Dropped Files | ZeroBOX
Name ca51d2aa595aa0d0_dotnetserver.exe
Submit file
Filepath C:\ProgramData\DotNetSecurity\DotNetServer.exe
Size 3.2MB
Processes 2584 (clp8.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 1c88f016b6d72ca7ef779a70c24db73f
SHA1 76dcf5135ff29c94885da4d8bacca520e8685fe1
SHA256 ca51d2aa595aa0d00df79e4618d8c51595b1ff839817220c266751f37e7bd37d
CRC32 B2CBED18
ssdeep 49152:lAhEmpgdFvlM27jPry6b4CJgGkN8iqXpHMxnTm5xKa8lPMqKWtPBccL8XPT:lcVGDSU66rGhNQXy0t8lPMq/8Xb
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis