Dropped Files | ZeroBOX
Name 24a53033a2e89acf_db.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\db.dll
Size 52.0KB
Processes 2064 (bcd4b93a1a85c5ba45a4f7e5980db1a4.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 1b20e998d058e813dfc515867d31124f
SHA1 c9dc9c42a748af18ae1a8c882b90a2b9e3313e6f
SHA256 24a53033a2e89acf65f6a5e60d35cb223585817032635e81bf31264eb7dabd00
CRC32 05945495
ssdeep 384:XehpWSsdMRgTh4QPt0RaYaGCp9FclU2sSadM7yjR+Lcuczw0RoR/5rdy7olDJfUw:ipW6+grtlU2v7yGLwwouflpZ2tVtkTF
Yara
  • Malicious_Library_Zero - Malicious_Library
  • Win32_Trojan_Gen_2_0904B0_Zero - Win32 Trojan Gen
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • PE_Header_Zero - PE File Signature
VirusTotal Search for analysis
Name 32e932155cf3f208_db.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\db.dat
Size 557.9KB
Processes 2064 (bcd4b93a1a85c5ba45a4f7e5980db1a4.exe)
Type data
MD5 fd90f85bea1392578bc903144ace2ace
SHA1 0eabae72ab684584ca78dce7680fb997d7aba07b
SHA256 32e932155cf3f208d90aa0a058a87cf072e54e38e8c5c22c045411bac0bf936d
CRC32 F95543DB
ssdeep 12288:QUd0UAQgTkZYxdNLCjWICMBYCTKTZmF5zRn5cdg:QUddADm/jmsOTZmF5zRGC
Yara None matched
VirusTotal Search for analysis