Summary | ZeroBOX

RuntimeBrokerSvc.exe

AsyncRAT .NET framework(MSIL) UPX Malicious Packer PE File OS Processor Check PE32 .NET EXE
Category Machine Started Completed
FILE s1_win7_x6403_us March 30, 2025, 2:23 p.m. March 30, 2025, 2:25 p.m.
Size 47.5KB
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 ee9bd2b3d64511b880fcbd8ad23c71fa
SHA256 040ef285cdbca1ab4b3ceaeac8f0ace87aca7d2147123a1359f27a3039b0b700
CRC32 E8ED1871
ssdeep 768:EuwvNT8E2mLWU3FvZmo2q7JGiMQsCmPIaggsbw0bRKoyqIShOVqTZxSbKBDZ8x:EuwvNT8xk27fQsCPaggCbRKoNLOVqTZQ
Yara
  • PE_Header_Zero - PE File Signature
  • Win32_Trojan_PWS_Net_1_Zero - Win32 Trojan PWS .NET Azorult
  • Is_DotNET_EXE - (no description)
  • AsyncRat - AsyncRat Payload
  • IsPE32 - (no description)
  • Malicious_Packer_Zero - Malicious Packer
  • OS_Processor_Check_Zero - OS Processor Check
  • UPX_Zero - UPX packed file

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Lionic Trojan.Win32.Crysan.m!c
MicroWorld-eScan Gen:Variant.AsyncRat.Marte.2
CAT-QuickHeal Trojan.IgenericFC.S14890850
ALYac Gen:Variant.AsyncRat.Marte.2
Cylance Unsafe
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (W)
BitDefender Gen:Variant.AsyncRat.Marte.2
K7GW Trojan ( 005678321 )
K7AntiVirus Trojan ( 005c228f1 )
Arcabit Trojan.AsyncRat.Marte.2
VirIT Trojan.Win32.MSIL_Heur.A
Symantec ML.Attribute.HighConfidence
Elastic Windows.Trojan.Asyncrat
ESET-NOD32 a variant of MSIL/AsyncRAT.A
APEX Malicious
Avast Win32:DropperX-gen [Drp]
Kaspersky HEUR:Backdoor.MSIL.Crysan.gen
Alibaba Backdoor:MSIL/AsyncRat.2067b0b6
SUPERAntiSpyware Trojan.Agent/Gen-Kryptik
Rising Trojan.AntiVM!1.CF63 (CLASSIC)
Emsisoft Gen:Variant.AsyncRat.Marte.2 (B)
F-Secure Trojan.TR/Dropper.Gen
DrWeb Trojan.Siggen9.56514
VIPRE Gen:Variant.AsyncRat.Marte.2
TrendMicro Backdoor.MSIL.ASYNCRAT.SMXSR
McAfeeD ti!040EF285CDBC
Trapmine suspicious.low.ml.score
CTX exe.trojan.msil
Sophos Troj/AsyncRat-B
SentinelOne Static AI - Malicious PE
FireEye Generic.mg.ee9bd2b3d64511b8
Jiangmin Backdoor.MSIL.gguk
Google Detected
Avira TR/Dropper.Gen
Kingsoft malware.kb.c.1000
Microsoft Backdoor:MSIL/AsyncRat.AD!MTB
ZoneAlarm Troj/AsyncRat-B
GData MSIL.Trojan.PSE.1BITXMO
Varist W32/Samas.B.gen!Eldorado
AhnLab-V3 Malware/Win32.RL_Generic.C3558490
McAfee Fareit-FZT!EE9BD2B3D645
DeepInstinct MALICIOUS
VBA32 OScope.Backdoor.MSIL.Crysan
Malwarebytes Generic.Malware.AI.DDS
Ikarus Backdoor.AsyncRat
TrendMicro-HouseCall Backdoor.MSIL.ASYNCRAT.SMXSR
Tencent Trojan.Msil.Agent.zap
huorong Backdoor/Crysan.a
Fortinet MSIL/Agent.CFQ!tr