Dropped Files | ZeroBOX
Name 36c32162148bf6fe_payload.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\IXP000.TMP\payload.exe
Size 128.0MB
Processes 516 (new.EXE)
Type PE32+ executable (console) x86-64, for MS Windows
MD5 91d1bcec09c6cd358a51f89aaf7d7308
SHA1 25c2c0c363e457af1872dbd39377f9471c2afcf5
SHA256 e45c05be989a8bd448c2a01a8cfe60b9aab6f4f91144c6563a0616ea85628a66
CRC32 79EB39B6
ssdeep 6144:OCtVvndEcGF7EMQVIMdt/ROvyLX8Jb2WsGgbCnk:xf/qLFQei/RzX1GMCk
Yara
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
  • IsPE64 - (no description)
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
VirusTotal Search for analysis