Dropped Files | ZeroBOX
Name 4a3a3f34afe1a2cb_whattgoal.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\IXP000.TMP\whattgoal.exe
Size 50.5KB
Processes 2556 (niceeyestrain.exe)
Type PE32+ executable (GUI) x86-64 Mono/.Net assembly, for MS Windows
MD5 e8ac9fef82e86c56f81313640fd42ec4
SHA1 6789d85c545ed9d5f5a53d6006d5347093cf1b84
SHA256 4a3a3f34afe1a2cb8e959f54087ec090b3cad20733fe0af6e46865df2215687d
CRC32 DF4DDF0D
ssdeep 768:47ehDBFryvt/3AFJZs99W+2hDowUz0aanofBtnTLEhe00dgv:MeZBmYJZsh2h0B0CnHEYfiv
Yara
  • IsPE64 - (no description)
  • PE_Header_Zero - PE File Signature
VirusTotal Search for analysis
Name 0cb6c649a9cb212b_whatgoal.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\IXP000.TMP\whatgoal.exe
Size 51.0KB
Processes 2556 (niceeyestrain.exe)
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 70ea5dcc48050106d53dc725eb34c858
SHA1 2115413890b23a3beffca441a6871a433aaa83c3
SHA256 0cb6c649a9cb212b0e25528afece64e0e130d8c1b4a45cd677874472161793fc
CRC32 F8EA71F1
ssdeep 1536:YxYmkvuAO7ZsO2jDn0GclDFdDHm3BG4nXDoUVKX:YuU2jDn2pX4nXUU+
Yara
  • Is_DotNET_EXE - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis