Summary | ZeroBOX

Mapper.exe

Gen1 Generic Malware UPX Malicious Packer PE64 PE File OS Processor Check
Category Machine Started Completed
FILE s1_win7_x6401 Nov. 8, 2024, 4:55 p.m. Nov. 8, 2024, 5:04 p.m.
Size 141.5KB
Type PE32+ executable (console) x86-64, for MS Windows
MD5 9272b18ff6b2b323452d08c674e4243b
SHA256 c9343111e2ef9660e26dca00f7bf69e3947af3b54ca45b3a99b246518dffffa4
CRC32 617B72A7
ssdeep 3072:2E4V9xmQTlzXKPEbCgc1jz/BsmJTQSaMm5/6JbwIu1hUhKU:2XPxPzQDgy1Wl/1ihKU
PDB Path C:\Users\andreu\Downloads\saturn-mapper-main\saturn-mapper-main\x64\Release\saturn map_Release.pdb
Yara
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • IsPE64 - (no description)
  • Win32_Trojan_Gen_1_0904B0_Zero - Win32 Trojan Emotet
  • Generic_Malware_Zero - Generic Malware
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path C:\Users\andreu\Downloads\saturn-mapper-main\saturn-mapper-main\x64\Release\saturn map_Release.pdb
Lionic Hacktool.Win32.DriverLoader.3!c
Elastic malicious (high confidence)
Cynet Malicious (score: 99)
Skyhigh BehavesLike.Win64.Backdoor.ch
ALYac Gen:Variant.Zusy.547793
Cylance unsafe
VIPRE Gen:Variant.Zusy.547793
Sangfor Trojan.Win32.Save.a
K7AntiVirus Trojan ( 005a17e41 )
BitDefender Gen:Variant.Zusy.547793
K7GW Trojan ( 005a17e41 )
Arcabit Trojan.Zusy.D85BD1
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win64/GenKryptik.GWGN
APEX Malicious
McAfee Artemis!9272B18FF6B2
Avast Win64:HacktoolX-gen [Trj]
Kaspersky HEUR:HackTool.Win32.DriverLoader.gen
Alibaba HackTool:Win32/DriverLoader.9902c556
MicroWorld-eScan Gen:Variant.Zusy.547793
Rising HackTool.GameHack!8.59E (TFE:5:Rc0CEp43z0D)
Emsisoft Gen:Variant.Zusy.547793 (B)
F-Secure Trojan.TR/Crypt.Agent.qkwfv
Zillya Tool.GameHackAGen.Win64.372
TrendMicro TROJ_GEN.R002C0XDQ24
FireEye Gen:Variant.Zusy.547793
Sophos Mal/Generic-S
Ikarus Trojan.Win64.Krypt
Google Detected
Avira TR/Crypt.Agent.qkwfv
Antiy-AVL HackTool/Win64.Gamehack.q
Kingsoft Win32.HackTool.DriverLoader.gen
ZoneAlarm HEUR:HackTool.Win32.DriverLoader.gen
GData Gen:Variant.Zusy.547793
Varist W64/ABRisk.TMEJ-5390
AhnLab-V3 Trojan/Win.Generic.R629364
DeepInstinct MALICIOUS
Malwarebytes Malware.AI.3685322397
TrendMicro-HouseCall TROJ_GEN.R002C0XDQ24
Tencent Malware.Win32.Gencirc.11c02f66
MAX malware (ai score=85)
MaxSecure Trojan.Malware.202002184.susgen
Fortinet W64/GameHack_AGen.O!tr
AVG Win64:HacktoolX-gen [Trj]
Paloalto generic.ml
alibabacloud HackTool:Win/DriverLoader.gen