Dropped Files | ZeroBOX
Name 0b6044c72e67aaae_berlin sans fb.ttf
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\Berlin Sans FB.TTF
Size 95.0KB
Processes 2548 (Crack.exe)
Type TrueType Font data, digitally signed, 18 tables, 1st "DSIG", 45 names, Macintosh, Copyright (c) 1997 The Font Bureau, Inc. All rights reserved. Designed by David Berlow.Berlin S
MD5 fe2027c27b6a24505f548c6fd2e1076d
SHA1 6e361031397047f6ab260247309a05e4f02abdd5
SHA256 0b6044c72e67aaae9c2ae3c8b4bb06d066fdbc02779c68e3883984acbbe24cb8
CRC32 278133F9
ssdeep 1536:E8fQGJDTu923TkXjZnH2/PbakADw8hnZlNZtCCw8KkY2rkvifrt:hfnRTq238FnWv3otCC1Nkvifrt
Yara None matched
VirusTotal Search for analysis
Name 125fc74e03435b3e_7ceb9b2a0e395bd64e74381485a106af.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\7CEB9B2A0E395BD64E74381485A106AF.dll
Size 3.5KB
Processes 2548 (Crack.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 5afb011d9db047bb0400c5c5ca2e450b
SHA1 3e8631283d2242376bf1485f41bf65f1c12da30c
SHA256 125fc74e03435b3e0ede0ff523d625d9c1fbb299286e9e2dbd1442e506150da6
CRC32 40949A03
ssdeep 48:a2OErL3j/fjnnHeEyR+QZwt/8JIXTyFc2w9aVNjFLVIS:dPL7yR+QZO2IXTyy2YaVNjBVI
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
VirusTotal Search for analysis
Name 8ad9e47693e292f3_bassmod.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\bassmod.dll
Size 33.5KB
Processes 2548 (Crack.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 e4ec57e8508c5c4040383ebe6d367928
SHA1 b22bcce36d9fdeae8ab7a7ecc0b01c8176648d06
SHA256 8ad9e47693e292f381da42ddc13724a3063040e51c26f4ca8e1f8e2f1ddd547f
CRC32 D5B3E619
ssdeep 768:qQmS5iUgi5czW+DlrQOS1DeDdjgNtbX4O6DHix84H0:qQz5Tgof+DdpS1+djctLSHiZ0
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 410d2afbea09cda1_dup2patcher.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\dup2patcher.dll
Size 172.5KB
Processes 2548 (Crack.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows, PECompact2 compressed
MD5 76f80ebe33887c3c5cd2b2392c7eac55
SHA1 b4fa1e64ee868da4603a526baf13bdb6b3ddccd2
SHA256 410d2afbea09cda1ce590aa4a8fa1f3ffb8c5258e33e9337f173d62d20ce4f5d
CRC32 2AD1746D
ssdeep 3072:zVgE4jaHUZSI+p8wJxbu0hpZmy/poYKiHoofJZVqY1ZjOfTdF++HDDm4IcSY:zVgDsJ5b1hpcjYK3oRvq+ZjOZF++HD4w
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
VirusTotal Search for analysis