Dropped Files | ZeroBOX
Name 3ad2dc318056d0a2_modern-wizard.bmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nsyF212.tmp\modern-wizard.bmp
Size 25.9KB
Processes 2640 (FreeArc-0.67-alpha-win32.exe)
Type PC bitmap, Windows 3.x format, 164 x 314 x 4
MD5 cbe40fd2b1ec96daedc65da172d90022
SHA1 366c216220aa4329dff6c485fd0e9b0f4f0a7944
SHA256 3ad2dc318056d0a2024af1804ea741146cfc18cc404649a44610cbf8b2056cf2
CRC32 04BB5FC8
ssdeep 24:Qwika6aSaaDaVYoG6abuJsnZs5GhI11BayNXPcDrSsUWcSphsWwlEWqCl6aHAX2x:Qoi47a5G8SddzKFIcsOz3Xz
Yara
  • bmp_file_format - bmp file format
VirusTotal Search for analysis
Name 2798cf7448d2ba6c_iospecial.ini
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nsyF212.tmp\ioSpecial.ini
Size 1.0KB
Processes 2640 (FreeArc-0.67-alpha-win32.exe)
Type ASCII text, with very long lines, with CRLF line terminators
MD5 18ba06000ac847dc67136c3379c31e5b
SHA1 ef78255beccd6f2739f500624df05d25f17823b4
SHA256 2798cf7448d2ba6cab7a4adfc15bd136c59be3595dbf5ff0db8cb3cf7ecde931
CRC32 7D69E130
ssdeep 24:yTdRvAZfdhV1O/B3a1ZseeneFmGthBUmszGJETVpj6ozVu7i2E48I7:USFHc/BKceeeZtMmsBVlXw7yM7
Yara None matched
VirusTotal Search for analysis
Name c9cd5c9609e70005_installoptions.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nsyF212.tmp\InstallOptions.dll
Size 14.5KB
Processes 2640 (FreeArc-0.67-alpha-win32.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 325b008aec81e5aaa57096f05d4212b5
SHA1 27a2d89747a20305b6518438eff5b9f57f7df5c3
SHA256 c9cd5c9609e70005926ae5171726a4142ffbcccc771d307efcd195dafc1e6b4b
CRC32 9198B430
ssdeep 192:86d+dHXLHQOPiY53uiUdigyU+WsPdc/A1A+2jwK72dwF7dBEnbok:86UdHXcIiY535zBt2jw+BEnbo
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
VirusTotal Search for analysis