Summary | ZeroBOX

66f4186b24569_sfx_123_500.exe

UPX Malicious Library PE32 PE File
Category Machine Started Completed
FILE s1_win7_x6401 Sept. 26, 2024, 10:25 a.m. Sept. 26, 2024, 10:27 a.m.
Size 2.2MB
Type PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
MD5 9aca15a320ce8fe7eabb268f7116cbcc
SHA256 889095926d9f647a82e2987c666cc35dab298c3f31a5ee2bf8aa81d6492f62a5
CRC32 C24FE7D3
ssdeep 49152:SySP/Z3JmOCynjU9MX/CgpK3fS639Qne1bMo/Wg2x/93NN4L4gZ:SySP5QONgMvCHxOe2o+g2x/bb0
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Time & API Arguments Status Return Repeated

GlobalMemoryStatusEx

1 1 0
section .ndata
Cylance Unsafe
Sangfor Trojan.Win32.Agent.Vu0s
CrowdStrike win/malicious_confidence_60% (D)
Elastic malicious (high confidence)
APEX Malicious
Avast NSIS:MalwareX-gen [Trj]
TrendMicro Trojan.Win32.GULOADER.YXEIYZ
McAfeeD ti!889095926D9F
Trapmine suspicious.low.ml.score
FireEye Generic.mg.9aca15a320ce8fe7
Webroot W32.Trojan.Gen
Microsoft Program:Win32/Wacapew.C!ml
McAfee Artemis!9ACA15A320CE
DeepInstinct MALICIOUS
TrendMicro-HouseCall Trojan.Win32.GULOADER.YXEIYZ
AVG NSIS:MalwareX-gen [Trj]