Report - AniMine.exe

UPX PE File PE64
ScreenShot
Created 2024.09.30 09:45 Machine s1_win7_x6401
Filename AniMine.exe
Type PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows
AI Score
7
Behavior Score
1.0
ZERO API file : malware
VT API (file) 13 detected (GenericKD, MALICIOUS, R002H09FB24, susgen)
md5 980dae2b507c385923fc6210e518db2b
sha256 3728070d2d1e88a6776f3460abe79d3d09db9dae3ab154515b0d1850223dc784
ssdeep 12288:CFvLW1PIEEKUohL6O/VB/Pqo9Qh7AIcCkXvm5Utytvjddq2ORf+b+Lkbxv:CrKzLR/VBnWcnEUUNdIRGb
imphash fc18e137ace4694b190219dd914d33ec
impfuzzy 192:/gLYo1H/V8/wEJ7G1NDV1NytH3nTr9XN8Ao4ZIeZwUcTsn4P:sFVKtH3nTr9d8Ao9HUcTsn4P
  Network IP location

Signature (2cnts)

Level Description
watch File has been identified by 13 AntiVirus engines on VirusTotal as malicious
notice The binary likely contains encrypted or compressed data indicative of a packer

Rules (3cnts)

Level Name Description Collection
watch UPX_Zero UPX packed file binaries (upload)
info IsPE64 (no description) binaries (upload)
info PE_Header_Zero PE File Signature binaries (upload)

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids

PE API

IAT(Import Address Table) Library

Qt6Core.dll
 0x14009ca70 _Z21qRegisterResourceDataiPKhS0_S0_
 0x14009ca78 _Z23qUnregisterResourceDataiPKhS0_S0_
 0x14009ca80 _Z9qBadAllocv
 0x14009ca88 _ZN10QArrayData10deallocateEPS_xx
 0x14009ca90 _ZN10QArrayData19reallocateUnalignedEPS_PvxxNS_16AllocationOptionE
 0x14009ca98 _ZN10QArrayData8allocateEPPS_xxxNS_16AllocationOptionE
 0x14009caa0 _ZN10QByteArray6_emptyE
 0x14009caa8 _ZN10QEventLoop4execE6QFlagsINS_17ProcessEventsFlagEE
 0x14009cab0 _ZN10QEventLoop4quitEv
 0x14009cab8 _ZN10QEventLoopC1EP7QObject
 0x14009cac0 _ZN10QEventLoopD1Ev
 0x14009cac8 _ZN10QJsonValueC1ERK7QString
 0x14009cad0 _ZN10QJsonValueD1Ev
 0x14009cad8 _ZN11QDataStreamlsEi
 0x14009cae0 _ZN11QDataStreamrsERi
 0x14009cae8 _ZN11QFileDevice5closeEv
 0x14009caf0 _ZN11QFileDevice5flushEv
 0x14009caf8 _ZN11QJsonObjectC1Ev
 0x14009cb00 _ZN11QJsonObjectD1Ev
 0x14009cb08 _ZN11QJsonObjectixERK7QString
 0x14009cb10 _ZN11QMetaObject10ConnectionD1Ev
 0x14009cb18 _ZN11QMetaObject18connectSlotsByNameEP7QObject
 0x14009cb20 _ZN11QTextStreamlsEc
 0x14009cb28 _ZN11QTextStreamlsEi
 0x14009cb30 _ZN11QTranslator4loadERK7QStringS2_S2_S2_
 0x14009cb38 _ZN11QTranslatorC1EP7QObject
 0x14009cb40 _ZN11QTranslatorD1Ev
 0x14009cb48 _ZN12QDirIterator4nextEv
 0x14009cb50 _ZN12QDirIteratorC1ERK7QStringRK5QListIS0_E6QFlagsIN4QDir6FilterEES7_INS_12IteratorFlagEE
 0x14009cb58 _ZN12QDirIteratorD1Ev
 0x14009cb60 _ZN13QJsonDocument8fromJsonERK10QByteArrayP15QJsonParseError
 0x14009cb68 _ZN13QJsonDocumentC1ERK11QJsonObject
 0x14009cb70 _ZN13QJsonDocumentD1Ev
 0x14009cb78 _ZN13QJsonValueRefaSERK10QJsonValue
 0x14009cb80 _ZN16QCoreApplication13processEventsE6QFlagsIN10QEventLoop17ProcessEventsFlagEE
 0x14009cb88 _ZN16QCoreApplication17installTranslatorEP11QTranslator
 0x14009cb90 _ZN16QCoreApplication19applicationFilePathEv
 0x14009cb98 _ZN16QCoreApplication4quitEv
 0x14009cba0 _ZN16QCoreApplication9translateEPKcS1_S1_i
 0x14009cba8 _ZN18QCryptographicHash5resetEv
 0x14009cbb0 _ZN18QCryptographicHash7addDataEP9QIODevice
 0x14009cbb8 _ZN18QCryptographicHashC1ENS_9AlgorithmE
 0x14009cbc0 _ZN18QCryptographicHashD1Ev
 0x14009cbc8 _ZN19QProcessEnvironment17systemEnvironmentEv
 0x14009cbd0 _ZN19QProcessEnvironmentD1Ev
 0x14009cbd8 _ZN4QDir8rootPathEv
 0x14009cbe0 _ZN4QDirC1ERK7QString
 0x14009cbe8 _ZN4QDirD1Ev
 0x14009cbf0 _ZN4QUrlC1ERK7QStringNS_11ParsingModeE
 0x14009cbf8 _ZN4QUrlD1Ev
 0x14009cc00 _ZN5QFile4openE6QFlagsIN13QIODeviceBase12OpenModeFlagEE
 0x14009cc08 _ZN5QFile6removeEv
 0x14009cc10 _ZN5QFile6renameERK7QString
 0x14009cc18 _ZN5QFileC1ERK7QString
 0x14009cc20 _ZN5QFileD1Ev
 0x14009cc28 _ZN6QDebug9putStringEPK5QChary
 0x14009cc30 _ZN6QDebugD1Ev
 0x14009cc38 _ZN6QTimer14singleShotImplEiN2Qt9TimerTypeEPK7QObjectPN9QtPrivate15QSlotObjectBaseE
 0x14009cc40 _ZN7QLocale6systemEv
 0x14009cc48 _ZN7QLocaleD1Ev
 0x14009cc50 _ZN7QObject10childEventEP11QChildEvent
 0x14009cc58 _ZN7QObject10timerEventEP11QTimerEvent
 0x14009cc60 _ZN7QObject11connectImplEPKS_PPvS1_S3_PN9QtPrivate15QSlotObjectBaseEN2Qt14ConnectionTypeEPKiPK11QMetaObject
 0x14009cc68 _ZN7QObject11customEventEP6QEvent
 0x14009cc70 _ZN7QObject11deleteLaterEv
 0x14009cc78 _ZN7QObject11eventFilterEPS_P6QEvent
 0x14009cc80 _ZN7QObject13connectNotifyERK11QMetaMethod
 0x14009cc88 _ZN7QObject13setObjectNameERK7QString
 0x14009cc90 _ZN7QObject16disconnectNotifyERK11QMetaMethod
 0x14009cc98 _ZN7QString17toIntegral_helperE11QStringViewPbi
 0x14009cca0 _ZN7QString6_emptyE
 0x14009cca8 _ZN7QString6appendERKS_
 0x14009ccb0 _ZN7QString6numberEii
 0x14009ccb8 _ZN7QString6numberExi
 0x14009ccc0 _ZN7QString6removeExx
 0x14009ccc8 _ZN7QString8fromUtf8E14QByteArrayView
 0x14009ccd0 _ZN7QStringC1EPK5QCharx
 0x14009ccd8 _ZN7QStringaSERKS_
 0x14009cce0 _ZN8QProcess13startDetachedERK7QStringRK5QListIS0_ES2_Px
 0x14009cce8 _ZN8QProcessC1EP7QObject
 0x14009ccf0 _ZN8QProcessD1Ev
 0x14009ccf8 _ZN8QVariantC1ERK7QString
 0x14009cd00 _ZN8QVariantD1Ev
 0x14009cd08 _ZN9QFileInfoC1ERK7QString
 0x14009cd10 _ZN9QFileInfoD1Ev
 0x14009cd18 _ZN9QIODevice5writeERK10QByteArray
 0x14009cd20 _ZN9QIODevice7readAllEv
 0x14009cd28 _ZN9QtPrivate14compareStringsE11QStringViewS0_N2Qt15CaseSensitivityE
 0x14009cd30 _ZNK10QByteArray5toHexEc
 0x14009cd38 _ZNK10QByteArray6isNullEv
 0x14009cd40 _ZNK10QJsonValue4typeEv
 0x14009cd48 _ZNK10QJsonValue8toStringEv
 0x14009cd50 _ZNK10QJsonValueixERK7QString
 0x14009cd58 _ZNK11QJsonObject4keysEv
 0x14009cd60 _ZNK11QJsonObject5valueERK7QString
 0x14009cd68 _ZNK11QObjectData17dynamicMetaObjectEv
 0x14009cd70 _ZNK12QDirIterator7hasNextEv
 0x14009cd78 _ZNK13QJsonDocument6objectEv
 0x14009cd80 _ZNK13QJsonDocument6toJsonENS_10JsonFormatE
 0x14009cd88 _ZNK13QJsonDocumentixERK7QString
 0x14009cd90 _ZNK14QMessageLogger5debugEv
 0x14009cd98 _ZNK18QCryptographicHash6resultEv
 0x14009cda0 _ZNK19QProcessEnvironment5valueERK7QStringS2_
 0x14009cda8 _ZNK4QDir12absolutePathEv
 0x14009cdb0 _ZNK4QDir5mkdirERK7QString
 0x14009cdb8 _ZNK4QDir6existsERK7QString
 0x14009cdc0 _ZNK4QDir6existsEv
 0x14009cdc8 _ZNK4QDir6mkpathERK7QString
 0x14009cdd0 _ZNK5QFile6existsEv
 0x14009cdd8 _ZNK7QLocale11uiLanguagesEv
 0x14009cde0 _ZNK7QObject10objectNameEv
 0x14009cde8 _ZNK7QString7compareERKS_N2Qt15CaseSensitivityE
 0x14009cdf0 _ZNK7QString7indexOfERKS_xN2Qt15CaseSensitivityE
 0x14009cdf8 _ZNK9QFileInfo11absoluteDirEv
 0x14009ce00 _ZNK9QFileInfo12absolutePathEv
 0x14009ce08 _ZlsR11QDataStreamRK7QString
 0x14009ce10 _ZrsR11QDataStreamR7QString
Qt6Gui.dll
 0x14009ce20 _ZN13QIntValidatorC1EP7QObject
 0x14009ce28 _ZN5QFont9setWeightENS_6WeightE
 0x14009ce30 _ZN5QFontC1Ev
 0x14009ce38 _ZN5QFontD1Ev
 0x14009ce40 _ZN5QIcon7addFileERK7QStringRK5QSizeNS_4ModeENS_5StateE
 0x14009ce48 _ZN5QIconC1Ev
 0x14009ce50 _ZN5QIconD1Ev
 0x14009ce58 _ZN7QCursorC1EN2Qt11CursorShapeE
 0x14009ce60 _ZN7QCursorD1Ev
 0x14009ce68 _ZN7QPixmapC1ERK7QStringPKc6QFlagsIN2Qt19ImageConversionFlagEE
 0x14009ce70 _ZN7QPixmapD1Ev
 0x14009ce78 _ZNK5QFontcv8QVariantEv
 0x14009ce80 _ZNK5QIconcv8QVariantEv
Qt6Network.dll
 0x14009ce90 _ZN13QNetworkReply16staticMetaObjectE
 0x14009ce98 _ZN13QNetworkReply8finishedEv
 0x14009cea0 _ZN15QNetworkRequest9setHeaderENS_12KnownHeadersERK8QVariant
 0x14009cea8 _ZN15QNetworkRequestC1ERK4QUrl
 0x14009ceb0 _ZN15QNetworkRequestD1Ev
 0x14009ceb8 _ZN21QNetworkAccessManager3getERK15QNetworkRequest
 0x14009cec0 _ZN21QNetworkAccessManager4postERK15QNetworkRequestRK10QByteArray
 0x14009cec8 _ZN21QNetworkAccessManagerC1EP7QObject
 0x14009ced0 _ZNK13QNetworkReply5errorEv
Qt6Widgets.dll
 0x14009cee0 _ZN11QFileDialog20getExistingDirectoryEP7QWidgetRK7QStringS4_6QFlagsINS_6OptionEE
 0x14009cee8 _ZN11QListWidget13setCurrentRowEi
 0x14009cef0 _ZN11QListWidget17setSortingEnabledEb
 0x14009cef8 _ZN11QListWidgetC1EP7QWidget
 0x14009cf00 _ZN11QMainWindow11qt_metacallEN11QMetaObject4CallEiPPv
 0x14009cf08 _ZN11QMainWindow11qt_metacastEPKc
 0x14009cf10 _ZN11QMainWindow15createPopupMenuEv
 0x14009cf18 _ZN11QMainWindow16contextMenuEventEP17QContextMenuEvent
 0x14009cf20 _ZN11QMainWindow16setCentralWidgetEP7QWidget
 0x14009cf28 _ZN11QMainWindow16staticMetaObjectE
 0x14009cf30 _ZN11QMainWindow5eventEP6QEvent
 0x14009cf38 _ZN11QMainWindowC2EP7QWidget6QFlagsIN2Qt10WindowTypeEE
 0x14009cf40 _ZN11QMainWindowD2Ev
 0x14009cf48 _ZN11QPushButtonC1EP7QWidget
 0x14009cf50 _ZN12QApplication4execEv
 0x14009cf58 _ZN12QApplicationC1ERiPPci
 0x14009cf60 _ZN12QApplicationD1Ev
 0x14009cf68 _ZN14QStackedWidget15setCurrentIndexEi
 0x14009cf70 _ZN14QStackedWidget9addWidgetEP7QWidget
 0x14009cf78 _ZN14QStackedWidgetC1EP7QWidget
 0x14009cf80 _ZN15QAbstractButton10setCheckedEb
 0x14009cf88 _ZN15QAbstractButton11setIconSizeERK5QSize
 0x14009cf90 _ZN15QAbstractButton7setIconERK5QIcon
 0x14009cf98 _ZN15QAbstractButton7setTextERK7QString
 0x14009cfa0 _ZN15QAbstractSlider14setOrientationEN2Qt11OrientationE
 0x14009cfa8 _ZN15QListWidgetItem7setDataEiRK8QVariant
 0x14009cfb0 _ZN15QListWidgetItemC1EP11QListWidgeti
 0x14009cfb8 _ZN17QAbstractItemView11setIconSizeERK5QSize
 0x14009cfc0 _ZN17QAbstractItemView14clearSelectionEv
 0x14009cfc8 _ZN6QLabel11setWordWrapEb
 0x14009cfd0 _ZN6QLabel12setAlignmentE6QFlagsIN2Qt13AlignmentFlagEE
 0x14009cfd8 _ZN6QLabel17setScaledContentsEb
 0x14009cfe0 _ZN6QLabel20setOpenExternalLinksEb
 0x14009cfe8 _ZN6QLabel7setTextERK7QString
 0x14009cff0 _ZN6QLabel9setPixmapERK7QPixmap
 0x14009cff8 _ZN6QLabelC1EP7QWidget6QFlagsIN2Qt10WindowTypeEE
 0x14009d000 _ZN7QSliderC1EP7QWidget
 0x14009d008 _ZN7QWidget10closeEventEP11QCloseEvent
 0x14009d010 _ZN7QWidget10enterEventEP11QEnterEvent
 0x14009d018 _ZN7QWidget10leaveEventEP6QEvent
 0x14009d020 _ZN7QWidget10paintEventEP11QPaintEvent
 0x14009d028 _ZN7QWidget10setEnabledEb
 0x14009d030 _ZN7QWidget10setVisibleEb
 0x14009d038 _ZN7QWidget10wheelEventEP11QWheelEvent
 0x14009d040 _ZN7QWidget11actionEventEP12QActionEvent
 0x14009d048 _ZN7QWidget11changeEventEP6QEvent
 0x14009d050 _ZN7QWidget11nativeEventERK10QByteArrayPvPx
 0x14009d058 _ZN7QWidget11resizeEventEP12QResizeEvent
 0x14009d060 _ZN7QWidget11setDisabledEb
 0x14009d068 _ZN7QWidget11setGeometryERK5QRect
 0x14009d070 _ZN7QWidget11tabletEventEP12QTabletEvent
 0x14009d078 _ZN7QWidget12focusInEventEP11QFocusEvent
 0x14009d080 _ZN7QWidget13dragMoveEventEP14QDragMoveEvent
 0x14009d088 _ZN7QWidget13focusOutEventEP11QFocusEvent
 0x14009d090 _ZN7QWidget13keyPressEventEP9QKeyEvent
 0x14009d098 _ZN7QWidget13setStyleSheetERK7QString
 0x14009d0a0 _ZN7QWidget13setWindowFlagEN2Qt10WindowTypeEb
 0x14009d0a8 _ZN7QWidget14dragEnterEventEP15QDragEnterEvent
 0x14009d0b0 _ZN7QWidget14dragLeaveEventEP15QDragLeaveEvent
 0x14009d0b8 _ZN7QWidget14mouseMoveEventEP11QMouseEvent
 0x14009d0c0 _ZN7QWidget14setFocusPolicyEN2Qt11FocusPolicyE
 0x14009d0c8 _ZN7QWidget14setWindowTitleERK7QString
 0x14009d0d0 _ZN7QWidget15keyReleaseEventEP9QKeyEvent
 0x14009d0d8 _ZN7QWidget15mousePressEventEP11QMouseEvent
 0x14009d0e0 _ZN7QWidget16inputMethodEventEP17QInputMethodEvent
 0x14009d0e8 _ZN7QWidget17mouseReleaseEventEP11QMouseEvent
 0x14009d0f0 _ZN7QWidget18focusNextPrevChildEb
 0x14009d0f8 _ZN7QWidget21mouseDoubleClickEventEP11QMouseEvent
 0x14009d100 _ZN7QWidget4showEv
 0x14009d108 _ZN7QWidget6resizeERK5QSize
 0x14009d110 _ZN7QWidget7setFontERK5QFont
 0x14009d118 _ZN7QWidget9dropEventEP10QDropEvent
 0x14009d120 _ZN7QWidget9hideEventEP10QHideEvent
 0x14009d128 _ZN7QWidget9moveEventEP10QMoveEvent
 0x14009d130 _ZN7QWidget9setCursorERK7QCursor
 0x14009d138 _ZN7QWidget9showEventEP10QShowEvent
 0x14009d140 _ZN7QWidgetC1EPS_6QFlagsIN2Qt10WindowTypeEE
 0x14009d148 _ZN9QCheckBoxC1EP7QWidget
 0x14009d150 _ZN9QLineEdit11setEchoModeENS_8EchoModeE
 0x14009d158 _ZN9QLineEdit11setReadOnlyEb
 0x14009d160 _ZN9QLineEdit12setAlignmentE6QFlagsIN2Qt13AlignmentFlagEE
 0x14009d168 _ZN9QLineEdit12setInputMaskERK7QString
 0x14009d170 _ZN9QLineEdit12setMaxLengthEi
 0x14009d178 _ZN9QLineEdit12setValidatorEPK10QValidator
 0x14009d180 _ZN9QLineEdit18setPlaceholderTextERK7QString
 0x14009d188 _ZN9QLineEdit7setTextERK7QString
 0x14009d190 _ZN9QLineEditC1EP7QWidget
 0x14009d198 _ZNK11QListWidget16isSortingEnabledEv
 0x14009d1a0 _ZNK11QListWidget4itemEi
 0x14009d1a8 _ZNK15QAbstractButton9isCheckedEv
 0x14009d1b0 _ZNK6QLabel4textEv
 0x14009d1b8 _ZNK7QWidget10redirectedEP6QPoint
 0x14009d1c0 _ZNK7QWidget11initPainterEP8QPainter
 0x14009d1c8 _ZNK7QWidget11paintEngineEv
 0x14009d1d0 _ZNK7QWidget13sharedPainterEv
 0x14009d1d8 _ZNK7QWidget14heightForWidthEi
 0x14009d1e0 _ZNK7QWidget15minimumSizeHintEv
 0x14009d1e8 _ZNK7QWidget16inputMethodQueryEN2Qt16InputMethodQueryE
 0x14009d1f0 _ZNK7QWidget17hasHeightForWidthEv
 0x14009d1f8 _ZNK7QWidget6metricEN12QPaintDevice17PaintDeviceMetricE
 0x14009d200 _ZNK7QWidget7devTypeEv
 0x14009d208 _ZNK7QWidget8sizeHintEv
 0x14009d210 _ZNK9QLineEdit4textEv
 0x14009d218 _ZThn16_NK7QWidget10redirectedEP6QPoint
 0x14009d220 _ZThn16_NK7QWidget11initPainterEP8QPainter
 0x14009d228 _ZThn16_NK7QWidget11paintEngineEv
 0x14009d230 _ZThn16_NK7QWidget13sharedPainterEv
 0x14009d238 _ZThn16_NK7QWidget6metricEN12QPaintDevice17PaintDeviceMetricE
 0x14009d240 _ZThn16_NK7QWidget7devTypeEv
libgcc_s_seh-1.dll
 0x14009d250 _Unwind_Resume
KERNEL32.dll
 0x14009d260 DeleteCriticalSection
 0x14009d268 EnterCriticalSection
 0x14009d270 GetCommandLineW
 0x14009d278 GetLastError
 0x14009d280 GetStartupInfoA
 0x14009d288 InitializeCriticalSection
 0x14009d290 LeaveCriticalSection
 0x14009d298 LocalFree
 0x14009d2a0 SetUnhandledExceptionFilter
 0x14009d2a8 Sleep
 0x14009d2b0 TlsGetValue
 0x14009d2b8 VirtualProtect
 0x14009d2c0 VirtualQuery
 0x14009d2c8 WideCharToMultiByte
msvcrt.dll
 0x14009d2d8 __C_specific_handler
 0x14009d2e0 __getmainargs
 0x14009d2e8 __initenv
 0x14009d2f0 __iob_func
 0x14009d2f8 __set_app_type
 0x14009d300 __setusermatherr
 0x14009d308 _acmdln
 0x14009d310 _amsg_exit
 0x14009d318 _cexit
 0x14009d320 _commode
 0x14009d328 _fmode
 0x14009d330 _initterm
 0x14009d338 _onexit
 0x14009d340 abort
 0x14009d348 calloc
 0x14009d350 exit
 0x14009d358 fprintf
 0x14009d360 free
 0x14009d368 fwrite
 0x14009d370 malloc
 0x14009d378 memcpy
 0x14009d380 memmove
 0x14009d388 signal
 0x14009d390 strcmp
 0x14009d398 strlen
 0x14009d3a0 strncmp
 0x14009d3a8 vfprintf
SHELL32.dll
 0x14009d3b8 CommandLineToArgvW
libstdc++-6.dll
 0x14009d3c8 _ZTVN10__cxxabiv117__class_type_infoE
 0x14009d3d0 _ZTVN10__cxxabiv120__si_class_type_infoE
 0x14009d3d8 _ZTVN10__cxxabiv121__vmi_class_type_infoE
 0x14009d3e0 _ZdaPv
 0x14009d3e8 _ZdlPvy
 0x14009d3f0 _Znay
 0x14009d3f8 _Znwy
 0x14009d400 __cxa_throw_bad_array_new_length
 0x14009d408 __gxx_personality_seh0

EAT(Export Address Table) is none



Similarity measure (PE file only) - Checking for service failure