Dropped Files | ZeroBOX
Name f87b7426970122ba_myiv.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\mYIv.exe
Size 202.5KB
Processes 1460 (wscript.exe)
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 842793f4ae0abae1c4e0d1d00c3b1b36
SHA1 45cc5efe42d8ff19e8f4eafdcfe9e2cc0c62bb76
SHA256 f87b7426970122ba506c6dc25e7877f93af482db93df438bd613cea22b06a3b2
CRC32 A143446F
ssdeep 6144:gLV6Bta6dtJmakIM5xq+HjVCuSj2OjrtJrIOXv:gLV6BtpmkUq+DVcH8M
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • Is_DotNET_EXE - (no description)
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 62be4c8a2a745f8e_run.dat
Submit file
Filepath C:\Users\test22\AppData\Roaming\017BD04F-B3BF-45B6-8167-9E8F41FF87BF\run.dat
Size 8.0B
Processes 2088 (mYIv.exe)
Type ISO-8859 text, with no line terminators
MD5 1a239973d1ce5d3334219d024f206ca8
SHA1 3f7468fdf0652a03927822f74ee54f4bfa156962
SHA256 62be4c8a2a745f8e7bfb8770ff28e6c02d15c909ffe9f47b17dcc1460294f8ab
CRC32 D8F0C106
ssdeep 3:QAzn:f
Yara None matched
VirusTotal Search for analysis