Dropped Files | ZeroBOX
Name be8e4d61a9b4f1e6_ini.ini
Submit file
Filepath C:\Windows\SysWOW64\ini.ini
Size 41.0B
Processes 2140 (3306.exe)
Type ASCII text, with CRLF line terminators
MD5 74827f70908b017d53386b3fdab3b2aa
SHA1 530fa71920131f0606068d62fa632e76d6183046
SHA256 be8e4d61a9b4f1e6f86e772ff11d9f3250325f72192309344b293388525a8f67
CRC32 11965B6C
ssdeep 3:oVXUMnEzy8L7Fv:o9UIuZv
Yara None matched
VirusTotal Search for analysis
Name b313aba4ef4a8e84_22155843.txt
Submit file
Filepath C:\Windows\SysWOW64\22155843.txt
Size 52.0KB
Processes 2140 (3306.exe)
Type PE32 executable (DLL) (console) Intel 80386, for MS Windows
MD5 30ded51ac449ce256522328b944c4bb9
SHA1 64c7123464ef1372d594193da6d2cd6ac892336d
SHA256 b313aba4ef4a8e8441e7c3ae7d6c918a11fb6b73351ad9888e051444668307f0
CRC32 D0584710
ssdeep 768:h2ga0xd9Hpk0e8MnmRe7ZZa3R1fb961vNPrl7JJnCJ0u:dxd9+0e8ZGZZo1fbs1RVJZCJ0
Yara
  • Malicious_Packer_Zero - Malicious Packer
  • UPX_Zero - UPX packed file
  • PE_Header_Zero - PE File Signature
  • OS_Processor_Check_Zero - OS Processor Check
  • IsDLL - (no description)
  • Malicious_Library_Zero - Malicious_Library
  • IsPE32 - (no description)
VirusTotal Search for analysis