Summary | ZeroBOX

s.exe

UPX OS Processor Check PE64 PE File
Category Machine Started Completed
FILE s1_win7_x6401 Nov. 11, 2024, 10:04 a.m. Nov. 11, 2024, 10:18 a.m.
Size 14.0KB
Type PE32+ executable (console) x86-64, for MS Windows
MD5 fda96828c88237f5264f61e93ca429ec
SHA256 a3c7de8df765b6eeba0b7e4e32192d120911a065c26e5034a0a98a454478e7c8
CRC32 8DDBB73A
ssdeep 192:qamqC8cAi7FDQIlEedjpw5eww3URTFRLeYNe3Q5tfwc6:oQIlZdutw3URTFR6x3B
PDB Path C:\Users\jhgyuo\Desktop\code\地狱之门\RecycledGate-main\Sample\x64\Release\Sample.pdb
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE64 - (no description)
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path C:\Users\jhgyuo\Desktop\code\地狱之门\RecycledGate-main\Sample\x64\Release\Sample.pdb
Bkav W64.AIDetectMalware
Lionic Trojan.Win32.Generic.4!c
Cynet Malicious (score: 100)
CAT-QuickHeal Trojan.Agent
ALYac Trojan.GenericKD.74657949
Cylance Unsafe
VIPRE Trojan.GenericKD.74657949
CrowdStrike win/malicious_confidence_90% (D)
BitDefender Trojan.GenericKD.74657949
Arcabit Trojan.Generic.D473309D
VirIT Trojan.Win64.Genus.FZG
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
APEX Malicious
Avast Win64:MalwareX-gen [Trj]
MicroWorld-eScan Trojan.GenericKD.74657949
Rising Trojan.Kryptik@AI.98 (RDML:WpOkXzVut7S5Al9n3PG7WA)
Emsisoft Trojan.GenericKD.74657949 (B)
F-Secure Heuristic.HEUR/AGEN.1374958
DrWeb Tool.Inject.85
McAfeeD ti!A3C7DE8DF765
CTX exe.trojan.generic
Sophos Mal/Generic-S
SentinelOne Static AI - Suspicious PE
FireEye Trojan.GenericKD.74657949
Google Detected
Avira HEUR/AGEN.1374958
Antiy-AVL Trojan/Win32.Agent
Xcitium Malware@#3l8q1dcwl2a9p
Microsoft Trojan:Win32/Wacatac.B!ml
GData Trojan.GenericKD.74657949
Varist W64/ABTrojan.GFJF-8792
AhnLab-V3 Trojan/Win.Generic.C5691172
McAfee Artemis!FDA96828C882
DeepInstinct MALICIOUS
Malwarebytes Trojan.ShellCode
Panda Trj/Chgt.AD
Fortinet W32/PossibleThreat
AVG Win64:MalwareX-gen [Trj]
Paloalto generic.ml