Dropped Files | ZeroBOX
Name b0bcbebba3f0a4b7_scriptCache.bin
Submit file
Filepath C:\Users\test22\AppData\Local\Mozilla\Firefox\Profiles\1pfa5s83.default-release\startupCache\scriptCache.bin
Size 9.2MB
Type data
MD5 7fcd6694c7418071bb6f0e1c879bf833
SHA1 022fdf4208fba1c4dd34c6bb1444591529509cf2
SHA256 b0bcbebba3f0a4b75f692e5c955707ad67e4312590330b97e987638eb72d0b11
CRC32 46CB710E
ssdeep 49152:SfNsfR/eXfWVAoIgPm6t7eh+3R8ViGUrilbASvzmj/YDNM3eckIOehICZ3ZkF:SfNyYOVi6Fa2vraASvz6GMu2hIF
Yara
  • anti_vm_detect - Possibly employs anti-virtualization techniques
  • RedLine_Stealer_b_Zero - RedLine stealer
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis
Name dbc0cc2bfa566095_b40a0ab3-d4d2-479d-b4d0-e90f4848e2bb-submission
Submit file
Filepath C:\Users\test22\AppData\Roaming\Mozilla\Firefox\Profiles\1pfa5s83.default-release\crashes\events\b40a0ab3-d4d2-479d-b4d0-e90f4848e2bb-submission
Size 73.0B
Processes 2984 (crashreporter.exe)
Type ASCII text
MD5 9fd96b7992c1320e762861956a6a0fe7
SHA1 08d96e20103e839cf1cfb549736fedee86b1a44f
SHA256 dbc0cc2bfa5660953e657c395b3199e2ce720254c709317decef2aa35c191f45
CRC32 881708D1
ssdeep 3:RIRL/zMfRaEvnhs2HV9kD3AXAJHvn:euRaEps22wwJHvn
Yara None matched
VirusTotal Search for analysis
Name 63e02015af0699aa_scriptCache-child.bin
Submit file
Filepath C:\Users\test22\AppData\Local\Mozilla\Firefox\Profiles\1pfa5s83.default-release\startupCache\scriptCache-child.bin
Size 824.1KB
Type data
MD5 19421dc0192e633eec157df491fd8c13
SHA1 adeb399426e11cb6de823cc8f5269e9f2f3e657f
SHA256 63e02015af0699aa0c1a90951bd36f1f62a10746c7e5eb004e29d27d3d80ab23
CRC32 C98B88C5
ssdeep 6144:jLv50b7rtyuRMAMgDh6QbZpZltg2ebfhAFgMWM/OB48SuTSBWobB2PLtPkZ:X5ctdD15PgMWM/OXnSBWob4tcZ
Yara None matched
VirusTotal Search for analysis
Name 7660ed4a0ed6a1b4_metadata
Submit file
Filepath C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad\metadata
Size 114.0B
Processes 2336 (chrome.exe)
Type data
MD5 ec7f8102130a2ce31928981c0100f9f3
SHA1 728d0e99c424cfc4450291ba51dc09303d814dba
SHA256 7660ed4a0ed6a1b49e8fb44a1388a333ef6a39503bbbaf82b3f8615a44deb393
CRC32 A5C076B8
ssdeep 3:mTll+Xlpahl1tW/lvXlnllhGQkuGoS2TchBo:mTlE41ctXGQlp/c4
Yara None matched
VirusTotal Search for analysis
Name 3ef74c2ed58ae6bd_debug.log
Submit file
Filepath C:\Program Files (x86)\Google\Chrome\Application\debug.log
Size 290.0B
Processes 2336 (chrome.exe)
Type ASCII text
MD5 afcf4a03a1431c51718c210fab657157
SHA1 12be6996862fed1e1f794a744fa87ba128e4c590
SHA256 3ef74c2ed58ae6bd2d59fbde9b24f632669f1f7784fd1ba393f1ef3fe33190cc
CRC32 F284B9EE
ssdeep 6:qS448TCGGDLeX/WIlRU4LGGFw3V4v8wsRU4LGGFw3V4vF:OJOOWIlRU4LG6w3V6BsRU4LG6w3V6F
Yara None matched
VirusTotal Search for analysis
Name 315ac8352be0efb4_6a84390f-404b-42e5-8ec7-8239174d90d4.dmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\6a84390f-404b-42e5-8ec7-8239174d90d4.dmp
Size 54.0KB
Processes 2696 (firefox.exe)
Type Mini DuMP crash report, 11 streams, Fri Jul 26 02:47:51 2024, 0x820 type
MD5 c902235d5bb98451c4809aad85b10ba2
SHA1 eaf886468aee72bcadd915d188464b6f4c01eb32
SHA256 6916e85842af89fcfacda053188615ec36be8b8984a3590d372d885523afa4fd
CRC32 A7AD1F2D
ssdeep 384:xtDoTlyW+zv+UwoCmt40mrXPYTfNzyzzI7QCpvfALM8TJwdB:xtETlPNS4hrXPYU0QEv4LM7
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name 2a3f48e3ab651cce_c7eaf519-0104-4ed4-8038-af7aa0745690.dmp
Submit file
Filepath C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad\reports\c7eaf519-0104-4ed4-8038-af7aa0745690.dmp
Size 501.4KB
Processes 2336 (chrome.exe) 3036 (minidump-analyzer.exe)
Type Mini DuMP crash report, 10 streams, Fri Jul 26 02:46:47 2024, 0x0 type
MD5 88b91b3ad3f2eabc07bf8d1d4a0ebb98
SHA1 bb64351def1812f33e2a0be8af64292371332f14
SHA256 2a3f48e3ab651cce3192759b6f35f0769da278f784c97763a04147bb63393276
CRC32 E0D66383
ssdeep 3072:oQR1YCJxpMEXbfWZs/6hCyzwCoPZ0mP+aEZvEqa+zVQiYEeXg4:5RQZsih/ahYP
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name 0e3dc4ccd259716b_settings.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
Size 40.0B
Processes 2152 (chrome.exe)
Type data
MD5 62325aa04f35880232330f344df8018c
SHA1 58fe9532ee8d96e8d12448408cf3ccf9d0542543
SHA256 0e3dc4ccd259716b24376fddb4ee07a6c227f8bcb2532a7dd75bb36a4290e7cc
CRC32 6F0BEA7C
ssdeep 3:FkXJRYcTUM:+wcTb
Yara None matched
VirusTotal Search for analysis
Name b87beb4bbc429f0c_webext.sc.lz4
Submit file
Filepath C:\Users\test22\AppData\Local\Mozilla\Firefox\Profiles\1pfa5s83.default-release\startupCache\webext.sc.lz4
Size 105.5KB
Type data
MD5 86f4fe26175341c830af0ae6353d41db
SHA1 a1449571cf2014cac60a7f3dd7cab8a55380be81
SHA256 b87beb4bbc429f0c98428686eb04b7692f12d53385ab5a3d324bf094bef0c29d
CRC32 D9310E97
ssdeep 3072:igI+rushnjZa9uB1StrmnZI1wwZPxUwwc9ifT:0+rNjc9b+Zet1S08L
Yara None matched
VirusTotal Search for analysis
Name 779cfaa47b4bda3e_b40a0ab3-d4d2-479d-b4d0-e90f4848e2bb
Submit file
Filepath C:\Users\test22\AppData\Roaming\Mozilla\Firefox\Profiles\1pfa5s83.default-release\crashes\events\b40a0ab3-d4d2-479d-b4d0-e90f4848e2bb
Size 3.3KB
Processes 2388 (firefox.exe) 2984 (crashreporter.exe)
Type ASCII text, with very long lines
MD5 c4185fb93c01c846a61176c9109f2628
SHA1 9e5eae38fa533f53765bed5a4c0adedc04667db5
SHA256 779cfaa47b4bda3e61f9f0174d18e5aabd06f0bf5e79fbc923d10ee1e625b36d
CRC32 94B9D188
ssdeep 48:EQoPQukhr3/Cgjyi54SiUeHMgdQKCxPCFWULcPXlQif9n7v6ivJb0vlXAYKnZX:bo4fz/Ccr5rE2bCbL1Un7Sc0hKn5
Yara None matched
VirusTotal Search for analysis
Name eb175952ea58d1f5_6a84390f-404b-42e5-8ec7-8239174d90d4.dmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\6a84390f-404b-42e5-8ec7-8239174d90d4.dmp
Size 54.0KB
Processes 2696 (firefox.exe)
Type Mini DuMP crash report, 11 streams, Fri Jul 26 02:47:51 2024, 0x820 type
MD5 f0c189027f164fbf02745a3fdc5901dd
SHA1 9cecae5eab0ca3c144d8358f791bf24705491b98
SHA256 44108d5df7463557485b050a2e40e473828571a85ebb2b2e4dbce132e0e0a8a6
CRC32 3729D062
ssdeep 384:xtDoxlyj+zv+UwoCm240mrXPYTfNzyzzI7QCpvfALM8TJwdB:xtExlCNl4hrXPYU0QEv4LM7
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name a1e1b422c40fb611_C06E.bat
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\C06C.tmp\C06D.tmp\C06E.bat
Size 2.8KB
Processes 1156 (random.exe)
Type ASCII text, with CRLF line terminators
MD5 de9423d9c334ba3dba7dc874aa7dbc28
SHA1 bf38b137b8d780b3d6d62aee03c9d3f73770d638
SHA256 a1e1b422c40fb611a50d3f8bf34f9819f76ddb304aa2d105fb49f41f57752698
CRC32 932D7B77
ssdeep 48:Nd27V5rN81fN80XUbaOUb5OzQ/iqzQ/hXDTjODAKpxVgXDOev0W:j6rrN81fN80Ebanb5OzQ/iqzQ/hTTj+y
Yara None matched
VirusTotal Search for analysis
Name b67668ed4af0797e_submit.log
Submit file
Filepath C:\Users\test22\AppData\Roaming\Mozilla\Firefox\Crash Reports\submit.log
Size 228.0B
Processes 2984 (crashreporter.exe)
Type ASCII text, with CRLF line terminators
MD5 df6f869f71881e65b9597a830f3ff1fa
SHA1 51a7ca64d3645f47c8f8a1dbd528eb8d4d5c9546
SHA256 b67668ed4af0797e7f63ebd5cc41c3557c784810f221691fce2c5f38e0ae2daa
CRC32 F43745A6
ssdeep 6:SXJUG7emd6Qw0HZAsCpYA6Dp6jcmXJUGKXDd6Qw0HZAsCpYA6Dp7:SbDgQw0eTGDpI7qDgQw0eTGDp7
Yara None matched
VirusTotal Search for analysis
Name a3c05fb5bbd52f5e_6a84390f-404b-42e5-8ec7-8239174d90d4.dmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\6a84390f-404b-42e5-8ec7-8239174d90d4.dmp
Size 54.0KB
Processes 2696 (firefox.exe)
Type Mini DuMP crash report, 11 streams, Fri Jul 26 02:47:51 2024, 0x820 type
MD5 08a5811ca64fbc39139539e894501e28
SHA1 1ff230095ec853342c7598ab99b1a53a7a756b27
SHA256 a3c05fb5bbd52f5e27873f2e8abe30161a9c67c57e82de58d5a2583d753248fc
CRC32 71EFAB42
ssdeep 384:xtDoVly5+zv+UwoCmN40mrXPYTfNzyzzI7QCpvfALM8TJwdB:xtEVlINy4hrXPYU0QEv4LM7
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name f309fe94bb650681_b40a0ab3-d4d2-479d-b4d0-e90f4848e2bb.dmp
Submit file
Filepath c:\users\test22\appdata\roaming\mozilla\firefox\crash reports\pending\b40a0ab3-d4d2-479d-b4d0-e90f4848e2bb.dmp
Size 100.3KB
Processes 2388 (firefox.exe) 2984 (crashreporter.exe)
Type Mini DuMP crash report, 11 streams, Fri Jul 26 02:46:12 2024, 0x820 type
MD5 39aecc09de9a1eb4c5f6d6c5949df5ad
SHA1 eae9cca2065d16c22f18c1f3ac78bf6664d23611
SHA256 f309fe94bb650681e5c9d9388fb2dac1fcbc180c92df500254b460d89fac8f56
CRC32 EE9AFB4D
ssdeep 384:wbxFouly3Y50iBmyl5Dskk/ZIGGL6iM9eRD84uH23PlFStUbR7NTDI:w1aulVPD3HL6iMmD84uHCPz7O
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name 1d417807b94f958c_urlCache.bin
Submit file
Filepath C:\Users\test22\AppData\Local\Mozilla\Firefox\Profiles\1pfa5s83.default-release\startupCache\urlCache.bin
Size 3.2KB
Type data
MD5 26c3ea73c6885eaea20b6a5a6280ce50
SHA1 32fb4a91b1f37d0228ff31c0f0d6c37a173e67f2
SHA256 1d417807b94f958c6a4069a9dedf24b001099a68936f8ac10ef7bc30a126af38
CRC32 7DB0ACAF
ssdeep 48:BAbHgqedXU753de/xJtISt3bqhJtgtkt0IbvVr9cHSWypBr/BWLaLWcbsyMJrls:BAMqedXUd3AIq3bucwbhcmVsXJr6
Yara None matched
VirusTotal Search for analysis
Name 1c68c9e32946c2ea_lastcrash
Submit file
Filepath C:\Users\test22\AppData\Roaming\Mozilla\Firefox\Crash Reports\LastCrash
Size 10.0B
Processes 2388 (firefox.exe)
Type ASCII text, with no line terminators
MD5 46509f18569d1ad2904cd65e9bef85af
SHA1 e543e4e976755d1d27d9d80c406127d055e34f2e
SHA256 1c68c9e32946c2ea2cf25ba4c384c456ed401eca914885f176d520910571d732
CRC32 216151F8
ssdeep 3:LEsU:zU
Yara None matched
VirusTotal Search for analysis
Name e3b0c44298fc1c14_C06C.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\C06C.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 300e4b9d23af6da5_6a84390f-404b-42e5-8ec7-8239174d90d4.dmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\6a84390f-404b-42e5-8ec7-8239174d90d4.dmp
Size 54.0KB
Processes 2696 (firefox.exe)
Type Mini DuMP crash report, 11 streams, Fri Jul 26 02:47:51 2024, 0x820 type
MD5 3392f91d70fcdf39c24dc8450e72e770
SHA1 3af8dfac2e739e3638129bd91e089dc40b9ee4cb
SHA256 300e4b9d23af6da55370a7677e29512fb4f48c6afdaa2c808c425aabf9c764f5
CRC32 2257E136
ssdeep 384:xtDoJly7+zv+UwoCmR40mrXPYTfNzyzzI7QCpvfALM8TJwdB:xtEJlKNu4hrXPYU0QEv4LM7
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name 63f5a75bc6e48a60_startupCache.8.little
Submit file
Filepath C:\Users\test22\AppData\Local\Mozilla\Firefox\Profiles\1pfa5s83.default-release\startupCache\startupCache.8.little
Size 7.4MB
Type data
MD5 366cb8639aeb3f55c7d6999a7fbac41d
SHA1 5c763f6a53320c8282fa1c648111fd2e68d34145
SHA256 63f5a75bc6e48a60722f5b706b3f3953f8139e31c3d81eff92f8aad6943dac01
CRC32 CF035B97
ssdeep 98304:LXEV8Jzl6VPltC/8Toxmu5RTRPG/D79MJRGDx/s3:LE89l2mYFu5HsD72idk
Yara
  • anti_vm_detect - Possibly employs anti-virtualization techniques
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis
Name cacb3b090bd98317_compatibility.ini
Submit file
Filepath C:\Users\test22\AppData\Roaming\Mozilla\Firefox\Profiles\1pfa5s83.default-release\compatibility.ini
Size 200.0B
Processes 880 (firefox.exe)
Type Windows WIN.INI, ASCII text, with CRLF line terminators
MD5 63f28ee6c5768202c31eaf82725b64c2
SHA1 edc0b0c87aaa262a0aba6e6b29b2c31cc04fcf39
SHA256 cacb3b090bd98317500f593712c4bf51b5197c7aa9e07b6e10cab50144339ff0
CRC32 D70ADABB
ssdeep 3:tZAQU6oEl1mE12NE2aT/P4WX1rDZjrEFwHQ3ZjrEFwslyy:VoKmbbabN1rDVEFycVEFL
Yara None matched
VirusTotal Search for analysis
Name 8baa0e43ff5cbc63_b40a0ab3-d4d2-479d-b4d0-e90f4848e2bb.extra
Submit file
Filepath c:\users\test22\appdata\roaming\mozilla\firefox\crash reports\pending\b40a0ab3-d4d2-479d-b4d0-e90f4848e2bb.extra
Size 4.6KB
Processes 2388 (firefox.exe) 3036 (minidump-analyzer.exe) 2984 (crashreporter.exe)
Type ASCII text, with very long lines, with CRLF line terminators
MD5 57699567dcff365aedd2bd849932ce35
SHA1 a34bfbc4558711faa56f637833e8079a738b06d2
SHA256 8baa0e43ff5cbc6306de85c544447628307add44e22f1ff1d179ebf6d832f714
CRC32 513D6360
ssdeep 96:DoGVDlb8bN+abcr5rE2bCbL1Un7Sc0hKnL:DoGkp+wL1UW8L
Yara None matched
VirusTotal Search for analysis