Dropped Burrfers | ZeroBOX
Name 9420a2004c14c4a5e31290936a07bd58dcaa15b3
Size 46.0KB
Type PE32 executable (DLL) (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 689743052e3a2f5f7c31ccb0d9d55a36
SHA1 9420a2004c14c4a5e31290936a07bd58dcaa15b3
SHA256 f84f74861d642b167eb6da7709cae9ec6f432a5ab1fb81d5125861554f090ca8
CRC32 FCB52C23
ssdeep 768:rfo4sHq2okqPVZ+x/Yn2U2Wu/RYxoelQef:TNkqn+x/Yn2fPRYxvf
Yara
  • Is_DotNET_DLL - (no description)
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 7af279588ec4d5efb194dd8e655043494494a300
Size 114.0KB
Type data
MD5 6215989f0fc2c39b97a127922e2e67d3
SHA1 7af279588ec4d5efb194dd8e655043494494a300
SHA256 a6665450bf9b0b4717ba44b9c388d1fa122c72128f3b34493ea33e6be252156c
CRC32 02DE4D9D
ssdeep 3072:jzEqV6B1jHa6dtJ10jgvzcgi+oG/j9iaMP2s/HIX:jLV6Bta6dtJmakIM5
Yara None matched
VirusTotal Search for analysis
Name 636b8187f0cb59d43c9ee1eedf144043941b62d9
Size 161.5KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 5f811de9c87dff3815974880168f9f54
SHA1 636b8187f0cb59d43c9ee1eedf144043941b62d9
SHA256 3d319d2fa51b58429b682b3bd8f18cb237dfa1780a488141f24e8ca009a8f732
CRC32 7DC0E500
ssdeep 3072:zmwMZu0uGUZbaV615xZ3gHW3nqIy+IYeRp2cpWsGRlKDYJ:z6ZubGUZJDxKHW3fXEpIl
Yara
  • Is_DotNET_DLL - (no description)
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name d6984e881125f2214d0e0cb23db318054a1a0e11
Size 5.7KB
Type data
MD5 80bffef15a3a1813857268fda8af2df3
SHA1 d6984e881125f2214d0e0cb23db318054a1a0e11
SHA256 fcbdb8112a43d276f900a4ddd302883a91d6edc8b46a4756b48dca1e25c61948
CRC32 A9ABB6ED
ssdeep 96:DQzLRUZE6/ojKl/qmwg3ACo1p495jR8GN4Svak0g4Aw0VdJj229qLHXRzdd:kBUZEkojKluge1S/jRlySSxg4OfA29qJ
Yara None matched
VirusTotal Search for analysis
Name af5262c32aa5d7543b515dc0ae38b50e077e8abb
Size 350.1KB
Type data
MD5 09621bd7ea5d453c439aac66e5b3a1e8
SHA1 af5262c32aa5d7543b515dc0ae38b50e077e8abb
SHA256 1bc22cc5e0f49b26d9862e9f18efbc0dd9d19d72f369d047a211be0d273fe014
CRC32 68976B4B
ssdeep 6144:3Q5qA/ceONNMraXc+ulio9/hXg1bE8gaBL69D802Rf/238bQlOBGnSSHiToSxQnu:3Q5qA/ceOrCayliodhQ1bEjt80mfmZnG
Yara None matched
VirusTotal Search for analysis
Name ea4ebf9961dc56ff608ebc3946bd60a137c5ba45
Size 319.8KB
Type data
MD5 8877f221f7ed087a9a77e50ffe8b704e
SHA1 ea4ebf9961dc56ff608ebc3946bd60a137c5ba45
SHA256 2d9ac6965746ab6b27b0e9657ab559c21023581031ef1c3998f6439edd05b2bf
CRC32 FBAC9A50
ssdeep 6144:NuWRRGal0Oitw4nNJiQbaQQZfqhMQEMlWQKqXzvqyOv25q0BD:NuWRsal0lbiQbOChzx5LBiMD
Yara None matched
VirusTotal Search for analysis
Name 4380fb6de89a7776d52214359ce213d24a2239ad
Size 21.0KB
Type PE32 executable (DLL) (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 2c72cad8dff49c583d870fc6282980dd
SHA1 4380fb6de89a7776d52214359ce213d24a2239ad
SHA256 5dd4c1ca1f3e9283ff33f6c85ddf0a9630c863599f812549313c35c45dbcafe7
CRC32 6C6C4494
ssdeep 192:8u9bEWqG1qYpZVUnlYJL/eYaCpLprK6UtN5o:8MbN3jrqYa2Lp9Q5
Yara
  • Is_DotNET_DLL - (no description)
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name c19d9db351af75fec019fe76506a455eba7fd168
Size 57.0KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 36cf6fc7f7d048755ddeace5a0a102ed
SHA1 c19d9db351af75fec019fe76506a455eba7fd168
SHA256 ccea8cede491e63527c0596d38f490fe4a170b93a0af41d13b8136a020f76762
CRC32 CB39BD3A
ssdeep 768:Vp1KgX+TZMbpsN7Sd5JSnuU0NjWS3jhxIxvXETCYH2EeSudk:Vp1Zu2z5RjWchqxv0+abeSp
Yara
  • Is_DotNET_DLL - (no description)
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 4c21589803f03837b98bd1d96c176dec3f7a027b
Size 7.9KB
Type data
MD5 830873a9ce5d895bfb48b3e236139382
SHA1 4c21589803f03837b98bd1d96c176dec3f7a027b
SHA256 a5b134a533b44cacc47988817a5cb35a9332beb34e9b76bc235b1fc4e500115a
CRC32 4A421898
ssdeep 192:3v892gUZgYfrn5XbRFeDpkZ+UpE3KKrP2sjh/O6bEcVhJ:092gUZgYz5bc0pE30sV/OAfJ
Yara None matched
VirusTotal Search for analysis
Name c1ef2ca62189121934d1a7944ef1bdc1aa319877
Size 49.0KB
Type PE32 executable (DLL) (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 de880274dcd7ec3ebf4e61e843662be3
SHA1 c1ef2ca62189121934d1a7944ef1bdc1aa319877
SHA256 a3f88dac778d3c59e7157ee9fe6a5133ac89708795caad1c83f98f725e6d800e
CRC32 BC31FC04
ssdeep 768:FDxO+dUh5OOqulVgD/hB8RcjN6HHmHHSA2SscBjh0TdC6Zu:DOI4cOqegDJB8RaYJijh0dbU
Yara
  • Is_DotNET_DLL - (no description)
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 063fb8b27c0872c54bff35e2b76d8f522e13f8b4
Size 27.5KB
Type PE32 executable (DLL) (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 603f7ddc535d2d99f9aae77274e4cffb
SHA1 063fb8b27c0872c54bff35e2b76d8f522e13f8b4
SHA256 d16793e3afc03f5ca8a27a2554c686eb42f028e52a9694948160ae17ccec7fd3
CRC32 9CC8EC76
ssdeep 384:5v1I2edIVGAVhtTig6kjIqqaNR+nLRES9aWfw:k2edIVFtTiHk80NTS9bfw
Yara
  • Is_DotNET_DLL - (no description)
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 925c5236c59dd8f3efea4b3e091ef735b405a880
Size 22.5KB
Type PE32 executable (DLL) (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 d9ac251618ec2f76a8fa0f6fb526fb31
SHA1 925c5236c59dd8f3efea4b3e091ef735b405a880
SHA256 dfc5c5bbd9aabc3154fd185adc48aa9a6558ffee4ce6f9005118eeba6dd8c3ed
CRC32 305BF808
ssdeep 192:77xfEWL+zT7UYAZVPJnlYJL/e+vNI3LRqltIYg:7tcTTWoqO4LRap
Yara
  • Is_DotNET_DLL - (no description)
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name a86e18ac9d5d41870914420c92a3aa5734bdc179
Size 13.0KB
Type data
MD5 efc502adf3b90436bdbc4ac9e745473c
SHA1 a86e18ac9d5d41870914420c92a3aa5734bdc179
SHA256 799f6abf9a6884725ef2e0efc3a79fb35bcae03d791253e99dab952389ddf189
CRC32 6B3F8246
ssdeep 384:0baWV95lucvgti1+r3Z7XKZ8UnPJyKfN0:0bT955vgO+diPnRTK
Yara None matched
VirusTotal Search for analysis
Name c54e7c5cac5fac68dc564ce64355d948422bf1ce
Size 57.0KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 b7fc2e10abaeb174f02fe10f533ec741
SHA1 c54e7c5cac5fac68dc564ce64355d948422bf1ce
SHA256 adafa8b32a00b8947e2b7ca09fc8e7b2392f02d87e825428af533204c395a3b7
CRC32 AC35345F
ssdeep 1536:hgy4QwPX4K1YuF/QqstZM9RYvBg7nrmv1:6y4Q+X4K1H/QDZM9qvBmrmv1
Yara
  • Is_DotNET_DLL - (no description)
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 58fa6befdfd8a659299c4ae0d42dc1ec57d6dd0e
Size 13.0KB
Type data
MD5 77e142f6bf2ee29b6ac9fe5fcf1abd9e
SHA1 58fa6befdfd8a659299c4ae0d42dc1ec57d6dd0e
SHA256 f284e7508785cb91a4848e06c7ecd242db750bf64a995e35607b03cd6e910b7d
CRC32 3DA61D47
ssdeep 384:N07tFe+FulVhZ2fbss9sbzcQ2gofUGdGgWjTkWQg9KdII9fTwi6:S7to+FWQfgsGbAiocG8zj4WQeKhx6
Yara None matched
VirusTotal Search for analysis
Name e5e273ba79d681107359993c976d5f818948f70e
Size 87.5KB
Type data
MD5 7876870d5064d477e220c726391f0b7e
SHA1 e5e273ba79d681107359993c976d5f818948f70e
SHA256 cc102e8be0b87757ff28981ab026ff0f479be747567bfa909407d898d0087f0c
CRC32 5471293D
ssdeep 1536:s3sT6+45CKKwe9ndUDEGx2q0IdIlmXXZxjujF32gqNCRjKPy1qvC9vl:4sb4F5e9nOjbdIlmvujtJrAh2vl
Yara None matched
VirusTotal Search for analysis
Name dcdec0ea839844e977c1151d2eeedbb0788a34b1
Size 35.5KB
Type PE32 executable (DLL) (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 189d32136482ced3d7f9743aa312ad50
SHA1 dcdec0ea839844e977c1151d2eeedbb0788a34b1
SHA256 b1012e64e562663d7616bcb59a2b53af8f8fb7f04a564631967d4731df357a5c
CRC32 B3A360D5
ssdeep 384:GPa4E31ZO/7w8QF/Q18tePCO66Nt6XgqUZNADLRIaM494kvN2:T4E37s0F47NokNMD4kvN2
Yara
  • Is_DotNET_DLL - (no description)
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 0c6598a0a37eaf12ce188fa66bc6c5db394af8a4
Size 48.5KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 78f7c326ea2dbd0eb08de790d6e4bd19
SHA1 0c6598a0a37eaf12ce188fa66bc6c5db394af8a4
SHA256 ef2435c30f498d6af69a2843e44797203048ef6799965f8d9fe54bfc67a4560b
CRC32 DEE1EEE6
ssdeep 768:OOEtx7dgsj5hxRwgckPOcZN52QxDjkmamzchhumGHtkoEQEZ:27pNhxRwgnB2QxjkmzUhZGmoEQ4
Yara
  • Is_DotNET_DLL - (no description)
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 874b7c3c97cc5b13b9dd172fec5a54bc1f258005
Size 19.5KB
Type PE32 executable (DLL) (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 bdc8945f1d799c845408522e372d1dbd
SHA1 874b7c3c97cc5b13b9dd172fec5a54bc1f258005
SHA256 61e9d5c0727665e9ef3f328141397be47c65ed11ab621c644b5bbf1d67138403
CRC32 BE3B83AB
ssdeep 192:VYLQui6h6p5WW3tZVTnlYJL/eLYLTr2/C8:VYLQu/6/fKqLYLTR
Yara
  • Is_DotNET_DLL - (no description)
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name cf2ac666a1d960e06a52f64761d6eb25779317c8
Size 22.8KB
Type data
MD5 bab114c421ff9503ec3505c34a87c374
SHA1 cf2ac666a1d960e06a52f64761d6eb25779317c8
SHA256 244366ffac604bb5232a35305f44cae20c2c08a86719512a261610910fdb6b26
CRC32 CE955592
ssdeep 384:hKuVtzd2Eazl+tz8c7I0slTO7B6lXHVA6H8txeV7+Z:QyGFo58fly6lX1tc+7Y
Yara None matched
VirusTotal Search for analysis
Name efa4948abb218e47d809bedd1aff08cfb76d40e1
Size 36.5KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 39c8185da53fbe588136525f1654d8f3
SHA1 efa4948abb218e47d809bedd1aff08cfb76d40e1
SHA256 8c9b3ce8b8970caac3a5fef9f36b3f6c14d32a5802110188f29b810c09945f2f
CRC32 5EC8A962
ssdeep 384:hhBrCq16ZPMVbsjjW2XtIVPYuTJy9haYV5mnGUuCsNRusDJ5K8:f1FoPMdsjjW2dYLM5EGPZRuUJk8
Yara
  • Is_DotNET_DLL - (no description)
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 1b68e773e3522fa8edc7cb20d7c7f156b08ec73a
Size 81.5KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 7283fa19fa6af23c6469976b67c00156
SHA1 1b68e773e3522fa8edc7cb20d7c7f156b08ec73a
SHA256 fc047a52db3a4aadc47fbc8f72ab671817df327817b60ec15240f135661e078e
CRC32 9C80A01D
ssdeep 1536:Fgzz1h6aW2dEG61AGfrHeZ1vxJHQhzGIIysksO9PRqJ2YWw2JokBBXyXuAG3f:Fg1AavflmrO1vrHQhzGINJl9PvYNMou3
Yara
  • UPX_Zero - UPX packed file
  • Is_DotNET_DLL - (no description)
  • OS_Processor_Check_Zero - OS Processor Check
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 8993fec4dded4630c40e093df64f044612ab81b1
Size 87.3KB
Type SGI image data, 237-D, 48391 x 24604, 18838 channels, "\377?\fd\001l\366\316J\332\311\236!\200\252\310\037?~|\037?"~\215_\343\327\370\365\177=\372\3477\373\203\376\266\027\367\376\345\177\355_\376\366\257\365k\274\3705~\215/~\352O\3725~m\372\364\327\241\377\377\337\377\367\257\361k\374]\277\206<\277\247\376\334\364\374A\364\377\337\344w\371"
MD5 f14e268906663de85f005faa1606debc
SHA1 8993fec4dded4630c40e093df64f044612ab81b1
SHA256 7c048a4a483b00860bba675b9121bdc1ef600fdb97ee7ebcbedeb69bddd151b2
CRC32 17349830
ssdeep 1536:0y1rlx0HA9HO7VSH+H79R6R3xeOALYMicpj3eo6jzBeziUTXlQ5rJ:0yzxxY7V8y79R6R3MHcMi9o6Pi7Il
Yara None matched
VirusTotal Search for analysis
Name 874f3caf663265f7dd18fb565d91b7d915031251
Size 98.0KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 9c8242440c47a4f1ce2e47df3c3ddd28
SHA1 874f3caf663265f7dd18fb565d91b7d915031251
SHA256 01e3b18bd63981decb384f558f0321346c3334bb6e6f97c31c6c95c4ab2fe354
CRC32 EDEEDF40
ssdeep 3072:2m7DYfm4SRR+NaVEs+k6kiS+94ERR6gR0bRbD:2IoIRRGaVExfd
Yara
  • Is_DotNET_DLL - (no description)
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • IsPE32 - (no description)
VirusTotal Search for analysis