Dropped Files | ZeroBOX
Name cab6c398667a4645_njrtdhadawt.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\njrtdhadawt.exe
Size 943.0KB
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 96e4917ea5d59eca7dd21ad7e7a03d07
SHA1 28c721effb773fdd5cb2146457c10b081a9a4047
SHA256 cab6c398667a4645b9ac20c9748f194554a76706047f124297a76296e3e7a957
CRC32 EF1BB1DC
ssdeep 24576:ajfMVHefX7eO2FwYPMGNL/geFyNcTN+jv75TQn652VBuNyb2i:oEQreO8wRGJtF4ch+jvNm0Nyb2
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • Antivirus - Contains references to security software
  • IsPE32 - (no description)
  • Generic_Malware_Zero - Generic Malware
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis
Name 81a4f37c5495800b_chrome.dll
Submit file
Filepath C:\ProgramData\chrome.dll
Size 676.5KB
Processes 1212 (njrtdhadawt.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 eda18948a989176f4eebb175ce806255
SHA1 ff22a3d5f5fb705137f233c36622c79eab995897
SHA256 81a4f37c5495800b7cc46aea6535d9180dadb5c151db6f1fd1968d1cd8c1eeb4
CRC32 7C0E93E9
ssdeep 12288:Kk5nGNLFzxC+gej5yNcTN+pt+tLK75PL2rn65hYVKKuKOvy/j3t:KMGNL/geFyNcTN+jv75TQn652VBuNyb
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Generic_Malware_Zero - Generic Malware
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis