Dropped Files | ZeroBOX
Name 9dff020522bf324b_reg.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\reg.exe
Size 821.5KB
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 50fb8551eac496f827dd2d2506b6b529
SHA1 5ccad4ad690801d3ef4810cb9b7e3226d4483c9a
SHA256 9dff020522bf324baad2f822b6a1f452fafb098ad3a1941ccca698fbd99178b1
CRC32 35205A58
ssdeep 12288:Zp0SCTCZhY8232i+FSzwN72bOt4cqf3IQ3cCILw5teG8hMLiJU8PJMPndHK:H8+FSsN72ytZm33cw5teG8hMLiOs
Yara
  • Win_Backdoor_AsyncRAT_Zero - Win Backdoor AsyncRAT
  • PE_Header_Zero - PE File Signature Zero
  • keylogger - Run a keylogger
  • Win32_Trojan_PWS_Azorult_Net_1_Zero - Win32 Trojan PWS .NET Azorult
  • IsPE32 - (no description)
  • IsNET_EXE - (no description)
  • IsWindowsGUI - (no description)
  • IsPacked - Entropy Check
VirusTotal Search for analysis