Dropped Files | ZeroBOX
Name 3ad2dc318056d0a2_modern-wizard.bmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nsz24.tmp\modern-wizard.bmp
Size 25.9KB
Processes 2864 (sisifo_setup.exe)
Type PC bitmap, Windows 3.x format, 164 x 314 x 4
MD5 cbe40fd2b1ec96daedc65da172d90022
SHA1 366c216220aa4329dff6c485fd0e9b0f4f0a7944
SHA256 3ad2dc318056d0a2024af1804ea741146cfc18cc404649a44610cbf8b2056cf2
CRC32 04BB5FC8
ssdeep 24:Qwika6aSaaDaVYoG6abuJsnZs5GhI11BayNXPcDrSsUWcSphsWwlEWqCl6aHAX2x:Qoi47a5G8SddzKFIcsOz3Xz
Yara None matched
VirusTotal Search for analysis
Name 711cee9347807f0c_iospecial.ini
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nsz24.tmp\ioSpecial.ini
Size 752.0B
Processes 2864 (sisifo_setup.exe)
Type ISO-8859 text, with CRLF line terminators
MD5 3affc63dd234c5287cd83bd043111411
SHA1 d4ed89467e86ccfaacf85706019a9e95efcfa21f
SHA256 711cee9347807f0c0361bf1dabefb1250c6911a0cf10b12281ab7b2ce72d2bee
CRC32 B2995B0A
ssdeep 12:lOu8dfAgQRvAPOLMxhcZ4gNhdQH+wYj4gNDEaout/Y+bdyIibozxq7:6kRvAZxhcZ154Hq1ZEk14ozxO
Yara None matched
VirusTotal Search for analysis
Name 17f0946e0847bbaa_installoptions.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nsz24.tmp\InstallOptions.dll
Size 14.0KB
Processes 2864 (sisifo_setup.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 7e49eb67f1f3c62bb8c4b0a868b30645
SHA1 2be42e3c6059485bc3b624a537ab1fb36a10a263
SHA256 17f0946e0847bbaa6a06eb58aead13fce22a8606e9b3744cd2241debdf8d8bae
CRC32 FC057AD3
ssdeep 192:/6JaVGQ+xI5EeuyvMmGpeWH2J5xprN+AxTSK72dwF7dBdcQOz:/6JaVh4I5rpPbTS+BdhO
Yara
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis