Dropped Files | ZeroBOX
Name 99186e806c22ddb7_lognotify.dll
Submit file
Filepath C:\Windows\SysWOW64\LogNotify.dll
Size 57.0KB
Processes 2776 (TimeLimitInst.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows, UPX compressed
MD5 2dfa54474cf74d9650d2ae80189f2bab
SHA1 0f4add703e0b833123bc76f05b4ed315cdcd1d11
SHA256 99186e806c22ddb7f36c2f804f8f9228eb1b2a140cc4358a0de623c57e61d613
CRC32 40A58B8B
ssdeep 1536:6Udl4muDhOLWOWyMsGjmabULL1MR5R5TeyLnnouy8w:6Ud+vAnWfbjmabZJLnoutw
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • IsDLL - (no description)
VirusTotal Search for analysis
Name 65d574368ad6753d_token.dat
Submit file
Filepath C:\Program Files (x86)\TimeLimit\token.dat
Size 190.0B
Processes 1048 (TimeLimit.exe)
Type ASCII text, with CRLF line terminators
MD5 6bc3713b173bf6ee09a4e40bd0a6019c
SHA1 6f335e94c000abe3134d72d41129485dffdda487
SHA256 65d574368ad6753d1359a1b18959bd0c66f470f0483b2ec038e08e4a24ccee2f
CRC32 5F0F0127
ssdeep 3:PkXRJT1RN90alW6SmdcXjUnXkYcFmhirTT11mHQuhWhSDjRSne6AnRe9uxJlBxd8:PkX9RN9plW6SmdcqXkYJY35UYojknAR8
Yara None matched
VirusTotal Search for analysis
Name e721bf067eda8516_timelimit.dat
Submit file
Filepath C:\Program Files (x86)\TimeLimit\TimeLimit.dat
Size 172.0B
Processes 1048 (TimeLimit.exe)
Type data
MD5 4b7a7b6cf5d647e035e1f318444d95f0
SHA1 d4639def779572e6cb4517ee8ffbdbbc359adf66
SHA256 e721bf067eda8516c1f93a52c43f5a710b02709e7d217bf51122e6b59d2f2ed9
CRC32 E21635E3
ssdeep 3:yWmXTlUVbl:ydXGbl
Yara None matched
VirusTotal Search for analysis
Name 2fb141022b005c0c_timelimit.exe
Submit file
Filepath C:\Program Files (x86)\TimeLimit\TimeLimit.exe
Size 235.5KB
Processes 2776 (TimeLimitInst.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed
MD5 465784e139b2fb62fa2ee0cce3ee5551
SHA1 c881949d2bd5b0ebbc6ebfcfae4d45a0c43cb005
SHA256 2fb141022b005c0cd9836a27a0679f10816a468855107d515bc7e4d658217f0a
CRC32 EA736994
ssdeep 6144:JVz/6wB7zS96GyZzlhWIUiOjD7jiH4/a7+9spfnuHifcYcn8oS:JVDpBqa9U3iHGa7jxDcqoS
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis