Dropped Files | ZeroBOX
Name 07451b0c3aaa3d6d_verb.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\verb.exe
Size 232.5KB
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 46355d768d1028f7b95386d3ea309590
SHA1 902d28437c0e5322d79237f451cbd8dffe66bfc6
SHA256 07451b0c3aaa3d6dcb79a4ece6b59a5176226f234527ca810c8c50469a54d070
CRC32 FC76B4AC
ssdeep 3072:e/uPeFvwhVyaNcWcBCOSrTorfyuq5mUF5eWEFb3AgM34udq9Y9fNgbec+1+F3t26:eU3hXfet3Agp0q9ygbX+1RzDU8
Yara
  • PE_Header_Zero - PE File Signature
  • Generic_Malware_Zero - Generic Malware
  • Is_DotNET_EXE - (no description)
  • IsPE32 - (no description)
  • Win_Backdoor_AsyncRAT_Zero - Win Backdoor AsyncRAT
  • Win32_Trojan_PWS_Net_1_Zero - Win32 Trojan PWS .NET Azorult
VirusTotal Search for analysis
Name 85e82b9e9200e798_ .dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\44c4aa84-0294-4f68-8add-aba908a38de8\ .dll
Size 141.8KB
Processes 1868 (verb.exe)
Type PE32+ executable (DLL) (GUI) x86-64, for MS Windows
MD5 e8641f344213ca05d8b5264b5f4e2dee
SHA1 96729e31f9b805800b2248fd22a4b53e226c8309
SHA256 85e82b9e9200e798e8f434459eacee03ed9818cc6c9a513fe083e72d48884e24
CRC32 B3B84F8F
ssdeep 3072:2vHGxvpTI1xUSnsEYVA+9yaJAUiXbNxqAmi3zGDm/8S:mmwWmrtPTj9jGq/8S
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE64 - (no description)
  • Win32_Trojan_Gen_2_0904B0_Zero - Win32 Trojan Gen
  • IsDLL - (no description)
  • Malicious_Library_Zero - Malicious_Library
  • Malicious_Packer_Zero - Malicious Packer
VirusTotal Search for analysis