Dropped Files | ZeroBOX
Name b70719f9588ede8d_TiWorker.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\TiWorker.exe
Size 604.0KB
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 e10fec549c39c3274dcda749ec3a7119
SHA1 467eb88366dd6778937cc682f2d0793bb8b8e4e2
SHA256 b70719f9588ede8d438d20b549b4fd430c9363eea7dd42e8a15be7d2a520257a
CRC32 CE1CB67B
ssdeep 12288:of1Qxpw8pplE3iifF2iRRv7lAscevzlfgzvulAvheD1P/wOwJ:Vxpw8CF7l9c25gzvulAc1/Z0
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • Is_DotNET_EXE - (no description)
  • Win32_Trojan_PWS_Net_1_Zero - Win32 Trojan PWS .NET Azorult
VirusTotal Search for analysis