Dropped Files | ZeroBOX
Name 36ff5f69d8583e35_debug.log
Submit file
Filepath C:\Program Files (x86)\Google\Chrome\Application\debug.log
Size 960.0B
Processes 2452 (chrome.exe)
Type ASCII text
MD5 bbb92588175dbbb4672a15e573c32003
SHA1 e8fc29af1f668f9b7ce681d89ed8a3ed4553a93e
SHA256 36ff5f69d8583e356200511f41705b35e79376a2dc57f64a5cb3ef43b248f8ad
CRC32 6BC9D65D
ssdeep 24:OkvDaXLG6w3IXXLG6w3IHGBIBBE9XLG6w3IyXLG6w3IF:KLGbIHLGbIHGaBBE5LGbIMLGbIF
Yara None matched
VirusTotal Search for analysis
Name c07318dada4f3791_last version
Submit file
Filepath C:\Users\test22\AppData\Local\Google\Chrome\User Data\Last Version
Size 13.0B
Processes 2756 (chrome.exe)
Type ASCII text, with no line terminators
MD5 27badea5c6dfd30fb41db26efb8428c9
SHA1 263d2a8c3512f3c497af888ccc93e40a96ef9da7
SHA256 c07318dada4f37913d94909bf3129a3616fcb8eefa2be021745b86a0368cc2b7
CRC32 AD46D01F
ssdeep 3:tVLRkUU:uN
Yara None matched
VirusTotal Search for analysis
Name 0e3dc4ccd259716b_settings.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
Size 40.0B
Processes 2756 (chrome.exe)
Type data
MD5 62325aa04f35880232330f344df8018c
SHA1 58fe9532ee8d96e8d12448408cf3ccf9d0542543
SHA256 0e3dc4ccd259716b24376fddb4ee07a6c227f8bcb2532a7dd75bb36a4290e7cc
CRC32 6F0BEA7C
ssdeep 3:FkXJRYcTUM:+wcTb
Yara None matched
VirusTotal Search for analysis
Name f1ba42a2083ab194_53866c5d-02d5-4102-af21-5bd36bc6e7ab.dmp
Submit file
Filepath C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad\reports\53866c5d-02d5-4102-af21-5bd36bc6e7ab.dmp
Size 46.6KB
Processes 2452 (chrome.exe)
Type data
MD5 86e4b7d28e1ef895a042117f57578b57
SHA1 c77c893ffc3e60a80701878f0a0e9e9f1bca5499
SHA256 030870e0ff847204b8e44ee809704cd57c7ef8db8b8a5f6745890561ab2b4024
CRC32 584B5D8A
ssdeep 96:VzH8hlcM1MW2T8RrjOBopOFvdkSMQP2BUkXsDfpfNW1zZk+g6EjGaG5Mv8NJH32G:VDM/Ad3MxwVW3kL6MFgC6wCQkY+9GO9
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name 6cb47f74d25952c0_MSI29BA.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\MSI29BA.tmp
Size 555.9KB
Processes 3024 (msiexec.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 4d436978faaef6c90ad5b208102fa0b4
SHA1 08930ae826c426ebfc3f96c324319bd9384472c0
SHA256 6cb47f74d25952c087bd9f04eea54e0c0e80cc9e6b052f2bdc1d8a328ac955be
CRC32 9C10B9A0
ssdeep 12288:nV30ISQvKKwR5GAauHX4qih45ggXnotXs8c:V30IlvKKwc44q55ggXotc8c
Yara
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
  • Win32_Trojan_Gen_2_0904B0_Zero - Win32 Trojan Gen
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • Malicious_Library_Zero - Malicious_Library
  • Malicious_Packer_Zero - Malicious Packer
  • IsPE32 - (no description)
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis