Dropped Files | ZeroBOX
Name 2b84c060fe745108_25261313.dll
Submit file
Filepath C:\Program Files (x86)\Google\25261313.dll
Size 25.5KB
Processes 2560 (360setr.exe)
Type PE32 executable (DLL) (console) Intel 80386, for MS Windows
MD5 29735051033ee32bad62253a15518418
SHA1 631fbe5f2b84535625b6673de4103fa1134f32b2
SHA256 2b84c060fe74510892e1f42f3fb759468cfe4b847b4ca3d6f01d292661ca8297
CRC32 AFEB52A7
ssdeep 384:8T9IWqIwt10zr6lXYhCRdkyurLmC2S1xJrQcWrH/RUAMO0MY0holUxHdjq4tKDES:8ht+Izr6pqRrLuS1vzWpaGZHdJYDG
Yara
  • Win_Backdoor_Farfli - gives threat-actors several options of gaining access to the affected system.
  • Malicious_Library_Zero - Malicious_Library
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
  • Generic_Malware_Zero - Generic Malware
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis
Name acee72d648216217_360setr.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\360setr.exe
Size 48.0KB
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 483fe860119307c2f9e2f7ed4caadc81
SHA1 b5fa21f06419e585cb9faa7227f1931a8521ca5f
SHA256 acee72d648216217f6208a6d648767f06252a72aa3a8f4bf88de049eecb27c23
CRC32 94E295F7
ssdeep 768:zynb12Aw5J6HC4kq5Jp9bjAzhyY55J+NStcEeUlyqgZl4p67dhPC:Ub1MsHz3JDwhyWr+N95OTga6u
Yara
  • Malicious_Library_Zero - Malicious_Library
  • hide_executable_file - Hide executable file
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis