Dropped Files | ZeroBOX
Name 10a122bd647c88aa_axhub.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\axhub.dll
Size 48.0KB
Processes 6192 (2022c578cf7429b85615d4819d161edc.exe) 8800 (rundll32.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 89c739ae3bbee8c40a52090ad0641d31
SHA1 d0f7dc9a0a3e52af0f9f9736f26e401636c420a1
SHA256 10a122bd647c88aa23f96687e26b251862e83be9dbb89532f4a578689547972d
CRC32 D5AF0061
ssdeep 768:nVQqTpLbvEFfifTIl2oy1vw/zhnCD5kdgqvlxy:nOqTpLLeqf+y1vwLhnCkdvlxy
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 335b278cd1e6c0fe_axhub.dll.lnk
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\axhub.dll.lnk
Size 788.0B
Processes 6192 (2022c578cf7429b85615d4819d161edc.exe)
Type MS Windows shortcut, Item id list present, Has Relative path, Has command line arguments, ctime=Sun Dec 31 15:32:08 1600, mtime=Sun Dec 31 15:32:08 1600, atime=Sun Dec 31 15:32:08 1600, length=0, window=hide
MD5 80c7ad12671fc4b0937f3eba46acde90
SHA1 a85fb608bbd0e67de2889407689a198439a8bd53
SHA256 335b278cd1e6c0fea83ebea6b10ff8a7582e90e806ea38ee1e64792566dd57ef
CRC32 6A1C51A4
ssdeep 12:8AlXEbC3pQVe/4V3lrW+filk/Q1sQljiQlODmNz4t2YLEPKzlX8:8A7pQQClK+filD71dBPy
Yara
  • Lnk_Format_Zero - LNK Format
VirusTotal Search for analysis
Name a04ad381ec497668_axhub.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\axhub.dat
Size 552.0KB
Processes 6192 (2022c578cf7429b85615d4819d161edc.exe) 8800 (rundll32.exe)
Type data
MD5 3275c1f428ee9efd56651aa1d21802bf
SHA1 801e0c46c0d5781de9d8b18a1ec48539f4cd11ec
SHA256 a04ad381ec497668625a2e12a8bd88d91e8ad9592643557beda0321498d4a209
CRC32 7F0B996B
ssdeep 12288:LJl0P3ZbcCAjqH0d5i+qUH6wyZQMvvdgMiCiD:LJla39cGH0dg7sOlQCiD
Yara None matched
VirusTotal Search for analysis