Dropped Files | ZeroBOX
Name 01cb8a7b4fe98dd0_filezilla_server_1.6.7_win64-setup.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\FileZilla_Server_1.6.7_win64-setup.exe
Size 5.0MB
Processes 2564 (wtrelaxing.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
MD5 7e30d0796a18e33e09031d5a456453bf
SHA1 eaa50bd5a0ce754a97c0ea2b31b05e43b2144453
SHA256 01cb8a7b4fe98dd0e7bd9d4ad82940b4bfe25512fe9511edd608fbc25cc55e3b
CRC32 662C94C5
ssdeep 98304:xyxTQhCKmaimBdNQBRzcfWV99rBczmD5zr2SBj2QfMbl:xyxTQfimKmfWVBcY/ol
Yara
  • UPX_Zero - UPX packed file
  • Malicious_Library_Zero - Malicious_Library
  • NSIS_Installer - Null Soft Installer
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis