Dropped Files | ZeroBOX
Name 01377d1659ebbb71_autEE1A.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\autEE1A.tmp
Size 9.5KB
Processes 2548 (industries.exe)
Type data
MD5 1543e64600bbb43fe1cd6c4b313eccc4
SHA1 9475a5c25784fff7d54775c62e208ef73eb26d6c
SHA256 01377d1659ebbb715adddf1f47743fd84fd1f44b56ae4a4a1adec010fe969c17
CRC32 6104D58B
ssdeep 192:CZIUd0cGw1zWEtGbIn+XmqvCYlDU8UdOFAOaVuHsuhgUwQh04FQ9h5ZKy:Yd0bWWEtiq+X/CDDbuhg/l4G9hT/
Yara None matched
VirusTotal Search for analysis
Name fabc0fca017fe827_autEDF9.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\autEDF9.tmp
Size 279.5KB
Processes 2548 (industries.exe)
Type data
MD5 5a4fc3d91d5c2d2786719de2484bc434
SHA1 362dd19211ab8d424e763f6398848f32322f8e60
SHA256 fabc0fca017fe8270f7967d4fb971389e8060795d5172fc736ee551d23ec1ae2
CRC32 F2F43EF4
ssdeep 6144:zYBzjvyzWNJadtIlQqD6DNsB7ASlJiYCcQ7yJQmd3zccrZ8Uc:06zWNJSmtD41OHk7yT3z4n
Yara None matched
VirusTotal Search for analysis
Name 512e4e95427a8c66_w2e1-UMx1
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\w2e1-UMx1
Size 36.0KB
Type SQLite 3.x database, last written using SQLite version 3021000
MD5 f4c540f52d5c08d24a79805eda1d7abf
SHA1 22be46826df7693f58736adb232ab2da790f2571
SHA256 512e4e95427a8c66b2993b27bb23d99cdab2ebd6e9e8937c7f6a39ed8c6a5b94
CRC32 95C9FB3A
ssdeep 24:TLmg/5UcJOyTGVZTPaFpEvg3obNmCFk6Uwcc85fB34444z:T5/ecVTgPOpEveoJZFrU1cQB34444z
Yara None matched
VirusTotal Search for analysis
Name f76b9914b958de7c_cacostomia
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\cacostomia
Size 28.0KB
Processes 2548 (industries.exe)
Type ASCII text, with very long lines, with no line terminators
MD5 71b1735a97e6505d133242c03c2fc7b4
SHA1 ea246667e108644c6985934b0078255857ebb236
SHA256 f76b9914b958de7c122680d54c201e36ba554694d5c8bc0500cf103d170c2965
CRC32 F34BAF27
ssdeep 384:gAQKy7bFwQ4/6BmsM6IYj8R250duCqYRcL02TqOIdsVHfGbLph1juTJOtHtiP:PQKM1GsMMIAb/o2TMdshGbLph1jXtAP
Yara None matched
VirusTotal Search for analysis
Name 9a8ea0e2df7554c5_w2e1-UMx1
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\w2e1-UMx1
Size 72.0KB
Type SQLite 3.x database, last written using SQLite version 3021000
MD5 0539a773e44d21a84fd97fee0dffd4a3
SHA1 5904058c20aad54c552edc57826babd36ab61149
SHA256 9a8ea0e2df7554c57fb4ee6a8a12782f5a2474a3e4c23dc61e4768631dc4eb9f
CRC32 964BC0B2
ssdeep 96:P0CWo3dOOctAYyY9MsH738Hsa/NTIdE8uKIaPdUDFBlrrVY/qBOnx4yWTJereWbY:PXt769TYndTJMb3j0
Yara None matched
VirusTotal Search for analysis
Name 0815a80fa73286d8_sqlite3.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\sqlite3.dll
Size 902.1KB
Processes 2764 (taskkill.exe)
Type PE32 executable (DLL) (console) Intel 80386, for MS Windows
MD5 50338cc1fa2582fa0cad8a8fa7ceb4d2
SHA1 ae697ef05b6bec38fb79ff4512ae50a303dcdbce
SHA256 0815a80fa73286d8c6bf0982471c61833821d9f10a20612deaa134562e7a3cda
CRC32 DC80393B
ssdeep 24576:7q9u+M0agNmXiO2qajLN4X/wts8jdhuMTjw+Q/F0:7qnjJK2LjLN4X/wts8jdcMYk
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name a043cb55cfdba9f4_sqlite3.def
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\sqlite3.def
Size 5.5KB
Processes 2764 (taskkill.exe)
Type ASCII text
MD5 4f576602ce4286c96ebfe17a47332626
SHA1 289e71e45b3a4b10cb6e4b9a844edeecdc09923a
SHA256 a043cb55cfdba9f4426c2006502bf2805b19cc9b0c81b09eaa76bdc9bd5f04cc
CRC32 3AEFA94F
ssdeep 96:GcuN/gR+7Ogn0XRMcGM3KOGOF++hwIMtvQENw+Y0aR:E/Q+7Ogn0RKOBF++eHvQENw+cR
Yara None matched
VirusTotal Search for analysis