Dropped Files | ZeroBOX
Name e2fc71a03b829c9d_remotepcprinter.exe
Submit file
Filepath C:\Users\test22\Documents\NordVPNnetworkTAP\Lang\RemotePCPrinter.exe
Size 128.0MB
Processes 1648 (4422_8390.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 7e91c26c9515cda6c76bc93947fa1839
SHA1 901ef3d0e476e805b90903f49d580fde28a483a5
SHA256 2021df4898dc1b3c94a5e55862c37d1516f03233329c172842207c751fc2ccca
CRC32 8B0C4CC5
ssdeep 98304:6Z5XjIQUWoG7dPdVdjtT9jvwWJlslD86DtQXIAYCuPL8rn6M3M3t4:6XXUXG7dPdVdx+g+pL4nP
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • Win32_Trojan_Emotet_1_Zero - Win32 Trojan Emotet
  • IsPE32 - (no description)
  • Generic_Malware_Zero - Generic Malware
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis