Dropped Files | ZeroBOX
Name 495788c744dd3541_parttransfer.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\IXP000.TMP\parttransfer.exe
Size 8.1MB
Processes 3024 (parttransferpro.exe)
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 7a1678c2525ad8f13a9fc1b516e438d1
SHA1 775f4cbd6c97452574d9caed1b59b827460e56fb
SHA256 495788c744dd354101b3679348ec63719fc913c3e6bc9d393fea56e04cfdc5b1
CRC32 E8A19D8C
ssdeep 196608:wojlDNuKKzm2Bq5Q1Rz5j1bJxAC1WgN8:tNNuBm2B2Q1V5OC1Wn
Yara
  • Malicious_Library_Zero - Malicious_Library
  • Admin_Tool_IN_Zero - Admin Tool Sysinternals
  • PE_Header_Zero - PE File Signature
  • Is_DotNET_EXE - (no description)
  • IsPE32 - (no description)
VirusTotal Search for analysis