Dropped Files | ZeroBOX
Name 174b5dbf4adc7181_service.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\is-3K1UU.tmp\service.dll
Size 368.5KB
Processes 2388 (arg_rar.tmp)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 c66b5c43370b7cba3e0a8399efafd803
SHA1 fcb5416dadb86087a0758c23e3fa9eb4847577b6
SHA256 174b5dbf4adc7181044264054bf342fd3f29c562aaf75ece2676a35aee6c43fc
CRC32 AFE5FEEC
ssdeep 6144:eM2q2Uy2x2MCCPfMebKr6WVn2EeOMkovaWZUVaO2RRpwG2dzqvUd8puFYkYL6N:eM2qSMCCMebKvMkovZZgaO2RWdzhd8kZ
Yara
  • IsPE32 - (no description)
  • OS_Processor_Check_Zero - OS Processor Check
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • UPX_Zero - UPX packed file
VirusTotal Search for analysis
Name f49aefb68a1e66c0_arg_rar.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\is-5447S.tmp\arg_rar.tmp
Size 3.0MB
Processes 2308 (arg_rar.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 e8bbd5425ac1507a72fad12f513135d0
SHA1 6700c181e93d7787df9bd930dc37bcc1c29306c7
SHA256 f49aefb68a1e66c0b6454e9ce51430229f68e8c644dd2de60def4029f204978f
CRC32 2D683955
ssdeep 49152:6dx4HDQNJL0VR6SgMt+k4RiP+RmXMjiINiMq95FoHVHNTQTEjT333TY:LHDYsqiPRhINnq95FoHVBT333T
Yara
  • IsPE32 - (no description)
  • Generic_Malware_Zero - Generic Malware
  • OS_Processor_Check_Zero - OS Processor Check
  • PE_Header_Zero - PE File Signature
  • Malicious_Library_Zero - Malicious_Library
  • UPX_Zero - UPX packed file
VirusTotal Search for analysis
Name 388a796580234efc__setup64.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\is-3K1UU.tmp\_isetup\_setup64.tmp
Size 6.0KB
Processes 2388 (arg_rar.tmp)
Type PE32+ executable (console) x86-64, for MS Windows
MD5 e4211d6d009757c078a9fac7ff4f03d4
SHA1 019cd56ba687d39d12d4b13991c9a42ea6ba03da
SHA256 388a796580234efc95f3b1c70ad4cb44bfddc7ba0f9203bf4902b9929b136f95
CRC32 2CDCC338
ssdeep 96:sfkcXegaJ/ZAYNzcld1xaX12p+gt1sONA0:sfJEVYlvxaX12C6A0
Yara
  • PE_Header_Zero - PE File Signature
  • UPX_Zero - UPX packed file
  • IsPE64 - (no description)
VirusTotal Search for analysis