Dropped Files | ZeroBOX
Name b0bcbebba3f0a4b7_scriptCache.bin
Submit file
Filepath C:\Users\test22\AppData\Local\Mozilla\Firefox\Profiles\1pfa5s83.default-release\startupCache\scriptCache.bin
Size 9.2MB
Type data
MD5 7fcd6694c7418071bb6f0e1c879bf833
SHA1 022fdf4208fba1c4dd34c6bb1444591529509cf2
SHA256 b0bcbebba3f0a4b75f692e5c955707ad67e4312590330b97e987638eb72d0b11
CRC32 46CB710E
ssdeep 49152:SfNsfR/eXfWVAoIgPm6t7eh+3R8ViGUrilbASvzmj/YDNM3eckIOehICZ3ZkF:SfNyYOVi6Fa2vraASvz6GMu2hIF
Yara
  • anti_vm_detect - Possibly employs anti-virtualization techniques
  • RedLine_Stealer_b_Zero - RedLine stealer
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis
Name fb55181d284b51e0_c216a6e7-4e2b-436a-a742-46e4a5c15def.dmp
Submit file
Filepath c:\users\test22\appdata\roaming\mozilla\firefox\crash reports\pending\c216a6e7-4e2b-436a-a742-46e4a5c15def.dmp
Size 94.3KB
Processes 2384 (firefox.exe) 3004 (crashreporter.exe)
Type Mini DuMP crash report, 11 streams, Mon Sep 2 04:39:01 2024, 0x820 type
MD5 008354230c0bd47f0d7adf8f2d8a8026
SHA1 24a9f71088d64a9d63804e4d3e2372b1348060c2
SHA256 fb55181d284b51e0e2a723225d466c895471f10ccdf798def942c145f261233b
CRC32 E8F35BE8
ssdeep 768:/Uv11lLeDEAqepeG+3fuo5qRIJxbuvCEm:/ILaE9eoG+n7WU
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name 63e02015af0699aa_scriptCache-child.bin
Submit file
Filepath C:\Users\test22\AppData\Local\Mozilla\Firefox\Profiles\1pfa5s83.default-release\startupCache\scriptCache-child.bin
Size 824.1KB
Type data
MD5 19421dc0192e633eec157df491fd8c13
SHA1 adeb399426e11cb6de823cc8f5269e9f2f3e657f
SHA256 63e02015af0699aa0c1a90951bd36f1f62a10746c7e5eb004e29d27d3d80ab23
CRC32 C98B88C5
ssdeep 6144:jLv50b7rtyuRMAMgDh6QbZpZltg2ebfhAFgMWM/OB48SuTSBWobB2PLtPkZ:X5ctdD15PgMWM/OXnSBWob4tcZ
Yara None matched
VirusTotal Search for analysis
Name 752a176e12900c9f_C001.bat
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\BFEF.tmp\BFF0.tmp\C001.bat
Size 2.8KB
Processes 1932 (random.exe)
Type ASCII text, with CRLF line terminators
MD5 31c09b550c61042384ef240a1cd226df
SHA1 731fbe63179f646915f8fa37ca9f8c85fdb9b48a
SHA256 752a176e12900c9f3cf947bc36d506e360f86da00a2dbc1e5fa821f2584c75db
CRC32 7C5572DC
ssdeep 48:N0K2U7V5rN81fN80XUbaOUb5OzQ/iqzQ/hXDTjODAKpxVgXDOev0W:rrrN81fN80Ebanb5OzQ/iqzQ/hTTj+Av
Yara None matched
VirusTotal Search for analysis
Name 899a2277a4806f80_399dff6f-e24e-4b73-9030-b238edca692f.dmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\399dff6f-e24e-4b73-9030-b238edca692f.dmp
Size 54.4KB
Processes 416 (firefox.exe)
Type Mini DuMP crash report, 11 streams, Mon Sep 2 04:40:40 2024, 0x820 type
MD5 1be5569e95acfff1b61376f04528954a
SHA1 126a3db2ebc6a67aa27b6531651c5faf8eb74e15
SHA256 899a2277a4806f805f07cbd1218dba144976ec24b44b1d1e90101cfb2bc9e7ee
CRC32 4C26CD87
ssdeep 384:h+DoVlyyoPjJKmS4oisoIIPnGU28foylg9D:h+EVl0LJKR435GU28focg9D
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name 880f58b7e5c192a8_metadata
Submit file
Filepath C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad\metadata
Size 114.0B
Processes 2300 (chrome.exe)
Type data
MD5 b2d5bd7c41431446546903b0a3f39e4a
SHA1 59c0440523d54674a940c70895849f350ce35fc8
SHA256 880f58b7e5c192a893d7edbbd0325d75a8d21a16e6f37868596bf7e7d570967b
CRC32 C9517A26
ssdeep 3:mTll+XlRceks/Glb7l/lnl/4UIRGuQq/:mTlERc7My/lbIRhz/
Yara None matched
VirusTotal Search for analysis
Name f1ebb2c8c6d04c5c_c216a6e7-4e2b-436a-a742-46e4a5c15def.extra
Submit file
Filepath c:\users\test22\appdata\roaming\mozilla\firefox\crash reports\pending\c216a6e7-4e2b-436a-a742-46e4a5c15def.extra
Size 4.6KB
Processes 2384 (firefox.exe) 3060 (minidump-analyzer.exe) 3004 (crashreporter.exe)
Type ASCII text, with very long lines, with CRLF line terminators
MD5 6c73319c9d67bed3d7b7135afe3fb5d3
SHA1 d60b5c0bb3aa0d0c4ce74c9f7d0e4e50dc6ab517
SHA256 f1ebb2c8c6d04c5ca1ec545f55c7ee5e7b613caaa6c63dd27afdf311fb0b3aa5
CRC32 3F4D243E
ssdeep 96:DoygDlb8bNYabcr5r7QVhCpL2YMMwVKnJ:Doy/pYvL258J
Yara None matched
VirusTotal Search for analysis
Name 3f7b0c74b830426e_lastcrash
Submit file
Filepath C:\Users\test22\AppData\Roaming\Mozilla\Firefox\Crash Reports\LastCrash
Size 10.0B
Processes 2384 (firefox.exe)
Type ASCII text, with no line terminators
MD5 0e86c8d2a5a9948025538f6e0a386420
SHA1 ec3b5f327f571b22e4353bef98f5dc54f3ae8541
SHA256 3f7b0c74b830426eaf3e2ffd970f03e94aa6850c21ca82373795e1fa3ee2b631
CRC32 D4EED00F
ssdeep 3:LAxD:+
Yara None matched
VirusTotal Search for analysis
Name 9072b9a03cc7fc47_c216a6e7-4e2b-436a-a742-46e4a5c15def
Submit file
Filepath C:\Users\test22\AppData\Roaming\Mozilla\Firefox\Profiles\1pfa5s83.default-release\crashes\events\c216a6e7-4e2b-436a-a742-46e4a5c15def
Size 3.3KB
Processes 2384 (firefox.exe) 3004 (crashreporter.exe)
Type ASCII text, with very long lines
MD5 deae257a171c1352e183539efd96e614
SHA1 0c11c097c29ac3b19829cd9c6e80faf781dad7c9
SHA256 9072b9a03cc7fc47abe24c985b7731de671bbd23f5f44c5daba850ddaec3964d
CRC32 45B74648
ssdeep 48:JQogQSXhQH3gjyi54SiUeEMgKzKCLYoCFwULcP4I5TvYv0kvJlyv7XKCKnsi:aoP683cr5r7QVhCpL2YMMwVKnV
Yara None matched
VirusTotal Search for analysis
Name 0e3dc4ccd259716b_settings.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
Size 40.0B
Processes 2156 (chrome.exe)
Type data
MD5 62325aa04f35880232330f344df8018c
SHA1 58fe9532ee8d96e8d12448408cf3ccf9d0542543
SHA256 0e3dc4ccd259716b24376fddb4ee07a6c227f8bcb2532a7dd75bb36a4290e7cc
CRC32 6F0BEA7C
ssdeep 3:FkXJRYcTUM:+wcTb
Yara None matched
VirusTotal Search for analysis
Name f2534a7c63eb54da_8dfd50d1-69f6-4c59-84fc-bb01ad8da10e.dmp
Submit file
Filepath C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad\reports\8dfd50d1-69f6-4c59-84fc-bb01ad8da10e.dmp
Size 502.0KB
Processes 2300 (chrome.exe) 3060 (minidump-analyzer.exe)
Type Mini DuMP crash report, 10 streams, Mon Sep 2 04:39:32 2024, 0x0 type
MD5 bd84425b5ff04a952f69acee4816355f
SHA1 4f1e88d58b661cf345c0db03acc3fcf172765223
SHA256 f2534a7c63eb54da42af83ee3c8249ff3002e52aded10edd945ac6b3a65857c9
CRC32 ECBFFF99
ssdeep 3072:rVfrLjmSIpKTFERjBxhWhU0HX6xYMntRLxJj2DfzYLfcIiqgREhq:xfXjmSIKERjMWiCuRE0
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name b87beb4bbc429f0c_webext.sc.lz4
Submit file
Filepath C:\Users\test22\AppData\Local\Mozilla\Firefox\Profiles\1pfa5s83.default-release\startupCache\webext.sc.lz4
Size 105.5KB
Type data
MD5 86f4fe26175341c830af0ae6353d41db
SHA1 a1449571cf2014cac60a7f3dd7cab8a55380be81
SHA256 b87beb4bbc429f0c98428686eb04b7692f12d53385ab5a3d324bf094bef0c29d
CRC32 D9310E97
ssdeep 3072:igI+rushnjZa9uB1StrmnZI1wwZPxUwwc9ifT:0+rNjc9b+Zet1S08L
Yara None matched
VirusTotal Search for analysis
Name 1d417807b94f958c_urlCache.bin
Submit file
Filepath C:\Users\test22\AppData\Local\Mozilla\Firefox\Profiles\1pfa5s83.default-release\startupCache\urlCache.bin
Size 3.2KB
Type data
MD5 26c3ea73c6885eaea20b6a5a6280ce50
SHA1 32fb4a91b1f37d0228ff31c0f0d6c37a173e67f2
SHA256 1d417807b94f958c6a4069a9dedf24b001099a68936f8ac10ef7bc30a126af38
CRC32 7DB0ACAF
ssdeep 48:BAbHgqedXU753de/xJtISt3bqhJtgtkt0IbvVr9cHSWypBr/BWLaLWcbsyMJrls:BAMqedXUd3AIq3bucwbhcmVsXJr6
Yara None matched
VirusTotal Search for analysis
Name 846e35d7692025bf_debug.log
Submit file
Filepath C:\Program Files (x86)\Google\Chrome\Application\debug.log
Size 290.0B
Processes 2300 (chrome.exe)
Type ASCII text
MD5 5ec185e11e8efa6d4459594f9f7d5e46
SHA1 5376aac6b55d8469eb12ab99679d8da8cea2dab5
SHA256 846e35d7692025bf53e0c5482f690f54e00452095796120a5831647a5562be4b
CRC32 134CE7D8
ssdeep 6:qS448TCGGDLeX/WApd3sRU4LGGFw3V4v84fsRU4LGGFw3V4vF:OJOOWApRsRU4LG6w3V6JfsRU4LG6w3VO
Yara None matched
VirusTotal Search for analysis
Name 63f5a75bc6e48a60_startupCache.8.little
Submit file
Filepath C:\Users\test22\AppData\Local\Mozilla\Firefox\Profiles\1pfa5s83.default-release\startupCache\startupCache.8.little
Size 7.4MB
Type data
MD5 366cb8639aeb3f55c7d6999a7fbac41d
SHA1 5c763f6a53320c8282fa1c648111fd2e68d34145
SHA256 63f5a75bc6e48a60722f5b706b3f3953f8139e31c3d81eff92f8aad6943dac01
CRC32 CF035B97
ssdeep 98304:LXEV8Jzl6VPltC/8Toxmu5RTRPG/D79MJRGDx/s3:LE89l2mYFu5HsD72idk
Yara
  • anti_vm_detect - Possibly employs anti-virtualization techniques
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis
Name b14ecda1ab1c4de0_c216a6e7-4e2b-436a-a742-46e4a5c15def-submission
Submit file
Filepath C:\Users\test22\AppData\Roaming\Mozilla\Firefox\Profiles\1pfa5s83.default-release\crashes\events\c216a6e7-4e2b-436a-a742-46e4a5c15def-submission
Size 73.0B
Processes 3004 (crashreporter.exe)
Type ASCII text
MD5 eea6cb1c45a2a4e9933d5511c83ec5b9
SHA1 275632f856f4cd12fb93e1ed0ff23172e573f014
SHA256 b14ecda1ab1c4de091bc750731829330912db1494003254b70d9b7914f4af6f5
CRC32 9BDD963C
ssdeep 3:RIRL/zoVNIUTfmHTHXsRYUAzDEJPn:eeAUbAzYdn
Yara None matched
VirusTotal Search for analysis
Name cacb3b090bd98317_compatibility.ini
Submit file
Filepath C:\Users\test22\AppData\Roaming\Mozilla\Firefox\Profiles\1pfa5s83.default-release\compatibility.ini
Size 200.0B
Processes 2244 (firefox.exe)
Type Windows WIN.INI, ASCII text, with CRLF line terminators
MD5 63f28ee6c5768202c31eaf82725b64c2
SHA1 edc0b0c87aaa262a0aba6e6b29b2c31cc04fcf39
SHA256 cacb3b090bd98317500f593712c4bf51b5197c7aa9e07b6e10cab50144339ff0
CRC32 D70ADABB
ssdeep 3:tZAQU6oEl1mE12NE2aT/P4WX1rDZjrEFwHQ3ZjrEFwslyy:VoKmbbabN1rDVEFycVEFL
Yara None matched
VirusTotal Search for analysis
Name 5f38c6c81db7e0b0_submit.log
Submit file
Filepath C:\Users\test22\AppData\Roaming\Mozilla\Firefox\Crash Reports\submit.log
Size 228.0B
Processes 3004 (crashreporter.exe)
Type ASCII text, with CRLF line terminators
MD5 7863fcee412d917e6d7a036c2e79d1bc
SHA1 6de4e2730231bccb7da8188ffe891f97f4f7bfdd
SHA256 5f38c6c81db7e0b03e5aad8632b45b4bc24f89bc30d00bd3fa42a4f256806774
CRC32 4E4162BB
ssdeep 6:gnb0md6Qw0HZAsCpYA6Dp6hnb0md6Qw0HZAsCpYA6Dp7:uFgQw0eTGDpKFgQw0eTGDp7
Yara None matched
VirusTotal Search for analysis
Name e3b0c44298fc1c14_BFEF.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\BFEF.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis