Summary | ZeroBOX

postbox.exe

Gen1 Generic Malware Malicious Library UPX Malicious Packer MSOffice File PE64 PE File OS Processor Check dll DllRegisterServer
Category Machine Started Completed
FILE s1_win7_x6403_us July 31, 2024, 7:28 a.m. July 31, 2024, 7:31 a.m.
Size 22.0MB
Type PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows
MD5 c53bb047b93851b66fead144d7c46ff3
SHA256 54092d2fb30f9258ab9817de3b886997dbefdee2963b4d051b70c0309aea99e6
CRC32 B83959C7
ssdeep 98304:8/9by/rwaIUiwqrhpZ28B8ENcFsBEu7eHIHZvEGIjwXApNZciGC5mNX:JrwaIuq9G8BVNcSeJGLqciGqm
Yara
  • DllRegisterServer_Zero - execute regsvr32.exe
  • Malicious_Library_Zero - Malicious_Library
  • Win32_Trojan_Gen_1_0904B0_Zero - Win32 Trojan Emotet
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • IsPE64 - (no description)
  • Microsoft_Office_File_Zero - Microsoft Office File
  • UPX_Zero - UPX packed file
  • Generic_Malware_Zero - Generic Malware
  • OS_Processor_Check_Zero - OS Processor Check

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

No signatures