Summary | ZeroBOX

new_image.jpg.exe

Malicious Library UPX Malicious Packer .NET DLL PE File DLL OS Processor Check PE32
Category Machine Started Completed
FILE s1_win7_x6401 Sept. 12, 2024, 6:10 p.m. Sept. 12, 2024, 6:10 p.m.
Size 1.1MB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 15a1d8603a7cfb0b8d6015955a9f5f6f
SHA256 c3553b74f24c673dfa6efde5ac44834cc6700b0b6d0cdc9089043803725ce8b7
CRC32 7231B762
ssdeep 12288:A4FP/ea1J+Br7J7cgldmMKrG6H1wtW/PYtvGj9OPI85TG+r1v7fmcKJ3XRZ:Y/jcgyDbVwtWnYIj9z+r1v7fjMnRZ
PDB Path D:\New Private Panell Src 3.0\Rump Updated FIX C#\src\obj\Debug\dnlib.pdb
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
  • Is_DotNET_DLL - (no description)
  • OS_Processor_Check_Zero - OS Processor Check

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path D:\New Private Panell Src 3.0\Rump Updated FIX C#\src\obj\Debug\dnlib.pdb
Bkav W32.AIDetectMalware.CS
ALYac Gen:Variant.MSILHeracles.174504
VIPRE Gen:Variant.MSILHeracles.174504
BitDefender Gen:Variant.MSILHeracles.174504
Arcabit Trojan.MSILHeracles.D2A9A8
ESET-NOD32 a variant of MSIL/Injector.FPT
Avast Win32:Malware-gen
ClamAV Win.Packed.Trojanx-9818175-0
Kaspersky HEUR:Trojan.Win32.Generic
MicroWorld-eScan Gen:Variant.MSILHeracles.174504
Emsisoft Gen:Variant.MSILHeracles.174504 (B)
DrWeb Trojan.InjectNET.14
Zillya Trojan.Injector.Win32.1844262
FireEye Gen:Variant.MSILHeracles.174504
SentinelOne Static AI - Suspicious PE
Google Detected
MAX malware (ai score=86)
Antiy-AVL Trojan[Injector]/MSIL.Agent
Microsoft Trojan:Win32/Phonzy.A!ml
GData Gen:Variant.MSILHeracles.174504
AhnLab-V3 Trojan/Win.Generic.C5654905
Malwarebytes Trojan.Injector.MSIL
Ikarus Trojan-Spy.LokiBot
Panda Trj/GdSda.A
huorong HEUR:Trojan/MSIL.Injector.c
Fortinet MSIL/Agent.AHZ!tr
AVG Win32:Malware-gen