Dropped Files | ZeroBOX
Name afdf39427da3fa46_cronômetro.exe
Submit file
Size 1.9MB
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 c936447056679be7cfbdb7273a1d98c8
SHA1 c5cced196c4022007a64ec9dbef722f9c5340a0a
SHA256 afdf39427da3fa460a37445c8e26847190564c17961cb6bf056a88668fa17891
CRC32 AE2EC356
ssdeep 49152:oy2jIylGC+wzZAElWCaPbGZfkuR6C3bLQt+HObUJJGy:oyBPC3A2WCaPusuLQt+ubUHGy
Yara
  • Win_Backdoor_AsyncRAT_Zero - Win Backdoor AsyncRAT
  • Is_DotNET_EXE - (no description)
  • UPX_Zero - UPX packed file
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • Admin_Tool_IN_Zero - Admin Tool Sysinternals
VirusTotal Search for analysis
Name cd035c3e89adc194_cronoupdater.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\cronoupdater.exe
Size 124.0KB
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 f86b847a4d6112ee7e79510353e3a001
SHA1 a6db950ac022ef1d826b412f01a136c7e8a8f197
SHA256 cd035c3e89adc19456e7fba6922637c7cc31dd7a28e607f65c9a2aa689180831
CRC32 FDD306FC
ssdeep 3072:xSSb7u+Sm1w1DePdSNlxEYVXR4ElxbN64tQ:wSbq61LUb32
Yara
  • Win_Backdoor_AsyncRAT_Zero - Win Backdoor AsyncRAT
  • Is_DotNET_EXE - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis