Dropped Files | ZeroBOX
Name bd5658877c2dc9b4_cbhkg.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\Cbhkg.exe
Size 33.5KB
Processes 2572 (chrome.exe)
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 a90f8073678e2eaec55588908320333d
SHA1 f25d9afe4d90eb8d99645feac61019b07a8762eb
SHA256 bd5658877c2dc9b453017ac101af7ee69108da425e3ff744eccae56eaa00e0ba
CRC32 15C4DFF9
ssdeep 768:M4fK1pDGkptwyZScCBSUapNgqlGU/kZl+Bcgo5tlTF5928O9hxdR6:kDGkptwyZScCkU4rAUsZcB5o5HF5928X
Yara
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
  • Is_DotNET_EXE - (no description)
  • PE_Header_Zero - PE File Signature
  • Antivirus - Contains references to security software
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 8c21274f72529902_xegcelsedxlpr.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\Xegcelsedxlpr.exe
Size 76.5KB
Processes 2572 (chrome.exe)
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 6741d00c206f685140fd9cd0957aaaa8
SHA1 8e2da1453a6001aef807661db6940b1703846890
SHA256 8c21274f725299022fbf415925210da65702198913c4713dfe5dda09ceb2d38a
CRC32 7C640706
ssdeep 768:fbkvUI1MpBwEO+xex+GkXBZJII++cAPsIo80dIKqCSqMj2qSERS1d8IabLLLL9:QvNyvNOaex+GI+IomlCQjMmIaJ
Yara
  • Is_DotNET_EXE - (no description)
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis