1.0
低危

f75a4cb2c10c126509a06e019534655c15e0f1f2f227241c7c3c3a013a975ddb

4630d3e2e6ae57d184f58c1fc76fae97.exe

分析耗时

845s

最近分析

文件大小

71.5KB
静态报毒 动态报毒 AGEN AI SCORE=81 BTQJOP CLASSIC DRODGZIP EMGE FAREIT FORMBOOK FTYQ GDSDA GENERICKD GM0@AC52 GM0@QC52 GRAFTOR GULOADER HIGH CONFIDENCE IGENT MALWARE@#3GVBHLG5IGM2N NETWIRE PBFC PONYSTEALER R339199 SCORE VBKRYPT VBOBFUS VEBZENPAK ZEVBAF 更多
鹰眼引擎
未检测 暂无鹰眼引擎检测结果
静态判定
反病毒引擎
查杀引擎 查杀结果 查杀时间 查杀版本
McAfee Fareit-FST!2D1A02097FAB 20201211 6.0.6.653
Baidu 20190318 1.0.0.2
Avast Win32:Trojan-gen 20201210 21.1.5827.0
Kingsoft 20201211 2017.9.26.565
Tencent Win32.Trojan.Vebzenpak.Pbfc 20201211 1.0.0.1
静态指标
行为判定
动态指标
网络通信
File has been identified by 39 AntiVirus engines on VirusTotal as malicious (39 个事件)
Elastic malicious (high confidence)
MicroWorld-eScan Trojan.GenericKD.33961109
FireEye Trojan.GenericKD.33961109
McAfee Fareit-FST!2D1A02097FAB
Sangfor Malware
K7AntiVirus Trojan ( 00567f5e1 )
K7GW Trojan ( 00567f5e1 )
Arcabit Trojan.Generic.D2063495
Cyren GZ/Trojan.FTYQ-7
Symantec Trojan.Gen.NPE
Avast Win32:Trojan-gen
ClamAV Win.Dropper.NetWire-7996875-0
Kaspersky HEUR:Trojan.Win32.Vebzenpak.vho
BitDefender Trojan.GenericKD.33961109
Rising Downloader.Guloader!1.C738 (CLASSIC)
Ad-Aware Trojan.GenericKD.33961109
Emsisoft Trojan.GenericKD.33961109 (B)
Comodo Malware@#3gvbhlg5igm2n
F-Secure Heuristic.HEUR/AGEN.1135512
VIPRE Trojan.Win32.Generic!BT
McAfee-GW-Edition BehavesLike.VBObfus.lc
Sophos Mal/DrodGzip-A
Avira HEUR/AGEN.1135512
Antiy-AVL Trojan/Win32.Vebzenpak
Microsoft Trojan:Win32/FormBook.CQ!MTB
AegisLab Trojan.ZIP.Graftor.4!c
ZoneAlarm HEUR:Trojan.Win32.Vebzenpak.vho
GData Trojan.GenericKD.33961109
Cynet Malicious (score: 85)
AhnLab-V3 Trojan/Win32.VBKrypt.R339199
BitDefenderTheta Gen:NN.ZevbaF.34670.gm0@aC52!Rki
ALYac Gen:Heur.PonyStealer.gm0@QC52!Rki
MAX malware (ai score=81)
ESET-NOD32 a variant of Win32/Injector.EMGE
Tencent Win32.Trojan.Vebzenpak.Pbfc
Yandex Trojan.Igent.bTQJOp.24
Fortinet W32/EMGE!tr
AVG Win32:Trojan-gen
Panda Trj/GdSda.A
可视化分析
二进制图像
暂无二进制图像 该样本未生成二进制可视化图像
运行截图
暂无运行截图 该样本运行过程中未生成截图

👋 欢迎使用 ChatHawk

我是您的恶意软件分析助手,可以帮您分析和解读恶意软件报告。请随时向我提问!

🔍 主要威胁分析
⚡ 行为特征
🛡️ 防护建议
🔧 技术手段
🎯 检测方法
🤖
No static analysis available.

Hosts

No hosts contacted.

DNS

No domains contacted.

TCP

No TCP connections recorded.

UDP

No UDP connections recorded.

HTTP & HTTPS Requests

No HTTP requests performed.

ICMP traffic

No ICMP traffic performed.

IRC traffic

No IRC requests performed.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Snort Alerts

No Snort Alerts

Sorry! No dropped files.
Sorry! No dropped buffers.