Dropped Files | ZeroBOX
Name 82cd6294ed48c5b1_nicosoft.exe
Submit file
Filepath C:\Windows\System32\nicosoft.exe
Size 124.5KB
Processes 1944 (task.exe)
Type PE32+ executable (GUI) x86-64, for MS Windows
MD5 8aae15607e68d0458b3731b81286bac2
SHA1 26ade53db8a79261c9ed5bfe194aa27312845982
SHA256 82cd6294ed48c5b1fd17871305f4f46ea309b47087b022e2b9b6028084d92e63
CRC32 02552306
ssdeep 3072:I18KCW/Mz0eMxw4tF9Uf6jJLXro+SRYCqrJ+PpPKX2CApzjp:08K3/WYtTZJLXri9qt6hBJ
Yara
  • UPX_Zero - UPX packed file
  • IsPE64 - (no description)
  • PE_Header_Zero - PE File Signature
VirusTotal Search for analysis