Dropped Burrfers | ZeroBOX
Name 8224b1c7e55e6855c72961a53475655ea1876986
Size 50.5KB
Type DOS executable (block device driver)
MD5 d82a81de8c02224a1e5f1daf09aa2ae6
SHA1 8224b1c7e55e6855c72961a53475655ea1876986
SHA256 4c7fcad5cb3f9d61ad1927c76afb08384410dc31f49cdc8b1587983b4b3686cb
CRC32 81D4FBD3
ssdeep 384:sEonp7K8ObmJz1RU10Hw5WNvU+Tv4ke4kcv2:oxvoaRv7Trm
Yara None matched
VirusTotal Search for analysis
Name 938dca5a869dbe5d49e0aac1e7e9c612339bdfe2
Size 818.0KB
Type data
MD5 98af388e234c74fe2c70c6f8b0126d92
SHA1 938dca5a869dbe5d49e0aac1e7e9c612339bdfe2
SHA256 f5712e3918ca81885886237e82a1edcf4f314ead4ed76bab0f1a86971ded9026
CRC32 84749767
ssdeep 6144:HnO6VOGZ/OsxHABle/C7siPlvGAyPGXkZqbGEejDqLZXBV50DEr6m9WsuaeCeBe3:BVvnevryPwcjDgNuseBR9K40AAWc
Yara
  • OS_Processor_Check_Zero - OS Processor Check Signature Zero
  • network_tcp_listen - Listen for incoming communication
  • network_tcp_socket - Communications over RAW socket
  • network_dns - Communications use DNS
  • bitcoin - Perform crypto currency mining
  • win_registry - Affect system registries
  • win_files_operation - Affect private profile
  • Str_Win32_Winsock2_Library - Match Winsock 2 API library declaration
VirusTotal Search for analysis
Name 63990bdefb4db61c71033c677c5ace1799dc21fc
Size 2.1MB
Type zlib compressed data
MD5 55335f090d30dd826eee0e96d5139209
SHA1 63990bdefb4db61c71033c677c5ace1799dc21fc
SHA256 be22575e827e835b79f8842d8dd38dec07234a7b15053d33ea41eb2e3029d51b
CRC32 7B537961
ssdeep 49152:+/qiVfhj3WyroQT5eYtrpLt8TKVKHrxl2yFblJ7Svpi:8jKypT2FxZ7Svp
Yara None matched
VirusTotal Search for analysis
Name 1af17710e5371a9f7afa9c8076688fcd3fff0727
Size 29.0KB
Type data
MD5 2e62c1edfee9b8c90b30ce9b81eb0ebf
SHA1 1af17710e5371a9f7afa9c8076688fcd3fff0727
SHA256 ac8624cae9801366e873bbda430cbf2a669d16d51df666b05925b27753912da0
CRC32 4F4D7540
ssdeep 384:LVNZB0/wE01ssFGsws6aF27lKMEOjv9FTZ5xvGz16HR3eR9RCszs0dS7n7q9MZvy:n7x2aFolLZi1vdivpl/0jgg
Yara None matched
VirusTotal Search for analysis
Name 3c2986bc4c8624cd0676e583991ab8c60f9fe9ab
Size 462.0KB
Type data
MD5 4a34e4b4ed9f0cbd28556be8e54728ae
SHA1 3c2986bc4c8624cd0676e583991ab8c60f9fe9ab
SHA256 cda1cb4d8f0a3180821d0a9fa8036589212ecf118168e75e881754ae7a134d4a
CRC32 C93B0C3C
ssdeep 12288:R58x1dcIdiDwEijFx5z4JGQNosNckZXsJc:4NdiDwE8x5zwHNo8FZXQ
Yara None matched
VirusTotal Search for analysis
Name 4d6d894e9cac7c841a8a2b113c7ead8aaf697e7b
Size 100.5KB
Type data
MD5 9223e326168177d3d58c19c3a233885a
SHA1 4d6d894e9cac7c841a8a2b113c7ead8aaf697e7b
SHA256 64406e2317e18c52f5f23f495fbc5729620680f73ddf27a94adc43d7bc23fc6f
CRC32 8CA704B2
ssdeep 3072:Vxm818omhBN+nsnNaHFrmSFxIZdlZSEM:VsFhBN+2N+BmS/IZk
Yara None matched
VirusTotal Search for analysis