Summary | ZeroBOX

LummaC2.exe

UPX PE32 PE File
Category Machine Started Completed
FILE s1_win7_x6401 Jan. 8, 2025, 1:41 p.m. Jan. 8, 2025, 1:47 p.m.
Size 302.0KB
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 e05271b0cfba06ea6333a1f006edd129
SHA256 84adf7ea7a1e5dfa1de268f754ec9e80d45a1e0ae055a6d2e139ffd7f822f7b7
CRC32 7CBF18A8
ssdeep 6144:+eGlkYytRzWO72BJkaLweWTKG8rWkXYh6n5HtYPq/n0Cae5bfF6Lk9HWVqBPEo2b:FYuR6O723kaLnMh653xQLkBWVqBco2to
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
164.124.101.2 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Bkav W32.AIDetectMalware
Lionic Trojan.Win32.LummaStealer.i!c
Cynet Malicious (score: 100)
Skyhigh BehavesLike.Win32.Backdoor.fh
McAfee Artemis!E05271B0CFBA
Cylance Unsafe
VIPRE Gen:Heur.Mint.Zard.25
Sangfor Spyware.Win32.Lummastealer.Vzmj
CrowdStrike win/malicious_confidence_100% (W)
BitDefender Gen:Heur.Mint.Zard.25
K7GW Trojan ( 005bef1d1 )
K7AntiVirus Trojan ( 005bef1d1 )
Arcabit Trojan.Mint.Zard.25
VirIT Trojan.Win32.GenusT.EGWX
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/Spy.LummaStealer.I
APEX Malicious
Avast Win32:Evo-gen [Trj]
Kaspersky HEUR:Trojan-PSW.Win32.Convagent.gen
Alibaba TrojanPSW:Win32/LummaC.38ae3de1
NANO-Antivirus Virus.Win32.Gen.ccmw
MicroWorld-eScan Gen:Heur.Mint.Zard.25
Rising Spyware.LummaStealer!8.1A464 (TFE:2:4GhwlW5QpOO)
Emsisoft Gen:Heur.Mint.Zard.25 (B)
DrWeb Trojan.PWS.Lumma.1113
Zillya Trojan.Convagent.Win32.578603
McAfeeD Real Protect-LS!E05271B0CFBA
Trapmine malicious.high.ml.score
CTX exe.trojan.lummastealer
Sophos Mal/Generic-S
SentinelOne Static AI - Malicious PE
FireEye Generic.mg.e05271b0cfba06ea
Google Detected
Antiy-AVL Trojan/Win32.Agent
Kingsoft Win32.Trojan-PSW.Convagent.gen
Gridinsoft Trojan.Win32.Agent.sa
Microsoft Trojan:Win32/LummaC.AU!MTB
GData Win32.Trojan.PSE.11VMAPP
Varist W32/Lumma.H.gen!Eldorado
AhnLab-V3 Trojan/Win.Generic.R686935
VBA32 BScope.TrojanPSW.Lumma
DeepInstinct MALICIOUS
Malwarebytes Malware.AI.3917377028
Ikarus Trojan-Spy.Win32.LummaStealer
Panda Trj/Genetic.gen
Tencent Malware.Win32.Gencirc.10c08c1f
huorong HEUR:TrojanSpy/LummaStealer.a
Fortinet W32/LummaStealer.I!tr.spy
AVG Win32:Evo-gen [Trj]