malicious
McAfee Artemis!ECE894602EE9
Avast Win64:MalwareX-gen [Trj]
MicroWorld-eScan Gen:Variant.Tedy.576430
Emsisoft Gen:Variant.Tedy.576430 (B)
F-Secure Trojan.TR/Hitbrovi.xacle
McAfeeD ti!93A516EBDD6B
FireEye Gen:Variant.Tedy.576430
Sophos Generic Reputation PUA (PUA)
Ikarus Trojan.Hitbrovi
Google Detected
Avira TR/Hitbrovi.xacle
MAX malware (ai score=87)
Antiy-AVL Trojan/Win32.Hitbrovi
Gridinsoft Malware.Win64.AI.sa
Microsoft PUA:Win32/Packunwan
GData Gen:Variant.Tedy.576430
DeepInstinct MALICIOUS
Malwarebytes Malware.AI.2073742914
TrendMicro-HouseCall TROJ_GEN.R002H09E124
MaxSecure Trojan.Malware.249102189.susgen
AVG Win64:MalwareX-gen [Trj]
alibabacloud Trojan:Win/Tedy.Gen