Dropped Burrfers | ZeroBOX
Name 9420a2004c14c4a5e31290936a07bd58dcaa15b3
Size 46.0KB
Type PE32 executable (DLL) (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 689743052e3a2f5f7c31ccb0d9d55a36
SHA1 9420a2004c14c4a5e31290936a07bd58dcaa15b3
SHA256 f84f74861d642b167eb6da7709cae9ec6f432a5ab1fb81d5125861554f090ca8
CRC32 FCB52C23
ssdeep 768:rfo4sHq2okqPVZ+x/Yn2U2Wu/RYxoelQef:TNkqn+x/Yn2fPRYxvf
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Is_DotNET_DLL - (no description)
VirusTotal Search for analysis
Name e15cfec377f0f425bdeabed036b720b6344b4adc
Size 35.8KB
Type data
MD5 cbc8f82b58ec2aa86f275a7fd59f12e3
SHA1 e15cfec377f0f425bdeabed036b720b6344b4adc
SHA256 dcb4c6daa3ee42edfc29256540a7613fff53eb4e7140d2caf6ea0fcc4efb1221
CRC32 DB0785FE
ssdeep 768:Dbj3n706eKbRG/k09kiZ5MHrAwFqcs3rcY+Mo35aqppkCT/JiqvH0w:z37HewRG/k09kF3Fy3rhZo80pPT/Jpcw
Yara None matched
VirusTotal Search for analysis
Name 636b8187f0cb59d43c9ee1eedf144043941b62d9
Size 161.5KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 5f811de9c87dff3815974880168f9f54
SHA1 636b8187f0cb59d43c9ee1eedf144043941b62d9
SHA256 3d319d2fa51b58429b682b3bd8f18cb237dfa1780a488141f24e8ca009a8f732
CRC32 7DC0E500
ssdeep 3072:zmwMZu0uGUZbaV615xZ3gHW3nqIy+IYeRp2cpWsGRlKDYJ:z6ZubGUZJDxKHW3fXEpIl
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Is_DotNET_DLL - (no description)
VirusTotal Search for analysis
Name 017a55317dba7ed49124db811470c692b42838fe
Size 5.7KB
Type data
MD5 01643a7e556b092753889b64c2f00423
SHA1 017a55317dba7ed49124db811470c692b42838fe
SHA256 851621435e781339398b581e945546534587aae4f72ec0e80548fe98d2243b8a
CRC32 A0164E59
ssdeep 96:UJy2sIxdozqIQfZcYH3wGO5k66rddyyPvH9vqisDXHqACLw9ns8MOGQdlCGE:UA2s7zEpVOmRdd7/9vqZ7qAow9hpGQdq
Yara None matched
VirusTotal Search for analysis
Name a5f5738878305eda0d7d0def2cc40314a2f39bce
Size 20.0KB
Type data
MD5 6cb0f844f2cd3c0695aef94e9af433bc
SHA1 a5f5738878305eda0d7d0def2cc40314a2f39bce
SHA256 0966c48102841504c8c60214c2938b6b36aedf324e912f1c9d91c93c80f3a173
CRC32 36C3B4A3
ssdeep 384:Jb1r9fGDU48sG3F1BjseMsueEDV3CLxPHPGKq5/rBGvwGf7+xsZL7gCcfb:1t9s2V/xMsjEpSxH+T5/rjGT+xsgCcz
Yara None matched
VirusTotal Search for analysis
Name c19d9db351af75fec019fe76506a455eba7fd168
Size 57.0KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 36cf6fc7f7d048755ddeace5a0a102ed
SHA1 c19d9db351af75fec019fe76506a455eba7fd168
SHA256 ccea8cede491e63527c0596d38f490fe4a170b93a0af41d13b8136a020f76762
CRC32 CB39BD3A
ssdeep 768:Vp1KgX+TZMbpsN7Sd5JSnuU0NjWS3jhxIxvXETCYH2EeSudk:Vp1Zu2z5RjWchqxv0+abeSp
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Is_DotNET_DLL - (no description)
VirusTotal Search for analysis
Name 696c753eca440d19c7d8a49f83389a44909e6939
Size 334.5KB
Type data
MD5 183ad2554982fcf7033394ed8711c2fa
SHA1 696c753eca440d19c7d8a49f83389a44909e6939
SHA256 5c74d0333d6436acb2a50aea8a4d09fb34f25d41d5fb168d1c6ba3696f31a73a
CRC32 8AF6D25D
ssdeep 6144:NQ5qA/ceONNMraXc+ulyEMViXdYBgrVVtjDnJesk2EMpmGaJvsPGy:NQ5qA/ceOrCaylyEMMeBgJVtjDnf1pmA
Yara None matched
VirusTotal Search for analysis
Name 611017d8278074e150b52b5f23df28874c2018c9
Size 87.8KB
Type data
MD5 e26787d0889802f4b1b37eeac0b1a39f
SHA1 611017d8278074e150b52b5f23df28874c2018c9
SHA256 91affb51b45910975a19a0f779035d1467a23635326c5196ab756ce9ae2bb6c7
CRC32 3F4DB6B7
ssdeep 1536:iy1rlx0HA9HO7VSH+H79R6R3xeOALYMicpj3eo6jzBeziUTXlQ5reM:iyzxxY7V8y79R6R3MHcMi9o6Pi7I9
Yara None matched
VirusTotal Search for analysis
Name c1ef2ca62189121934d1a7944ef1bdc1aa319877
Size 49.0KB
Type PE32 executable (DLL) (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 de880274dcd7ec3ebf4e61e843662be3
SHA1 c1ef2ca62189121934d1a7944ef1bdc1aa319877
SHA256 a3f88dac778d3c59e7157ee9fe6a5133ac89708795caad1c83f98f725e6d800e
CRC32 BC31FC04
ssdeep 768:FDxO+dUh5OOqulVgD/hB8RcjN6HHmHHSA2SscBjh0TdC6Zu:DOI4cOqegDJB8RaYJijh0dbU
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Is_DotNET_DLL - (no description)
VirusTotal Search for analysis
Name 925c5236c59dd8f3efea4b3e091ef735b405a880
Size 22.5KB
Type PE32 executable (DLL) (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 d9ac251618ec2f76a8fa0f6fb526fb31
SHA1 925c5236c59dd8f3efea4b3e091ef735b405a880
SHA256 dfc5c5bbd9aabc3154fd185adc48aa9a6558ffee4ce6f9005118eeba6dd8c3ed
CRC32 305BF808
ssdeep 192:77xfEWL+zT7UYAZVPJnlYJL/e+vNI3LRqltIYg:7tcTTWoqO4LRap
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Is_DotNET_DLL - (no description)
VirusTotal Search for analysis
Name c54e7c5cac5fac68dc564ce64355d948422bf1ce
Size 57.0KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 b7fc2e10abaeb174f02fe10f533ec741
SHA1 c54e7c5cac5fac68dc564ce64355d948422bf1ce
SHA256 adafa8b32a00b8947e2b7ca09fc8e7b2392f02d87e825428af533204c395a3b7
CRC32 AC35345F
ssdeep 1536:hgy4QwPX4K1YuF/QqstZM9RYvBg7nrmv1:6y4Q+X4K1H/QDZM9qvBmrmv1
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Is_DotNET_DLL - (no description)
VirusTotal Search for analysis
Name 8fb23c84822f31350d13fd7a7d76aedbd670e63b
Size 7.1KB
Type data
MD5 c0fcb0d63c60c1d48d45b01b91ff36f8
SHA1 8fb23c84822f31350d13fd7a7d76aedbd670e63b
SHA256 fa28f3783b8b381bc7feea435ca4abe93d4d83509fbf5c22c2b3e8a5159486a9
CRC32 2E891F82
ssdeep 192:ob8Gq+n+nYzTe80oNR7DuSqKxd6FTqx4+j4eqsWeuT9oz:wmmeY/eoNFuSqZFTqx8HeKoz
Yara None matched
VirusTotal Search for analysis
Name dcdec0ea839844e977c1151d2eeedbb0788a34b1
Size 35.5KB
Type PE32 executable (DLL) (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 189d32136482ced3d7f9743aa312ad50
SHA1 dcdec0ea839844e977c1151d2eeedbb0788a34b1
SHA256 b1012e64e562663d7616bcb59a2b53af8f8fb7f04a564631967d4731df357a5c
CRC32 B3A360D5
ssdeep 384:GPa4E31ZO/7w8QF/Q18tePCO66Nt6XgqUZNADLRIaM494kvN2:T4E37s0F47NokNMD4kvN2
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Is_DotNET_DLL - (no description)
VirusTotal Search for analysis
Name 0c6598a0a37eaf12ce188fa66bc6c5db394af8a4
Size 48.5KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 78f7c326ea2dbd0eb08de790d6e4bd19
SHA1 0c6598a0a37eaf12ce188fa66bc6c5db394af8a4
SHA256 ef2435c30f498d6af69a2843e44797203048ef6799965f8d9fe54bfc67a4560b
CRC32 DEE1EEE6
ssdeep 768:OOEtx7dgsj5hxRwgckPOcZN52QxDjkmamzchhumGHtkoEQEZ:27pNhxRwgnB2QxjkmzUhZGmoEQ4
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Is_DotNET_DLL - (no description)
VirusTotal Search for analysis
Name a5ee974c50c06a9e9f3ad7f73e0121cf50af6838
Size 10.0KB
Type data
MD5 5c790d83a9826d121ba196c48496d34c
SHA1 a5ee974c50c06a9e9f3ad7f73e0121cf50af6838
SHA256 b1de6486615d7fb98cc7b9ce63e700abfa9fa41cea0b7d71e9613eb2719f3eca
CRC32 9D87669C
ssdeep 192:a72u+WFkF9GQEpd2uh3N1MtDIU6Duki8mJ2lo04i/i3l9CV+5PJa:Y2uzU0lplh3N1MtDIU6D1iP2lobiKl9o
Yara None matched
VirusTotal Search for analysis
Name eb773b705912e1223fcb3634533bc628f274bac1
Size 24.2KB
Type data
MD5 0302ce2ad850e2e8edddc02555b41670
SHA1 eb773b705912e1223fcb3634533bc628f274bac1
SHA256 a6cc9e044d3d74212b827ab750c285d7f00f0f45c0a2be4af8e9d4e0f51d830b
CRC32 2D3F14C1
ssdeep 384:Fbh7jqYBCCCWfaL2LFPH4haxzE6vjuZL7KGyu6rDbdhEO4IXTnz8lMghzUup4iuI:bIgyLuaYxY6rofxmD5h/z8KU47WLf
Yara None matched
VirusTotal Search for analysis
Name 874b7c3c97cc5b13b9dd172fec5a54bc1f258005
Size 19.5KB
Type PE32 executable (DLL) (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 bdc8945f1d799c845408522e372d1dbd
SHA1 874b7c3c97cc5b13b9dd172fec5a54bc1f258005
SHA256 61e9d5c0727665e9ef3f328141397be47c65ed11ab621c644b5bbf1d67138403
CRC32 BE3B83AB
ssdeep 192:VYLQui6h6p5WW3tZVTnlYJL/eLYLTr2/C8:VYLQu/6/fKqLYLTR
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Is_DotNET_DLL - (no description)
VirusTotal Search for analysis
Name 3ec1c0e721ef7ca124cdd655303f2c32e49d007c
Size 44.2KB
Type data
MD5 ab42ceee344837501de3c9600a684e9b
SHA1 3ec1c0e721ef7ca124cdd655303f2c32e49d007c
SHA256 bc7d02712c973d8920960570c6f281476f7abf24e14cd756b26b675a82294425
CRC32 04AF6EC2
ssdeep 768:DeBXjl7oEdcnZx0ybgsiIi2F/HFLLQbDwPd16500ZtfCX05B1F9ZyA:DeBXjl7E0yIO/HFQELOHtBBT90A
Yara None matched
VirusTotal Search for analysis
Name 01864b4010c847017e44bd3b1ca6872ce05a94ff
Size 8.6KB
Type data
MD5 8c0eefe82caab4869d2877d0334c473f
SHA1 01864b4010c847017e44bd3b1ca6872ce05a94ff
SHA256 86ba37002d3143edaa91aff56d50e9d6dff639ff2fa4fde7b46269071797e896
CRC32 8CACCB41
ssdeep 192:hiQFvcEING4cit8ZgWOiRZVkuQGZdhj0jeypV:hFFvcEI8ziYgVOVkuQGZjyeyr
Yara None matched
VirusTotal Search for analysis
Name 1b13bcccb7fd4fcd77c7b8815099ddd434d80622
Size 310.8KB
Type data
MD5 5ad2e8a7ffa177d2154d4945870eadcf
SHA1 1b13bcccb7fd4fcd77c7b8815099ddd434d80622
SHA256 288261b2e5f2170c044f1738c38d37173647d8181f329fbdf8c13b7964d16f03
CRC32 5057D65A
ssdeep 6144:tuWRRGal0Oitw4nNJigU1XU3OiZYLKwL89z3Lvngrm/pi519VKx2mqL:tuWRsal0lbillU3xYmwL8J7ngS/pozKo
Yara None matched
VirusTotal Search for analysis
Name 107cf39bea1417413247d88825801fedb5d8c4b1
Size 88.0KB
Type data
MD5 e582dadcba248a1f19b5e064c734730c
SHA1 107cf39bea1417413247d88825801fedb5d8c4b1
SHA256 ffe682ecc099a81d62781dc809804fc26c47b1ddf7853997d1cefcdd39286ef1
CRC32 262361FF
ssdeep 1536:048yu6EET/3cbVXEikyJI+3OIAxGqELTeL3zBoUlhijlffKRU9v3IQZuB87CVpba:bx96fkyK+3OPxGqELTiFoaclSRU93Cje
Yara None matched
VirusTotal Search for analysis
Name efa4948abb218e47d809bedd1aff08cfb76d40e1
Size 36.5KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 39c8185da53fbe588136525f1654d8f3
SHA1 efa4948abb218e47d809bedd1aff08cfb76d40e1
SHA256 8c9b3ce8b8970caac3a5fef9f36b3f6c14d32a5802110188f29b810c09945f2f
CRC32 5EC8A962
ssdeep 384:hhBrCq16ZPMVbsjjW2XtIVPYuTJy9haYV5mnGUuCsNRusDJ5K8:f1FoPMdsjjW2dYLM5EGPZRuUJk8
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Is_DotNET_DLL - (no description)
VirusTotal Search for analysis
Name 1b68e773e3522fa8edc7cb20d7c7f156b08ec73a
Size 81.5KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 7283fa19fa6af23c6469976b67c00156
SHA1 1b68e773e3522fa8edc7cb20d7c7f156b08ec73a
SHA256 fc047a52db3a4aadc47fbc8f72ab671817df327817b60ec15240f135661e078e
CRC32 9C80A01D
ssdeep 1536:Fgzz1h6aW2dEG61AGfrHeZ1vxJHQhzGIIysksO9PRqJ2YWw2JokBBXyXuAG3f:Fg1AavflmrO1vrHQhzGINJl9PvYNMou3
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
  • Is_DotNET_DLL - (no description)
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis
Name e205a95669aac4357aa4498a36d86ba335603c0c
Size 114.0KB
Type data
MD5 fb237e1cf9b0bf16e34a7559f550c77f
SHA1 e205a95669aac4357aa4498a36d86ba335603c0c
SHA256 d846db3eda98681ee50f8675e66b94ddecd9c7a7090b16aa9850953160cc527f
CRC32 929B7061
ssdeep 3072:jzEqV6B1jHa6dtJ10jgvzcgi+oG/j9iaMP2s/HI3:jLV6Bta6dtJmakIM5
Yara
  • Malicious_Library_Zero - Malicious_Library
VirusTotal Search for analysis
Name 874f3caf663265f7dd18fb565d91b7d915031251
Size 98.0KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 9c8242440c47a4f1ce2e47df3c3ddd28
SHA1 874f3caf663265f7dd18fb565d91b7d915031251
SHA256 01e3b18bd63981decb384f558f0321346c3334bb6e6f97c31c6c95c4ab2fe354
CRC32 EDEEDF40
ssdeep 3072:2m7DYfm4SRR+NaVEs+k6kiS+94ERR6gR0bRbD:2IoIRRGaVExfd
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Is_DotNET_DLL - (no description)
VirusTotal Search for analysis