Summary | ZeroBOX

SoftwareUpdate

Gen1 Generic Malware Malicious Library UPX Malicious Packer PE File OS Processor Check PE32
Category Machine Started Completed
FILE s1_win7_x6403_us May 1, 2025, 9:59 a.m. May 1, 2025, 9:59 a.m.
Size 1.7MB
Type PE32 executable (console) Intel 80386, for MS Windows
MD5 61a5c86e1bb2a7c290deb921c4a93053
SHA256 a7bfbe2035e4d7247796bbd64435c16c3e79b0ac5ce2fd7ea2368ed390f8bbd4
CRC32 254C9E48
ssdeep 24576:n7LpZrGn9TQvn7LpZrGn9TQvG7LpZrGn9TQvW7LpZrGn9TQvD7LpZrGn9TQv:nmn9TQPmn9TQemn9TQOmn9TQ7mn9TQ
PDB Path SearchProtocolHost.pdb
Yara
  • PE_Header_Zero - PE File Signature
  • Win32_Trojan_Gen_1_0904B0_Zero - Win32 Trojan Emotet
  • Malicious_Packer_Zero - Malicious Packer
  • Malicious_Library_Zero - Malicious_Library
  • IsPE32 - (no description)
  • Generic_Malware_Zero - Generic Malware
  • OS_Processor_Check_Zero - OS Processor Check
  • UPX_Zero - UPX packed file

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path SearchProtocolHost.pdb
section .didat
section {u'size_of_data': u'0x00015400', u'virtual_address': u'0x00040000', u'entropy': 7.053422527336109, u'name': u'.rsrc', u'virtual_size': u'0x000152b0'} entropy 7.05342252734 description A section with a high entropy has been found
entropy 0.252600297177 description Overall entropy of this PE file is high
Lionic Trojan.Win32.GenericS.4!c
ALYac Trojan.GenericS.1506
Cylance Unsafe
VIPRE Trojan.GenericS.1506
Sangfor Trojan.Win32.Agent.Vgix
BitDefender Trojan.GenericS.1506
Arcabit Trojan.GenericS.D5E2
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
Avast Win32:Lumma-E [Drp]
MicroWorld-eScan Trojan.GenericS.1506
Emsisoft Trojan.GenericS.1506 (B)
F-Secure Dropper.DR/AVI.Lumma.bzfqa
McAfeeD ti!A7BFBE2035E4
CTX exe.trojan.generics
Sophos Troj/DwnLd-ARJ
Google Detected
Avira DR/AVI.Lumma.bzfqa
Microsoft Trojan:Win32/LummaStealer!rfn
ZoneAlarm Troj/DwnLd-ARJ
GData Trojan.GenericS.1506
Varist W32/ABTrojan.ANTH-6611
McAfee Artemis!61A5C86E1BB2
DeepInstinct MALICIOUS
Ikarus Dropper.Lumma
Panda Trj/Chgt.AD
Fortinet W32/PossibleThreat
AVG Win32:Lumma-E [Drp]