Summary | ZeroBOX

wzoptini.exe

Generic Malware UPX PE32 PE File
Category Machine Started Completed
FILE s1_win7_x6403_us Aug. 19, 2024, 2:16 p.m. Aug. 19, 2024, 3:29 p.m.
Size 368.5KB
Type PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed
MD5 e4eff021485fd9e7050c2beebc30a376
SHA256 d7738fb96a64acb01229d064154c0c56cd89fa0a90ec3988e96d35f41a7d6d69
CRC32 B25FDFD2
ssdeep 6144:1MJt6tTmWjp1P4xm0ovCs2Rh68815xYasf5eIltnaToecFHzpPoPWDMY:46tyWjX4LovCsYi5xYZheILnhXFTpqMB
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • Generic_Malware_Zero - Generic Malware
  • UPX_Zero - UPX packed file

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Time & API Arguments Status Return Repeated

IsDebuggerPresent

0 0
section {u'size_of_data': u'0x00055200', u'virtual_address': u'0x00088000', u'entropy': 7.9368498543942945, u'name': u'UPX1', u'virtual_size': u'0x00056000'} entropy 7.93684985439 description A section with a high entropy has been found
entropy 0.926530612245 description Overall entropy of this PE file is high
section UPX0 description Section name indicates UPX
section UPX1 description Section name indicates UPX
Bkav W32.AIDetectMalware
Lionic Trojan.Win32.Generic.4!c
Elastic malicious (moderate confidence)
Cynet Malicious (score: 100)
Skyhigh BehavesLike.Win32.TrojanAitInject.fc
ALYac Trojan.GenericKD.64429963
Cylance Unsafe
VIPRE Trojan.GenericKD.64429963
Sangfor Trojan.Win32.Agent.V13b
BitDefender Trojan.GenericKD.64429963
Cybereason malicious.1485fd
Arcabit Trojan.Generic.D3D71F8B
VirIT Trojan.Win32.Crypt5.MKJ
tehtris Generic.Malware
APEX Malicious
McAfee Artemis!E4EFF021485F
Avast Win32:Malware-gen
ClamAV Win.Malware.Generic-9952838-0
MicroWorld-eScan Trojan.GenericKD.64429963
Emsisoft Trojan.GenericKD.64429963 (B)
McAfeeD Real Protect-LS!E4EFF021485F
Trapmine malicious.high.ml.score
FireEye Generic.mg.e4eff021485fd9e7
Sophos Mal/Generic-S
Ikarus PUA.Autoit
Jiangmin Trojan.Selfdel.rvj
Google Detected
MAX malware (ai score=87)
Antiy-AVL Trojan[Dropper]/Win32.Dorifel
Kingsoft malware.kb.b.884
Microsoft Program:Win32/Wacapew.C!ml
GData Trojan.GenericKD.64429963
DeepInstinct MALICIOUS
VBA32 Backdoor.Bladabindi
Malwarebytes Malware.AI.2852723073
Panda Trj/Chgt.AD
TrendMicro-HouseCall TROJ_GEN.R002H09ET24
Yandex Trojan.GenAsa!NHzzuRkQa3Y
Fortinet W32/PossibleThreat
AVG Win32:Malware-gen
Paloalto generic.ml
CrowdStrike win/malicious_confidence_60% (W)
alibabacloud Suspicious