Dropped Files | ZeroBOX
Name 5e5c1a11d54b8ba5_jxtiysdozzsei.exe
Submit file
Filepath C:\Users\test22\AppData\Roaming\jXtiYSdozZSeI.exe
Size 876.0KB
Processes 2544 (vbc.exe)
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 e63496b56220eda9ed49225a2bfac1a1
SHA1 8c4a5f97dd591f8055e27d40c0b0a73952897384
SHA256 5e5c1a11d54b8ba5d9f76f68599cf3854eb77fffc00cad21a33e8d5a79268894
CRC32 F49E7EF7
ssdeep 24576:/5mTytBIIWCyDAaZADkREq+X+aVjQj1O:omIHNDNAkTgjQj1
Yara
  • UPX_Zero - UPX packed file
  • Is_DotNET_EXE - (no description)
  • IsPE32 - (no description)
  • Admin_Tool_IN_Zero - Admin Tool Sysinternals
  • PE_Header_Zero - PE File Signature
VirusTotal Search for analysis
Name af21f55368f00076_tmp5E96.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\tmp5E96.tmp
Size 1.6KB
Processes 2544 (vbc.exe)
Type XML 1.0 document, ASCII text, with CRLF line terminators
MD5 eaaf46c1cc2eef61395ec78f8b9551ea
SHA1 42eb61aff2167a00729d2b9e233cbe2831e8abee
SHA256 af21f55368f00076bff80e35c311719a6bd808d1543cadf61a41d47ded1e9c60
CRC32 F080BD6D
ssdeep 24:2dH4+SEqCH/7IlNMFQ/rlMhEMjnGpwjpIgUYODOLD9RJh7h8gKBXjtn:cbhf7IlNQQ/rydbz9I3YODOLNdq3P
Yara None matched
VirusTotal Search for analysis