Summary | ZeroBOX

Client-built.exe

.NET framework(MSIL) Malicious Library UPX PE File OS Processor Check PE32 .NET EXE
Category Machine Started Completed
FILE s1_win7_x6403_us Oct. 17, 2024, 2:40 p.m. Oct. 17, 2024, 2:40 p.m.
Size 3.1MB
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 77de6e8143094a619804ebf2d59eb094
SHA256 b961d39237a098049a7ba1b6c78f2f02b6f1b9e80d149593f3103aafb6b215b8
CRC32 B1BCF1BA
ssdeep 49152:zvylL26AaNeWgPhlmVqvMQ7XSKokCP1JSLoGdatCTHHB72eh2NT:zvqL26AaNeWgPhlmVqkQ7XSKokCs
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • Is_DotNET_EXE - (no description)
  • Win32_Trojan_PWS_Net_1_Zero - Win32 Trojan PWS .NET Azorult
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Bkav W32.AIDetectMalware.CS
Elastic Windows.Generic.Threat
CAT-QuickHeal Trojan.Generic.TRFH927
Skyhigh BehavesLike.Win32.Generic.wh
ALYac Generic.MSIL.PasswordStealerA.B6F0DA2B
Cylance Unsafe
VIPRE Generic.MSIL.PasswordStealerA.B6F0DA2B
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 005b1c021 )
BitDefender Generic.MSIL.PasswordStealerA.B6F0DA2B
K7GW Trojan ( 005690671 )
Cybereason malicious.143094
Arcabit Generic.MSIL.PasswordStealerA.B6F0DA2B
VirIT Trojan.Win32.MSIL.MJ
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of MSIL/Agent.CLQ
APEX Malicious
McAfee GenericRXMC-UD!77DE6E814309
Avast MSIL:Quasar-A [Rat]
ClamAV Win.Malware.Generic-9883083-0
Kaspersky HEUR:Trojan.MSIL.Quasar.gen
MicroWorld-eScan Generic.MSIL.PasswordStealerA.B6F0DA2B
Rising Backdoor.Quasar!1.E5F1 (CLASSIC)
Emsisoft Trojan.Agent (A)
F-Secure Heuristic.HEUR/AGEN.1365341
DrWeb BackDoor.QuasarNET.3
McAfeeD ti!B961D39237A0
FireEye Generic.mg.77de6e8143094a61
Sophos Troj/Quasar-AF
Ikarus Trojan-Spy.Agent
Jiangmin Trojan.MSIL.aogzw
Webroot W32.Trojan.Quasar
Google Detected
Avira HEUR/AGEN.1365341
MAX malware (ai score=80)
Antiy-AVL Trojan/MSIL.Quasar
Gridinsoft Spy.Win32.Keylogger.dd!n
Microsoft Backdoor:MSIL/Quasar!atmn
ZoneAlarm HEUR:Trojan.MSIL.Quasar.gen
GData MSIL.Backdoor.Quasar.A
Varist W32/MSIL_Troj.BTX.gen!Eldorado
AhnLab-V3 Backdoor/Win32.QuasarRAT.R341693
BitDefenderTheta Gen:NN.ZemsilF.36810.hp0@a8cJrrk
VBA32 Trojan.MSIL.Quasar.Heur
Malwarebytes Generic.Malware.AI.DDS
Tencent Trojan.MSIL.Quasar.ka
Yandex Trojan.Agent!Cv3ebqZG4jk
SentinelOne Static AI - Malicious PE
MaxSecure Trojan.Malware.73405263.susgen
Fortinet MSIL/Agent.BPH!tr