Dropped Files | ZeroBOX
Name aaaea59db65aabf4_jgkzvzjcoqt.exe
Submit file
Filepath C:\Windows\WindowsUpdata\jgkzvzjcoqt.exe
Size 31.0MB
Processes 1884 (win.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed
MD5 3eef414374a6cdb894ee6db17fb669e5
SHA1 74d17f738a30a540b7c226170154842516178732
SHA256 aaaea59db65aabf4354bf9d549b15e2484402d323d33e1d712fe4098a71b7275
CRC32 526CDA42
ssdeep 1536:R625Dpcpnwwb6Xmg/lS/9UbzR4jDUsTlGnouy8p:R64DCzUdMUbzR4n3Tl2outp
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 0664fe80b27add36_win.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\win.exe
Size 48.5KB
Type PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed
MD5 be47562482b77cbab1d03e6290a75c8c
SHA1 ab6e533541c8a7fbb5a99498d7583b9449e1f3c5
SHA256 0664fe80b27add36b24a8865d6c40c458c1754968bfdb33c78c92e84aa8c2c06
CRC32 92E029D0
ssdeep 1536:R625Dpcpnwwb6Xmg/lS/9UbzR4jDUsTlGnouy8:R64DCzUdMUbzR4n3Tl2out
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis