Summary | ZeroBOX

NetMaster_Client.exe

Generic Malware Malicious Library Downloader UPX PE File OS Processor Check PE32
Category Machine Started Completed
FILE s1_win7_x6401 Aug. 19, 2024, 1:58 p.m. Aug. 19, 2024, 2:26 p.m.
Size 454.0KB
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 9c4a2a98a09549e8175607a271e202bf
SHA256 5739d0b3de0569d6c5a694dec0a289ff429c302f889bc8cea1f84b6765dbb571
CRC32 AF5B7901
ssdeep 12288:CY5yuDQEzucHR8LBdKjtYQQvxNqlNl11z1eWH3M/aVYooS1G:/DqvxNsl11z1enaVRZ1
PDB Path C:\Users\удача\Desktop\NetMaster-1.0\Release\NetMaster_Client.pdb
Yara
  • Malicious_Library_Zero - Malicious_Library
  • Network_Downloader - File Downloader
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • Generic_Malware_Zero - Generic Malware
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
164.124.101.2 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path C:\Users\удача\Desktop\NetMaster-1.0\Release\NetMaster_Client.pdb
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Generic.4!c
Elastic malicious (high confidence)
Cynet Malicious (score: 100)
Skyhigh BehavesLike.Win32.Downloader.gh
ALYac Trojan.GenericKD.73751539
Cylance Unsafe
VIPRE Trojan.GenericKD.73751539
Sangfor Trojan.Win32.Agent.Vk27
BitDefender Trojan.GenericKD.73751539
Symantec ML.Attribute.HighConfidence
APEX Malicious
MicroWorld-eScan Trojan.GenericKD.73751539
Emsisoft Trojan.GenericKD.73751539 (B)
McAfeeD Real Protect-LS!9C4A2A98A095
Trapmine malicious.moderate.ml.score
FireEye Generic.mg.9c4a2a98a09549e8
SentinelOne Static AI - Malicious PE
Jiangmin Backdoor.Androm.awlo
Google Detected
MAX malware (ai score=82)
Antiy-AVL GrayWare[AdWare]/Win32.Caypnamer
Gridinsoft Backdoor.Win32.Gen.cl
GData Trojan.GenericKD.73751539
Varist W32/ABTrojan.JBXE-1444
BitDefenderTheta Gen:NN.ZexaF.36812.CuW@aG60ERmi
DeepInstinct MALICIOUS
Malwarebytes Trojan.Downloader
TrendMicro-HouseCall TROJ_GEN.R06CH09H124
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/PossibleThreat
Paloalto generic.ml
CrowdStrike win/malicious_confidence_90% (W)
alibabacloud Suspicious