Dropped Files | ZeroBOX
Name 44893fa8ae248b7b_2YItYJ.cpL
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\7zS4D5C7FDF\2YItYJ.cpL
Size 4.1MB
Processes 1492 (setup294.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 d5e18b5f783d8142d3b3409656b24cb3
SHA1 d7e44f49cc2f4e0dceb8b9a59ea2ca28472fca74
SHA256 44893fa8ae248b7b73d2c85196105fc70ea03e6ee05bdd76da99fcda448fe262
CRC32 04970970
ssdeep 98304:XMthSXcp9WPI+ArrdtRv+n1BO6yUZW5x+A7p5:XOUc8AFtRCKUZA+A7p
Yara
  • Malicious_Library_Zero - Malicious_Library
  • IsPE32 - (no description)
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
VirusTotal Search for analysis
Name 4b3539073c5dbb1c_Hc.bat
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\7zS4D5C7FDF\Hc.bat
Size 81.0B
Processes 1492 (setup294.exe)
Type ASCII text, with no line terminators
MD5 9e5e80a7ba0e141818ec1ae50ab2526e
SHA1 466555e97c1d5ecf268ee105875b1ac9e1042a5c
SHA256 4b3539073c5dbb1c0de3f7deb9a01c7bb07fc2ac06b64bed6468333fd440872a
CRC32 4DCB8C9B
ssdeep 3:+uifYvcmprIsp7xsx8zKHFvNsuHTj:3ifAcmpfxQUKHjPHTj
Yara None matched
VirusTotal Search for analysis