Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6403_us | July 14, 2024, 5:45 p.m. | July 14, 2024, 5:51 p.m. |
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\random.dll,
2152 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\random.dll,AwcdthodsHlu
316
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
IP Address | Status | Action |
---|---|---|
No hosts contacted. |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
section | {u'size_of_data': u'0x0014b000', u'virtual_address': u'0x00001000', u'entropy': 7.9731148905685085, u'name': u'.text', u'virtual_size': u'0x0014a2c9'} | entropy | 7.97311489057 | description | A section with a high entropy has been found | |||||||||
section | {u'size_of_data': u'0x00125000', u'virtual_address': u'0x0014c000', u'entropy': 7.998092396650459, u'name': u'.rdata', u'virtual_size': u'0x00124d47'} | entropy | 7.99809239665 | description | A section with a high entropy has been found | |||||||||
entropy | 0.829787234043 | description | Overall entropy of this PE file is high |
Bkav | W32.AIDetectMalware |
Skyhigh | BehavesLike.Win32.Expiro.vc |
Cylance | Unsafe |
Symantec | Trojan.Emotet |
Elastic | malicious (high confidence) |
Avast | Win32:TrojanX-gen [Trj] |
Kaspersky | VHO:Trojan-Downloader.Win32.Mufanom.gen |
NANO-Antivirus | Virus.Win32.Gen.ccmw |
Rising | Trojan.Generic@AI.100 (RDMK:cmRtazomeJBnHH+dvVirYZ7wylUB) |
BitDefenderTheta | Gen:NN.ZedlaF.36808.8w8@aidodxn |
Ikarus | Trojan.Win32.Krypt |
Detected | |
Kingsoft | malware.kb.a.997 |
ZoneAlarm | VHO:Trojan-Downloader.Win32.Mufanom.gen |
McAfee | Trojan-FUYR!0693990C67E4 |
DeepInstinct | MALICIOUS |
Fortinet | W32/Kryptik.HVWI!tr |
AVG | Win32:TrojanX-gen [Trj] |
CrowdStrike | win/malicious_confidence_100% (D) |