Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | Aug. 19, 2024, 2:07 p.m. | Aug. 19, 2024, 2:55 p.m. |
-
POS_C081.exe "C:\Users\test22\AppData\Local\Temp\POS_C081.exe"
2664
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
IP Address | Status | Action |
---|---|---|
164.124.101.2 | Active | Moloch |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
section | CODE |
section | DATA |
section | BSS |
packer | BobSoft Mini Delphi -> BoB / BobSoft |
name | RT_ICON | language | LANG_CHINESE | filetype | dBase IV DBT of @.DBF, block length 512, next free block index 40, next free block 49, next used block 48059 | sublanguage | SUBLANG_CHINESE_SIMPLIFIED | offset | 0x00178ab8 | size | 0x000002e8 | ||||||||||||||||||
name | RT_GROUP_ICON | language | LANG_CHINESE | filetype | data | sublanguage | SUBLANG_CHINESE_SIMPLIFIED | offset | 0x001911a4 | size | 0x00000014 | ||||||||||||||||||
name | RT_VERSION | language | LANG_CHINESE | filetype | data | sublanguage | SUBLANG_CHINESE_SIMPLIFIED | offset | 0x001911b8 | size | 0x00000274 |
ALYac | Gen:Variant.Midie.150934 |
VIPRE | Gen:Variant.Midie.150934 |
BitDefender | Gen:Variant.Midie.150934 |
Cybereason | malicious.942cdc |
Arcabit | Trojan.Midie.D24D96 |
MicroWorld-eScan | Gen:Variant.Midie.150934 |
Emsisoft | Gen:Variant.Midie.150934 (B) |
FireEye | Gen:Variant.Midie.150934 |
MAX | malware (ai score=87) |
GData | Gen:Variant.Midie.150934 |