Summary | ZeroBOX

plink-csb-crwd06.exe

Metasploit Generic Malware PE64 PE File
Category Machine Started Completed
FILE s1_win7_x6401 Sept. 30, 2024, 11:25 a.m. Sept. 30, 2024, 12:10 p.m.
Size 7.0KB
Type PE32+ executable (GUI) x86-64, for MS Windows
MD5 dc78260d39335f7c0c7638f6fe80af80
SHA256 af0c00f7c196e499f1e2a4680d91dad27bcb8a2cfeeca4bddea693e68228e822
CRC32 A0678647
ssdeep 24:eFGStrJ9u0/6bInZdkBQAV2oYwlKZqaeNDMSCvOXpmB:is0ickBQvwlYSD9C2kB
Yara
  • Windows_Trojan_Metasploit_91bc5d7d - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE64 - (no description)
  • Generic_Malware_Zero - Generic Malware

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
45.120.107.37 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

section .gzjt
host 45.120.107.37
dead_host 45.120.107.37:8443
Bkav W64.AIDetectMalware
Lionic Trojan.Win32.Metasploit.4!c
Cynet Malicious (score: 100)
CAT-QuickHeal HackTool.Metasploit.S9212471
Skyhigh BehavesLike.Win64.Infected.zz
Cylance Unsafe
Sangfor Suspicious.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (W)
K7GW Trojan ( 004fae881 )
K7AntiVirus Trojan ( 004fae881 )
VirIT Trojan.Win32.Generic.BZPS
Symantec Meterpreter
Elastic Windows.Trojan.Metasploit
APEX Malicious
Paloalto generic.ml
ClamAV Win.Malware.Metasploit-10022275-0
Alibaba Trojan:Win32/CobaltStrike.5f03
SUPERAntiSpyware Trojan.Agent/Gen-MalPack
MicroWorld-eScan Trojan.Metasploit.A
Emsisoft Trojan.Metasploit.A (B)
F-Secure Trojan.TR/Crypt.XPACK.Gen7
McAfeeD Real Protect-LS!DC78260D3933
Trapmine malicious.high.ml.score
Sophos ATK/Meter-A
SentinelOne Static AI - Malicious PE
Jiangmin Trojan.Generic.auyjj
Google Detected
Avira TR/Crypt.XPACK.Gen7
Antiy-AVL GrayWare/Win32.Rozena.j
Kingsoft malware.kb.b.966
Gridinsoft Trojan.Win64.ShellCode.sd!s1
Microsoft Trojan:Win64/Metasploit!pz
ZoneAlarm HEUR:Trojan.Win64.Packed.gen
Varist W64/Rozena.IG
Acronis suspicious
Ikarus Trojan.Win64.Meterpreter
Zoner Probably Heur.ExeHeaderL
Tencent Hacktool.Win64.Rozena.a
Yandex Trojan.GenAsa!RZuPNlUDbQk
huorong Backdoor/Meterpreter.fb
MaxSecure Trojan.Malware.300983.susgen
Fortinet W64/Rozena.J!tr
DeepInstinct MALICIOUS