Dropped Files | ZeroBOX
Name feaee85a19690a9b_svchost.exe
Submit file
Filepath C:\Users\test22\AppData\Roaming\svchost.exe
Size 55.0KB
Processes 2556 (V2.exe)
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 1ddc055a8a01bd308f8241446643d642
SHA1 13c2869279a0084bf2eb8b7808eecb30a25b9689
SHA256 feaee85a19690a9b85cc0aebb018d4f3915e9704ce27ce83547f74b6344bebac
CRC32 22878153
ssdeep 1536:QUWNMDncNi9y6iRDIwsNMD0XExI3pmom:MNMDn9ULRDIwsNMD0XExI3pm
Yara
  • PhysicalDrive_20181001 - (no description)
  • Win_Backdoor_njRAT_Zero - Win Backdoor njRAT
  • PE_Header_Zero - PE File Signature
  • Is_DotNET_EXE - (no description)
  • IsPE32 - (no description)
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis