Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | Aug. 4, 2024, 1:25 p.m. | Aug. 4, 2024, 1:30 p.m. |
-
wow.exe "C:\Users\test22\AppData\Local\Temp\wow.exe"
2592
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
IP Address | Status | Action |
---|---|---|
No hosts contacted. |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
section | CODE |
section | DATA |
section | BSS |
file | C:\Users\test22\AppData\Local\Temp\GSED4E.tmp |
section | {u'size_of_data': u'0x0000bc00', u'virtual_address': u'0x0000a000', u'entropy': 7.5065533501180095, u'name': u'.rsrc', u'virtual_size': u'0x0000bb34'} | entropy | 7.50655335012 | description | A section with a high entropy has been found | |||||||||
entropy | 0.789915966387 | description | Overall entropy of this PE file is high |
Bkav | W32.AIDetectMalware |
Cylance | Unsafe |
APEX | Malicious |
ClamAV | Win.Trojan.Generic-9787872-0 |
Rising | Trojan.Zapchast.fx (CLASSIC) |
Zillya | Backdoor.mIRC.Win32.654 |
McAfeeD | ti!FF9B527546F5 |
Trapmine | malicious.high.ml.score |
Detected | |
Kingsoft | Win32.Troj.Agent.cks |
MaxSecure | Trojan.Malware.300983.susgen |
Paloalto | generic.ml |