Dropped Files | ZeroBOX
Name 1ea211a709e3e396_logs.dat
Submit file
Filepath C:\ProgramData\data\logs.dat
Size 260.0B
Processes 2224 (adobe.exe)
Type data
MD5 3fc4e996f3b498a3169fcd535c60890c
SHA1 565c4dd7c12d7b8911318d94f636481f8353da26
SHA256 1ea211a709e3e396ed9d38c83319baf44d80c1a1d1c51826e52f126f7633d07c
CRC32 9F96D73B
ssdeep 6:6lmqmSO5YcIeeDAlOWA4dbJWEogltmgXl1oV:6lFaec0WNW+ltZI
Yara None matched
VirusTotal Search for analysis
Name 0a47aa06075f8659_bel.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\BEl.exe
Size 583.0KB
Processes 1648 (wscript.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 863e46af6e3fa9c47759e3138284424b
SHA1 034e0df5bf391bf9f444d1030dbacf6cc4ba4593
SHA256 0a47aa06075f86593eea9fbee1c7a7a89a08b0ab739224fd429255e4cfb3aaf6
CRC32 2E1800D8
ssdeep 6144:uXIktXfM8Lv86r9uVWAa2je4Z5zl4hgDHQQs4NTQjoHFsAOZZoAX0cNlEJ5Gv:uX7tPMK8ctGe4Dzl4h2QnuPs/Zo7cv
Yara
  • Network_Downloader - File Downloader
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • infoStealer_browser_b_Zero - browser info stealer
  • Malicious_Packer_Zero - Malicious Packer
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
  • Generic_Malware_Zero - Generic Malware
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis