Dropped Files | ZeroBOX
Name e8e78826d0d9e77a_m4wubk3v.inf
Submit file
Filepath C:\Windows\Temp\m4wubk3v.inf
Size 597.0B
Processes 2552 (ams.exe)
Type Windows setup INFormation, ASCII text
MD5 a6031efb28a3b711bdb09fea0131607b
SHA1 09b15f7309b923ed38238f7326164f0a1b4ec7fe
SHA256 e8e78826d0d9e77aa3abe6c505ae54017ebfa8c44c4ab6a2424428b9516c4542
CRC32 1D76D7FC
ssdeep 12:Q5e0z03oqfrcFcv3Cur5HwQ8aQBsBZVjk/jqJIOzA8VlAX:QFzQf/lSNWVA/uJIQA8VlAX
Yara None matched
VirusTotal Search for analysis
Name 9da10d7b75c589f0_xxdlac0y.exe
Submit file
Filepath C:\Windows\Temp\xxdlac0y.exe
Size 307.0KB
Processes 2552 (ams.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 b6d627dcf04d04889b1f01a14ec12405
SHA1 f7292c3d6f2003947cc5455b41df5f8fbd14df14
SHA256 9da10d7b75c589f06f1758ed8e3c0335b9a738d0ad1317c48e380bca768bdddf
CRC32 20C054AF
ssdeep 6144:G77rhGafhHSBwHRqGJbdbZI44SGe4s8Lu67rvAOveiZavLb:G7rRSSHRnJfIrscu67TZhavL
Yara
  • Malicious_Library_Zero - Malicious_Library
  • UPX_Zero - UPX packed file
  • Malicious_Packer_Zero - Malicious Packer
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis