Dropped Files | ZeroBOX
Name e3b0c44298fc1c14_nsz63F3.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nsz63F3.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 8ccfc5fe97f4cee5_slac.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\SLAC.exe
Size 1.5MB
Processes 2648 (SLAC-Setup.exe)
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 5c94c45334add974db8de25b3f421c33
SHA1 ded42d79f6e4618afb183dfd5f127878e45c2c2b
SHA256 8ccfc5fe97f4cee58a265c5fafdfe6c216c7aa82ba962e670d7089d9a825805e
CRC32 7A3D2342
ssdeep 24576:Ah0SvTsPAhv7257y+GY7J/+ICxaW/c8auel6o4i:NSvTXK1GY71kIWk8au
Yara
  • Win32_Trojan_PWS_Net_1_Zero - Win32 Trojan PWS .NET Azorult
  • PE_Header_Zero - PE File Signature
  • Generic_Malware_Zero - Generic Malware
  • Is_DotNET_EXE - (no description)
  • IsPE32 - (no description)
  • Win_Backdoor_AsyncRAT_Zero - Win Backdoor AsyncRAT
VirusTotal Search for analysis
Name 631dc4a58e611a2a_slac-updater.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\SLAC-Updater.exe
Size 1.7MB
Processes 2648 (SLAC-Setup.exe)
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 9bf9671ea7489b2a5a449e732e2a3fc6
SHA1 82be628dd3627c7153f757e949ba26bc4aac0af8
SHA256 631dc4a58e611a2a7c021e85cc22286919ef27302489a41266bfa2bef9d56ffc
CRC32 CAA56CA8
ssdeep 49152:7xBRhrHZ0wqI2Ibhs+1tRoF6VbY/ErDJeRX2fbMFg:VBRdOwqZIbS+FoclYf
Yara
  • Win32_Trojan_PWS_Net_1_Zero - Win32 Trojan PWS .NET Azorult
  • PE_Header_Zero - PE File Signature
  • Generic_Malware_Zero - Generic Malware
  • Is_DotNET_EXE - (no description)
  • IsPE32 - (no description)
  • Win_Backdoor_AsyncRAT_Zero - Win Backdoor AsyncRAT
VirusTotal Search for analysis