Dropped Files | ZeroBOX
Name 0c171c5a01b946e2_gxtuum.job
Submit file
Filepath C:\Windows\Tasks\Gxtuum.job
Size 270.0B
Processes 1960 (ywx.exe)
Type VAX-order 68k Blit mpx/mux executable
MD5 289170aea97b287867484b8e399fd9b0
SHA1 666357ac53bd20b1312da0e9bc2804c4746afc89
SHA256 0c171c5a01b946e2b9dd01ee6af1af0ca8b8f94c2f1b6c1e4f15cec70badf8e4
CRC32 0742274A
ssdeep 6:sgIllpXE/E/UEZ+lX1CB64ibtI4y0lQut0:Sll1kE/Q1CB64im4V5t0
Yara None matched
VirusTotal Search for analysis
Name d2886d86ef67a355_gxtuum.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\87d87ee084\Gxtuum.exe
Size 428.5KB
Processes 1960 (ywx.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 4dba58c6e9f435c1cca607525760d0fd
SHA1 ff8d2afd9d7f0a828592fee34ca55d1a3542f7ed
SHA256 d2886d86ef67a3550a4aadcf623aa785fddcd3af754b3035229647f186005b1c
CRC32 C6D43EF3
ssdeep 12288:lP83dF+mKpRp++vNPokdXG78m8AfJJdI:4KpzPW8mllI
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • IsPE32 - (no description)
  • Generic_Malware_Zero - Generic Malware
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis