valkyrie logo
valkyrie logo
  • Download Threat Hunter Assessment Tool
DASHBOARD
  • Unknown File Hunter Scans
STATISTICS
SETTINGS
  • Summary
  • Static Analysis
  • Dynamic Analysis
  • Precise Detectors
  • File Details
Analyzing...
File Name:   73cc3a2d9846e4a98158e080cf58190d249796de85f334859ad89fd9cec293f7.exe
SHA1:   04da8b89c7390f01818a0a5cb9a7f4ef368607b7
MD5:   6953452ad7d9e8a32b59afc707b11147
First Seen Date:  2023-08-10 18:16:54.992163 ( 2023-08-10 18:16:54.992163 )
Number of Clients Seen:   3
Last Analysis Date:  2023-08-10 18:16:54.992163 ( 2023-08-10 18:16:54.992163 )
Human Expert Analysis Result:   No human expert analysis verdict given to this sample yet.

Analysis Summary

Analysis Type Date Verdict
Signature Based Detection 2023-08-10 18:16:54.992163 Clean
Static Analysis Overall Verdict 2023-08-10 18:16:54.992163 No Threat Found help
Dynamic Analysis Overall Verdict 2023-08-10 18:16:54.992163 No Threat Found help
Precise Detectors Overall Verdict 2023-08-10 18:16:54.992163 No Match help

Static Analysis

Static Analysis Overall Verdict Result
No Threat Found help
Detector Result
Optional Header LoaderFlags field is valued illegal Clean
Non-ascii or empty section names detected Clean
Illegal size of optional Header Clean
Packer detection on signature database Unknown help
Based on the sections entropy check! file is possibly packed Suspicious
Timestamp value suspicious Clean
Header Checksum is zero! Clean
Enrty point is outside the 1st(.code) section! Binary is possibly packed Clean
Optional Header NumberOfRvaAndSizes field is valued illegal Clean
Anti-vm present Clean
The Size Of Raw data is valued illegal! Binary might crash your disassembler/debugger Clean
TLS callback functions array detected Clean

Dynamic Analysis

Dynamic Analysis Overall Verdict Result
No Threat Found help
Suspicious Behaviors
Opens a file in a system directory
Uses a function clandestinely
Has no visible windows

73cc3a2d9846e4a98158e080cf58190d249796de85f334859ad89fd9cec293f7.exe tried to connect to some addresses pinned on the map below (click pins for more details):

Behavioral Information

QueryFilePath

C:\Windows\syswow64\CRYPT32.dll

C:\Windows\system32\cryptnet.dll

C:\Windows\System32\msxml3.dll

C:\Windows\syswow64\MSCTF.dll

C:\Windows\syswow64\USER32.dll

LowerChar

http

OpenService

dbupdatem

CreateMutex

<NULL>

OpenMutex

Local\MSCTF.Asm.MutexDefault1

WriteFile

C:\ProgramData\Dropbox\Update\Log\DropboxUpdate.log-2023-08-10-18-16-58-824-556

ReadFile

C:\Windows\Fonts\staticcache.dat

LoadLibrary

SHLWAPI.dll

SHELL32.dll

USER32.dll

WINTRUST.dll

CRYPTSP.dll

ADVAPI32.dll

CRYPTBASE.dll

WINTRUST.DLL

C:\Windows\syswow64\CRYPT32.dll

imagehlp.dll

ncrypt.dll

C:\Windows\SysWOW64\bcryptprimitives.dll

bcrypt.dll

crypt32.dll

USERENV.dll

API-MS-Win-Security-SDDL-L1-1-0.dll

cryptnet.dll

C:\Windows\system32\cryptnet.dll

profapi.dll

API-MS-WIN-Service-Management-L1-1-0.dll

API-MS-WIN-Service-winsvc-L1-1-0.dll

RPCRT4.dll

API-MS-Win-Security-LSALookup-L1-1-0.dll

CRYPT32.dll

VERSION.dll

ADVAPI32.DLL

cscapi.dll

dbghelp.dll

rpcrt4.dll

ntmarta.dll

kernel32.dll

comctl32.dll

UxTheme.dll

API-MS-Win-Core-LocalRegistry-L1-1-0.dll

C:\Windows\System32\msxml3r.dll

C:\Windows\system32\ole32.dll

Precise Detectors Analysis Results

Detector Name Date Verdict Reason
Static Precise PUA Detector 1 2023-08-10 18:16:51.787775 No Match help NotDetected
Static Precise PUA Detector 4 2023-08-10 18:16:51.808998 No Match help NotDetected
Static Precise NI Detector 3 2023-08-10 18:16:51.937067 No Match help NotDetected
Static Precise PUA Detector 5 2023-08-10 18:16:51.936709 No Match help NotDetected
Static Precise Trojan Detector 1 2023-08-10 18:16:51.936739 No Match help NotDetected
Static Precise Trojan Detector 3 2023-08-10 18:16:51.952906 No Match help NotDetected
Static Precise PUA Detector 6 2023-08-10 18:16:51.965815 No Match help NotDetected
Static Precise Trojan Detector 12 2023-08-10 18:16:51.998216 No Match help NotDetected
Static Precise Virus Detector 1 2023-08-10 18:16:52.040943 No Match help NotDetected
Static Precise Virus Detector 2 2023-08-10 18:16:52.005746 No Match help NotDetected
Static Precise Trojan Detector 13 2023-08-10 18:16:52.083563 No Match help NotDetected
Static Precise PUA Detector 2 2023-08-10 18:16:52.097203 No Match help NotDetected

Advance Heuristics

No Advanced Heuristic Analysis Result Received

Detector Result

Additional File Information

Vendor Validation

Certificate Validation

PE Headers

Property Value

File Paths

File Path on Client Seen Count
04da8b89c7390f01818a0a5cb9a7f4ef368607b7 1

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy MD5

PE Imports

PE Exports

PE Resources

© Verdict Cloud, Xcitium, Inc. 2025. All rights reserved. v1.49.0-72-ENT
 
 
 
 
Loading...