Dropped Files | ZeroBOX
Name 52b5234dab0fa2a9_oneetx.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\c3912af058\oneetx.exe
Size 205.8KB
Processes 2916 (m4586991.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 5ac0d4947e7e75c8024eb7e71ea7290c
SHA1 10030c220c2b0a2ab4e1b5966a5de4f48e67ee71
SHA256 52b5234dab0fa2a9f34a46552c46d9d1a732a1202b8fa31aa1f1cc9b82bf8531
CRC32 EBAE1615
ssdeep 3072:mhMCsw9/w+A4cwP+5OzutpHKGruONM4QuZA+67bi83eILfbq5kmh:5Cswq+AXYu7HGOSuZAlAILjq
Yara
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
  • Malicious_Packer_Zero - Malicious Packer
  • IsPE32 - (no description)
  • PE_Header_Zero - PE File Signature
  • Malicious_Library_Zero - Malicious_Library
VirusTotal Search for analysis
Name e3b0c44298fc1c14_cred64.dll
Empty file or file not found
Filepath C:\Users\test22\AppData\Roaming\006700e5a2ab05\cred64.dll
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis