Dropped Burrfers | ZeroBOX
Name 66138688f07cf913ebea1b99cb50aa9be5d01132
Size 59.5KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 f0cbb5c0a0aa0a135ea4c481660e42fa
SHA1 66138688f07cf913ebea1b99cb50aa9be5d01132
SHA256 c903b2aafbbe6b586a0ce39e3b2588d72a1ac071a5723771ed9f5b4094825406
CRC32 09DA505A
ssdeep 1536:Kdb81yIXGb/vwlK8xTI0UP+jRe+2ZqA4iZzaH4Mi8:Kdb81ynIlKesdB+2ZN4iZzYw8
Yara
  • PE_Header_Zero - PE File Signature Zero
  • IsPE32 - (no description)
  • IsNET_DLL - (no description)
  • IsDLL - (no description)
  • IsConsole - (no description)
  • HasOverlay - Overlay Check
  • HasDebugData - DebugData Check
VirusTotal Search for analysis
Name 82bcd2bc864b7fdefa55da2b8d752cb14ec20794
Size 396.5KB
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 6dfbfda1de85a17fb44883a0bdee9ad0
SHA1 82bcd2bc864b7fdefa55da2b8d752cb14ec20794
SHA256 6b7ef77fc6a1dc543b06157f7ab6c3a0d859efd6c83b9ab20b9a63cce894d088
CRC32 BACFA5EA
ssdeep 3072:s1z/Hysei5JWXe2YdafeLmCdF/HB8LfHJAjn4HsajDV/6FXP0:AOzzO232LmSdhWHJA2sajDVSF8
Yara
  • PE_Header_Zero - PE File Signature Zero
  • network_smtp_dotNet - Communications smtp
  • keylogger - Run a keylogger
  • IsPE32 - (no description)
  • IsNET_EXE - (no description)
  • IsWindowsGUI - (no description)
  • HasOverlay - Overlay Check
  • Win_Backdoor_AsyncRAT_Zero - Win Backdoor AsyncRAT
VirusTotal Search for analysis
Name 5c4beea78b12069a00b327ee47ce83cc03cafb4b
Size 2.6MB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 9c99d93e675ec57534337aeb5094f209
SHA1 5c4beea78b12069a00b327ee47ce83cc03cafb4b
SHA256 3cfed25323ef77bb09146616caafe7472c6d2a06f87afc3dc6cce333ed415a56
CRC32 436A9646
ssdeep 12288:Tn+ulp9ubDxoBU6nQxbDF6S2vdihqG2zS2op1jH+z+nQrPaxB22:b+ulpYbDOBpEbDw/vdFGASHjHKrPaxBV
Yara
  • PE_Header_Zero - PE File Signature Zero
  • screenshot - Take screenshot
  • IsPE32 - (no description)
  • IsNET_DLL - (no description)
  • IsDLL - (no description)
  • IsConsole - (no description)
  • HasOverlay - Overlay Check
  • Win_Backdoor_AsyncRAT_Zero - Win Backdoor AsyncRAT
VirusTotal Search for analysis