Summary | ZeroBOX

SCPSL_NicknameChanger.exe

Malicious Library UPX Malicious Packer PE File OS Processor Check PE32
Category Machine Started Completed
FILE s1_win7_x6401 Sept. 2, 2024, 7:26 p.m. Sept. 2, 2024, 7:29 p.m.
Size 125.6KB
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 4da72dc49c901dc8e3f05ad298a9c85d
SHA256 5fe58095f56b9aef3d09c5bb00514917fd530c6a67c2eac5754118ccc548d581
CRC32 430F900B
ssdeep 3072:Kz6SAVyxY+XWso4LQyMBPyWvQ0S46d7aPOP:KIVyJ/El9Gh4Q7aPg
PDB Path D:\a\_work\1\s\artifacts\obj\win-x86.Release\corehost\apphost\standalone\apphost.pdb
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path D:\a\_work\1\s\artifacts\obj\win-x86.Release\corehost\apphost\standalone\apphost.pdb
Bkav W32.AIDetectMalware