Summary | ZeroBOX

js.jpeg.exe

Malicious Library UPX .NET DLL PE File DLL OS Processor Check PE32
Category Machine Started Completed
FILE s1_win7_x6402 Aug. 1, 2024, 10:55 a.m. Aug. 1, 2024, 10:55 a.m.
Size 1.1MB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 ca6a65c0bc674566fe409c56a5ea9301
SHA256 a90a214591681552bfd0ec86817e2a4e1e7565b089ba084b25164766f6834c7e
CRC32 F155AC02
ssdeep 12288:fETojCqUEt5Pum3MJACa7jkI0H2CRzsrQRK/WwwWFS+FC57zmSW9D1HxCNMwXHb1:bbtJ3kI022tzGDeNMm7sQqqv7fhb
PDB Path H:\New Private Panell Src 3.0 New\New Private Panell Src 3.0 2025\New Private Panell Src 3.0\dnlib-fuscator-master win7\src\obj\Debug\dnlib.pdb
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
  • Is_DotNET_DLL - (no description)
  • OS_Processor_Check_Zero - OS Processor Check

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
164.124.101.2 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path H:\New Private Panell Src 3.0 New\New Private Panell Src 3.0 2025\New Private Panell Src 3.0\dnlib-fuscator-master win7\src\obj\Debug\dnlib.pdb
Fortinet MSIL/Injector.UWS!tr