Dropped Files | ZeroBOX
Name 3656855b7a50fc2f_bawuyocdgnziqevxames.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\BawuYOCdGNZiqevXAMeS.dll
Size 128.0MB
Processes 1804 (None)
Type PE32 executable (DLL) (GUI) Intel 80386 (stripped to external PDB), for MS Windows
MD5 1937799eae80571b826570349df455d9
SHA1 b37ce03d38ea2d3832d24a910422c94a27954c2b
SHA256 d44e885b223afbd5b91f755bd74d5082a659d2dc407fac7b143bf20564a5e23f
CRC32 034244DA
ssdeep 24576:lMKca8rSxQ2Z+27ewN/CHmw1EyluGr2Xwx5otfTOFJ:lMKdKwN/ClduGSXzC
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
VirusTotal Search for analysis
Name 364ddfc11ba081ff_bawuyocdgnziqevxames.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\BawuYOCdGNZiqevXAMeS.dll
Size 128.0MB
Processes 1804 (None)
Type PE32 executable (DLL) (GUI) Intel 80386 (stripped to external PDB), for MS Windows
MD5 1937799eae80571b826570349df455d9
SHA1 b37ce03d38ea2d3832d24a910422c94a27954c2b
SHA256 d44e885b223afbd5b91f755bd74d5082a659d2dc407fac7b143bf20564a5e23f
CRC32 034244DA
ssdeep 24576:lMKca8rSxQ2Z+27ewN/CHmw1EyluGr2Xwx5otfTOFJ:lMKdKwN/ClduGSXzC
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
VirusTotal Search for analysis
Name 93379693ca1b0c7c_service123.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\service123.exe
Size 128.0MB
Processes 1804 (None)
Type PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows
MD5 e7a603206d9c0d2a5a6bebe2300ba0db
SHA1 738f50b197df940200f517e924afbfa8061687fb
SHA256 54c1a608e5b8889fb3a8b86b110a1513f7620766407ab9e352690868dd3d2a79
CRC32 C077A54C
ssdeep 768:crFdPb0WnoH8x2Oib5kyMGzHu89h9jRzU:cxlVocFia4U
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis