File: 09b499278abba205e005982216e375bcdd89632c33b40e9df82e12122fb0d744

Metadata
File name:N/A
File type:N/A
File size:N/A
Analysis date:2015-11-23 09:26:00
MD5:ef618bd99411f11d0aa5b67d1173ccdf
SHA1:4d4334ff0545717b3adc165ab6748dce82098d97
SHA256:09b499278abba205e005982216e375bcdd89632c33b40e9df82e12122fb0d744
SHA512:N/A
SSDEEP:N/A
IMPHASH:N/A
Authentihash:N/A
Related resources
PE TypePE32
Internal Namehost.exe
File Size112 kB
Machine TypeIntel 386 or later, and compatibles
File OSWin32
Code Size79360
OS Version5.0
Entry Point0x1153a
File Flags Mask0x003f
Linker Version9.0
File SubtypeN/A
Uninitialized Data SizeN/A
File Version3.3.2.4
Initialized Data Size34816
File DescriptionAdobe Flash Player Installer
Product Version Number3.3.2.4
Product NameAdobe Flash Player Installer
Company NameSolid State Networks
MIME Typeapplication/octet-stream
Character SetWindows, Latin1
Language CodeEnglish (U.S.)
File Version Number3.3.2.4
File TypeWin32 EXE
Original Filenamehost.exe
Legal CopyrightCopyright (C) Adobe Systems Incorporated
SubsystemWindows GUI
Object File TypeExecutable application
Image Version0.0
File Flags(none)
Subsystem Version5.0
Product Version3.3.2.4
Source:
APTNotes
Cyber threat intelligence reports associated with 09b499278abba205e005982216e375bcdd89632c33b40e9df82e12122fb0d744.
Loading...
Domains
Domains the malware sample communicates with.
Hosts
Hosts the malware sample communicates with.
HTTP Requests
HTTP requests the malware sample makes.
AV Detections
AV detection names associated with the malware sample.
ALYacBackdoor.BlackEnergy.A
AVGFileRepMetagen [Malware]
Acronissuspicious
Ad-AwareBackdoor.BlackEnergy.A
AhnLab-V3Backdoor/Win32.Blakken.R121512
Antiy-AVLTrojan[Backdoor]/Win32.Blakken
ArcabitBackdoor.BlackEnergy.A
AvastWin32:Evo-gen [Susp]
AviraHEUR/AGEN.1019117
BitDefenderBackdoor.BlackEnergy.A
ClamAVWin.Trojan.BlackEnergy2-1
ComodoMalCrypt.Indus!@1qrzi1
CrowdStrikemalicious_confidence_90% (W)
Cybereasonmalicious.99411f
CylanceUnsafe
CyrenW32/BlackEnergy.PODM-3057
DrWebTrojan.MulDrop5.41151
ESET-NOD32Win32/Rootkit.BlackEnergy.BC
EmsisoftBackdoor.BlackEnergy.A (B)
Endgamemalicious (high confidence)
F-ProtW32/BlackEnergy.A
F-SecureTrojan-Dropper:W32/BlackEnergy.A
FortinetW32/Kryptik.CNLK!tr
GDataBackdoor.BlackEnergy.A
IkarusBackdoor.Win32.Blakken
Invinceaheuristic
JiangminBackdoor.Blakken.m
K7AntiVirusRootKit ( 004f15d11 )
K7GWRootKit ( 004f15d11 )
KasperskyBackdoor.Win32.Blakken.acr
MAXmalware (ai score=100)
McAfeeBlackEnergy.dr
McAfee-GW-EditionBehavesLike.Win32.Ramnit.cc
MicroWorld-eScanBackdoor.BlackEnergy.A
MicrosoftTrojan:Win32/Dynamer
NANO-AntivirusVirus.Win32.Gen.ccmw
Paloaltogeneric.ml
PandaTrj/Genetic.gen
Qihoo-360Trojan.Generic
RisingBackdoor.Win32.Phdet.b (CLOUD)
SentinelOnestatic engine - malicious
SophosTroj/Wonton-IZ
SymantecBackdoor.Lancafdo
TACHYONBackdoor/W32.Blakken.115200
TencentWin32.Backdoor.Blakken.Anfl
Trapminemalicious.high.ml.score
TrendMicroBKDR_BLACKEN.B
TrendMicro-HouseCallBKDR_BLACKEN.B
VBA32Malware-Cryptor.General.3
ViRobotTrojan.Win32.Agent.115200.AD
WebrootW32.Black.Energy
YandexBackdoor.Blakken!ee/OHw000iU
ZillyaBackdoor.Blakken.Win32.188
ZoneAlarmBackdoor.Win32.Blakken.acr
eGambitTrojan.Generic
Mutants
Mutants created by the malware sample.
Registry keys
Registry keys created by the malware sample.
Comments
User comments about 09b499278abba205e005982216e375bcdd89632c33b40e9df82e12122fb0d744.
NOTICE: We have updated our privacy terms and conditions in accordance to GDPR. By using our site, you acknowledge that you have read and understand our Privacy Policy. Your use of ThreatMiner’s Products and Services is subject to these policies and terms.