Dropped Files | ZeroBOX
Name 73a8b0306a237247_oneetx.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\eb0f58bce7\oneetx.exe
Size 3.5MB
Processes 2552 (taskhostamd.exe)
Type MS-DOS executable, MZ for MS-DOS
MD5 54cbe835ac726ec258b58566cab62aaa
SHA1 4b8ab17710fe380fdd565b21673a645d8b2085af
SHA256 73a8b0306a237247a9ae4187e6d3df691bfb5069a2cf3755597c48631a3f913d
CRC32 D3176C71
ssdeep 98304:EXY8W8Wdatv7vsldD2ljL0Du5Gi20MwOmawp:2Y8Wkd7+DULUuYismz
Yara
  • UPX_Zero - UPX packed file
  • PE_Header_Zero - PE File Signature
  • MPRESS_Zero - MPRESS packed file
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 824732f943775cde_832866432405
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\832866432405
Size 23.7KB
Processes 2708 (oneetx.exe)
Type JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 1024x768, frames 3
MD5 6ed09364615ad0acb346dc584465d861
SHA1 6c24d1062fe2622f357eee962009784d30c8d93a
SHA256 824732f943775cde3be4df74d37b78a3b635d34dfdfc0ffeb6af38d14dcd3eae
CRC32 2E5DFD96
ssdeep 192:WfJaLyOeTVezoJqNdIheZH18isdgVM/cBhjeEKm3RDNLhMsySe6pXJtn:0JaiPk7vZAq6UhjRpSsbZF
Yara
  • JPEG_Format_Zero - JPEG Format
VirusTotal Search for analysis