Dropped Files | ZeroBOX
Name 44a2e8db6819c8a7_skotes.job
Submit file
Filepath C:\Windows\Tasks\skotes.job
Size 270.0B
Processes 2560 (norm.exe)
Type VAX-order 68k Blit mpx/mux executable
MD5 4338e54c6442d744b50230b90954821a
SHA1 8c296537cae9f0bd698369f928c381b1fad1254f
SHA256 44a2e8db6819c8a72eb3579e7a7c5090c3b9d79cd7df086a7a1e314edd021a81
CRC32 794C640B
ssdeep 6:Z9QXZ5tXE/E/UEZ+lX1CGdKUe6tI4y0lBsQt0:QXZ5ZkE/Q1CGAFv4VBsQt0
Yara None matched
VirusTotal Search for analysis
Name 51c35cc8bfc37189_skotes.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\abc3bc1985\skotes.exe
Size 3.3MB
Processes 2560 (norm.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 7cfe878555b8cc04fc52385219b423d7
SHA1 cff23beb3f3223610a37a9b52d3b9495438c5c1f
SHA256 51c35cc8bfc37189048a0454992f30143289dcace11c5fc108db47e91f467bd0
CRC32 36E13960
ssdeep 49152:pd0WyZt1UbFSOHUM04jhsaDfZt6TJ5nD3hdkMgE+jCtWszgEBCs9IYFDl:aZt8FjUF4jhBZtmhjjf8gRPJ
Yara
  • themida_packer - themida packer
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis