Summary | ZeroBOX

fortpriv2.exe

Generic Malware Malicious Library Downloader UPX ftp PE64 PE File OS Processor Check
Category Machine Started Completed
FILE s1_win7_x6401 Oct. 21, 2024, 2:32 p.m. Oct. 21, 2024, 2:35 p.m.
Size 1.0MB
Type PE32+ executable (console) x86-64, for MS Windows
MD5 7a0a6fd82698a9276141efaca0af7bfa
SHA256 4984808e2a583c975aa381584047c93ea54acb6bd62daa10bc3a74beb3cc3498
CRC32 1C1DADB8
ssdeep 24576:MaaczuqoldEU4fbtieKAXbLyPzED3kdnfptOdn:MaaczuqoldEB5sYf4e3unxon
PDB Path D:\BRONKZ BACKUP 16 02 2024\Loaders C# Bronkz Private Store\Cheat Fortnite\wasy\wasy\x64\Release\Private.pdb
Yara
  • Malicious_Library_Zero - Malicious_Library
  • Network_Downloader - File Downloader
  • PE_Header_Zero - PE File Signature
  • ftp_command - ftp command
  • IsPE64 - (no description)
  • Generic_Malware_Zero - Generic Malware
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path D:\BRONKZ BACKUP 16 02 2024\Loaders C# Bronkz Private Store\Cheat Fortnite\wasy\wasy\x64\Release\Private.pdb
section _RDATA
Bkav W64.AIDetectMalware
Cynet Malicious (score: 100)
Skyhigh BehavesLike.Win64.Dropper.th
ALYac Gen:Variant.Lazy.541236
Cylance Unsafe
VIPRE Gen:Variant.Lazy.541236
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_90% (D)
BitDefender Gen:Variant.Lazy.541236
Arcabit Trojan.Lazy.D84234
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win64/Riskware.GameHack.AK
APEX Malicious
Kaspersky VHO:Trojan.Win64.Agent.gen
MicroWorld-eScan Gen:Variant.Lazy.541236
Emsisoft Gen:Variant.Lazy.541236 (B)
F-Secure Heuristic.HEUR/AGEN.1366726
McAfeeD ti!4984808E2A58
CTX exe.unknown.lazy
SentinelOne Static AI - Malicious PE
FireEye Gen:Variant.Lazy.541236
Google Detected
Avira HEUR/AGEN.1366726
Microsoft Trojan:Win64/Lazy.DAS!MTB
ZoneAlarm VHO:Trojan.Win64.Agent.gen
GData Gen:Variant.Lazy.541236
Varist W64/Agent.IDJ.gen!Eldorado
Acronis suspicious
DeepInstinct MALICIOUS
Ikarus Trojan.Win32.Generic
huorong HVM:TrojanDownloader/Small.gen!B
Fortinet W64/GenKryptik.GHEK!tr