Dropped Burrfers | ZeroBOX
Name 6acfa20b7ae4a749e66a0c6332d2f2d5e6bc4004
Size 18.5KB
Type data
MD5 1271925bf242f5dd778122d822dac6d9
SHA1 6acfa20b7ae4a749e66a0c6332d2f2d5e6bc4004
SHA256 0cbc26acc82b2147a174301f5019e7244dd71cf1a5b39b172a0256c7aeaf30a3
CRC32 6012D591
ssdeep 384:xjFf2C0Q7CsraFdcsNgvKjpF8F3bbGVE01YF:hFfeBWGgupabbGVE01s
Yara
  • Generic_Malware_Zero - Generic Malware
  • Malicious_Library_Zero - Malicious_Library
  • Network_Downloader - File Downloader
  • Ave_Maria_Zero - Remote Access Trojan that is also called WARZONE RAT
VirusTotal Search for analysis
Name 52e5b1c4d939b10ac7de4810fb56390ff0434d24
Size 11.5KB
Type data
MD5 cdd112e1df434d31179f9eee936b7ff7
SHA1 52e5b1c4d939b10ac7de4810fb56390ff0434d24
SHA256 4077d1181fdaaef7f68d833642736e1b70eaf2a8ab4916d8da91a51a763fa2e2
CRC32 66BB1555
ssdeep 96:g8F2LOYFGrf4msMbe5r3NyTWrAZt7zd54fMVgYncY67AEA3dbwQNKSbuVmyVx9X:gRLKf4my3ssAnktY67AN3BwQbqVx9X
Yara
  • OS_Processor_Check_Zero - OS Processor Check
  • Malicious_Library_Zero - Malicious_Library
VirusTotal Search for analysis
Name 0441dbebd2baa1cd80fdd6e53190a76bad472a3a
Size 4.0KB
Type data
MD5 d7f0f9f1a21533bcdc70c4c071cede21
SHA1 0441dbebd2baa1cd80fdd6e53190a76bad472a3a
SHA256 5d49f3a9ab128dbde8a210a3b687fd30fcc51e8f82cc5b1d4d581b8a5e2c50f0
CRC32 5134FD07
ssdeep 96:RsEOPEwmXncPJfZlZIjVlZQHnzmucCAnKKkAjQkmCmQ:RePEwYGJfZlZMOzAcAjXm
Yara None matched
VirusTotal Search for analysis
Name c7e45e550d183f01b5c9d6894d333f43e8389145
Size 81.0KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 56523e6ca3b8b196242704f3d9f5f9e6
SHA1 c7e45e550d183f01b5c9d6894d333f43e8389145
SHA256 7a5647412cc5c399767179df4830bf90e110e7a19e4e26c1c7dd9a50b8d31a49
CRC32 4D302A17
ssdeep 1536:nP6ztpEr7EscYyov1Qpcy7n0nXdhntJgRqBP:ytMtdjtQuFtHJtP
Yara
  • IsPE32 - (no description)
  • Is_DotNET_DLL - (no description)
  • Win_Backdoor_AsyncRAT_Zero - Win Backdoor AsyncRAT
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
VirusTotal Search for analysis
Name 8e577b1b7337e82dcdad066f37185d35d882cddb
Size 113.0KB
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 6405f301bb5b9d0782ebe19be7fcf632
SHA1 8e577b1b7337e82dcdad066f37185d35d882cddb
SHA256 b9528397e53fe2ea4991ed92514a91317942fb9fb90eebde4f6f250dbc4aeb84
CRC32 228C89BF
ssdeep 1536:h0jP7/L1B5rVmN8sxHv2M28ix8EUaJxWZoB4u0OVE016:K1VmhaH8EFvW+0OVE04
Yara
  • Generic_Malware_Zero - Generic Malware
  • IsPE32 - (no description)
  • OS_Processor_Check_Zero - OS Processor Check
  • Malicious_Library_Zero - Malicious_Library
  • Network_Downloader - File Downloader
  • Ave_Maria_Zero - Remote Access Trojan that is also called WARZONE RAT
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • UPX_Zero - UPX packed file
VirusTotal Search for analysis
Name 7dbf751a5a00ac84ae1fc0c5ad26154c2aab2c78
Size 76.0KB
Type data
MD5 6dbe7c9f7981297db465fd69821e1c4b
SHA1 7dbf751a5a00ac84ae1fc0c5ad26154c2aab2c78
SHA256 4ed0174debe8ccfcf2a9801ffe88b7067e8eeca9ab39886db430b4b2fb5b0347
CRC32 5B28D530
ssdeep 1536:v0jP7/L1B5rVmN8sxHv2M28ix8EUaJxW:c1VmhaH8EFvW
Yara None matched
VirusTotal Search for analysis