Dropped Files | ZeroBOX
Name 004cae62d64d4fd4_explorer.exe
Submit file
Filepath C:\ProgramData\explorer.exe
Size 87.0KB
Processes 3024 (Lammer.exe)
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 49545f0af79ded22054bfd851bb3d864
SHA1 35db307d4e2d287e005262a5d5edd56b73bfc415
SHA256 004cae62d64d4fd40532660626ef95b5c5a899de64e060f9e6223974219ef080
CRC32 F15BAB26
ssdeep 1536:cN0ORWXZVbYkEGS8jIc0+9X3fW/UKT3Zwr5mnBC0jGQ44UGyMaD2JBcwlbctgKs:c1EX/bXEGS8j3f/m2tmnBfhUGyMaD2Jh
Yara
  • Is_DotNET_EXE - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis