Dropped Files | ZeroBOX
Name 92bef30283e2f6e8_tmpC05B.tmp.png
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\tmpC05B.tmp.png
Size 1.4MB
Processes 1948 (123123.exe)
Type PNG image data, 1024 x 768, 8-bit/color RGBA, non-interlaced
MD5 06b6bfb3d4b34890b572474270c92ee9
SHA1 988ba9fbaa368bb1885647de9d798a6168e4fe9d
SHA256 92bef30283e2f6e817d3f0ade8d214702a998dbb00c90ec3685a03fa173f1df9
CRC32 F1D68A24
ssdeep 24576:IqUc0qLz2IB2rN4WNMwxRgyu68ph0rMtshvUtUgtGVQ22eC6lE0psO:sqLJBAGej2DeG22e80+O
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name ea006857ffd3fc8f_task
Submit file
Filepath C:\ProgramData\59CAD89AA1\task
Size 1.7KB
Processes 1948 (123123.exe)
Type XML 1.0 document, ASCII text, with CRLF line terminators
MD5 c0612bb00566ac889c7e843f21bf92a6
SHA1 e3cd2794fd5576d46da4b62c70e83e13b6f42364
SHA256 ea006857ffd3fc8fbdb885c93ff9c99059f376466b05851685efc1115443b5cd
CRC32 36D34489
ssdeep 24:2dH4+S7KnLRdipovLdMFQ/YeGlMhEMjn5pwjVgUYODOLG9RJh7h8F6wqB+thty:cbkKnLrjv5QQ/uydbQx3YODOLedqkPj
Yara None matched
VirusTotal Search for analysis
Name 85e82b9e9200e798_agiledotnetrt64.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\30687496-fd03-4bab-bf93-0daea739d067\AgileDotNetRT64.dll
Size 141.8KB
Processes 1948 (123123.exe)
Type PE32+ executable (DLL) (GUI) x86-64, for MS Windows
MD5 e8641f344213ca05d8b5264b5f4e2dee
SHA1 96729e31f9b805800b2248fd22a4b53e226c8309
SHA256 85e82b9e9200e798e8f434459eacee03ed9818cc6c9a513fe083e72d48884e24
CRC32 B3B84F8F
ssdeep 3072:2vHGxvpTI1xUSnsEYVA+9yaJAUiXbNxqAmi3zGDm/8S:mmwWmrtPTj9jGq/8S
Yara
  • Malicious_Packer_Zero - Malicious Packer
  • IsPE64 - (no description)
  • PE_Header_Zero - PE File Signature
  • Win32_Trojan_Gen_2_0904B0_Zero - Win32 Trojan Gen
  • IsDLL - (no description)
  • Malicious_Library_Zero - Malicious_Library
VirusTotal Search for analysis