Dropped Burrfers | ZeroBOX
Name 35e46be84d0a8f2a003930ea774725746511c9f1
Size 856.0KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 cda90a17b0934d17b24829bbbf7e1710
SHA1 35e46be84d0a8f2a003930ea774725746511c9f1
SHA256 52dc251bb369f9a87633d1116230a30ed20e4ac0b4a77b5cc1803806d6bf541d
CRC32 1B6C39A1
ssdeep 24576:OWH7ftSp6So5N8Narj7bBFMTbBV9AXgWs:tt7ScN8NCjZFMHxAXC
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • RedLine_Stealer_b_Zero - RedLine stealer
  • UPX_Zero - UPX packed file
  • Is_DotNET_DLL - (no description)
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis
Name c01e5bc3e9dbb84a5b36841045055999fc0a16cf
Size 976.5KB
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 902f14b6f32cc40a82d6a0f2c41208ec
SHA1 c01e5bc3e9dbb84a5b36841045055999fc0a16cf
SHA256 81f91061c650c2d9fdeab6a9d8be220a93d46f930d5c435e4a00c511236a4caa
CRC32 F38FDD50
ssdeep 24576:1Ibj07xMVrpydHnnDfiDw8PZIykCu3oxmv2GX:1+ukYxDqnZTlns2
Yara
  • PE_Header_Zero - PE File Signature
  • Is_DotNET_EXE - (no description)
  • Win32_Trojan_PWS_Net_1_Zero - Win32 Trojan PWS .NET Azorult
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 0c8438538c6355d85bb2e5a60c8982e3e803340b
Size 6.3KB
Type data
MD5 67dade6d10ea3704d3283e6aa453821b
SHA1 0c8438538c6355d85bb2e5a60c8982e3e803340b
SHA256 b179afc4e1c17a6472fc0d5612d3288075b02203e896df3ac22db8da51184c84
CRC32 924CC657
ssdeep 192:ZdA63TUWdQ6IgcOHTdEVpROYqVH5vh3RP:LJQkHTd8R9q9ft
Yara None matched
VirusTotal Search for analysis
Name d2a7a464e9af824cb9f2220b790c2c192b8a870e
Size 6.4KB
Type data
MD5 1f39616ea6db064e9def3ab50521362f
SHA1 d2a7a464e9af824cb9f2220b790c2c192b8a870e
SHA256 4f577eb63edaf7e7d0b64e7971c25b999a2ac1daae5cd7f2934c259642e73b0c
CRC32 CF8E91DA
ssdeep 96:X463x/pVyq2zG4dKVoXyhtiNc+SUddAvKal9y6vI92of7hDLIJR2iDL2:XbxCq2S4ioX+00Ud6vvjyp9Lh4JUiDK
Yara None matched
VirusTotal Search for analysis