Summary | ZeroBOX

CCleanerPerformanceOptimizer.dll

Malicious Packer PE64 PE File
Category Machine Started Completed
FILE s1_win7_x6403_us Feb. 21, 2025, 4:31 p.m. Feb. 21, 2025, 4:36 p.m.
Size 7.1MB
Type PE32+ executable (GUI) x86-64, for MS Windows
MD5 ce21e6627863d977338c069a9ac8e2a3
SHA256 446be17643e7bdea9beeefb956da722046c815191d8e16d87d758bb6aa037cf6
CRC32 66DAD1F0
ssdeep 196608:eqfS2IaO5elFJGE18Ozqugl1XLvTaGLpcZQJLl8N:zXIE18xueLryC
Yara
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • IsPE64 - (no description)

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

section .B5$
section .mY:
section .rFp
section {u'size_of_data': u'0x0070e000', u'virtual_address': u'0x005c8000', u'entropy': 7.990292381536142, u'name': u'.rFp', u'virtual_size': u'0x0070df98'} entropy 7.99029238154 description A section with a high entropy has been found
entropy 0.998686666206 description Overall entropy of this PE file is high
Bkav W64.AIDetectMalware
Lionic Trojan.Win32.VMProtect.4!c
Cynet Malicious (score: 100)
CAT-QuickHeal Trojan.Ghanarava.1726602710c8e2a3
Skyhigh BehavesLike.Win64.Dropper.wc
ALYac Trojan.GenericKD.73818620
Cylance Unsafe
VIPRE Trojan.GenericKD.73818620
Sangfor Suspicious.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (W)
BitDefender Trojan.GenericKD.73818620
K7GW Trojan ( 005b32791 )
K7AntiVirus Trojan ( 005b32791 )
Arcabit Trojan.Generic.D46661FC
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win64/Packed.VMProtect.AG suspicious
APEX Malicious
Avast Win64:Evo-gen [Trj]
Kaspersky Trojan.Win32.Agent.xbsfls
Alibaba Packed:Win64/VMProtect.ec3bf9cd
MicroWorld-eScan Trojan.GenericKD.73818620
Rising Trojan.Kryptik@AI.97 (RDML:B9l7NXNKMsIFOajg2KsMqw)
Emsisoft Trojan.GenericKD.73818620 (B)
F-Secure Heuristic.HEUR/AGEN.1371806
Zillya Trojan.VMProtect.Win64.21138
McAfeeD Real Protect-LS!CE21E6627863
Trapmine malicious.moderate.ml.score
CTX exe.trojan.vmprotect
Sophos Generic Reputation PUA (PUA)
SentinelOne Static AI - Malicious PE
FireEye Generic.mg.ce21e6627863d977
Google Detected
Avira HEUR/AGEN.1371806
Antiy-AVL Trojan[Packed]/Win64.VMProtect
Kingsoft Win32.Troj.Unknown.a
Gridinsoft Trojan.Heur!.02212023
Microsoft Trojan:Win64/SpyLoader!rfn
ViRobot Trojan.Win.Z.Vmprotect.7408128
GData Trojan.GenericKD.73818620
McAfee Artemis!CE21E6627863
DeepInstinct MALICIOUS
Malwarebytes Malware.AI.4202291230
Ikarus Trojan.Win64.Vmprotect
Panda Trj/Chgt.AD
TrendMicro-HouseCall TROJ_GEN.R002H09A425
Tencent Malware.Win32.Gencirc.141a3f7a
huorong Trojan/Generic!AA3C5B501CFF59EF
MaxSecure Trojan.Malware.274440803.susgen
Fortinet Riskware/Application