Dropped Files | ZeroBOX
Name a9e09cd67ad4df01_zhxpwnkb2xox5j.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nsm63C5.tmp\zhxpwnkb2xox5j.dll
Size 4.5KB
Processes 3024 (winlog.exe)
Type PE32 executable (DLL) (console) Intel 80386, for MS Windows
MD5 38b02c707606809973c80710a99fcd07
SHA1 b463066421440fef4afbf955755237494eb14565
SHA256 a9e09cd67ad4df0184b813f1ace7e12f9f4b16f66ab47edf19d4584e4683ca49
CRC32 5131CCF4
ssdeep 48:atzbZ4khubZOGh8friWIiVGDy+4dgpyHvP/eCNkBRe/WGRuqSC:G/8YBibiVGUdggHvP/LWzexn
Yara
  • PE_Header_Zero - PE File Signature Zero
  • IsPE32 - (no description)
  • IsDLL - (no description)
  • IsConsole - (no description)
  • HasDebugData - DebugData Check
  • HasRichSignature - Rich Signature Check
VirusTotal Search for analysis
Name e3b0c44298fc1c14_nsg63A4.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nsg63A4.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 9cf6b298a79bd696_gpz8ar381j61mdp9ky2
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\gpz8ar381j61mdp9ky2
Size 13.0KB
Processes 3024 (winlog.exe)
Type data
MD5 4350600ed6d76c860d1d2842d2db75e6
SHA1 824c4375a3c2ab974af4b5fdea67ac899e12854a
SHA256 9cf6b298a79bd696af4bfe4505b624cfbebd4708d7d5063862649b3193828d02
CRC32 2DD67434
ssdeep 384:Of7cU60MqNOt3MqWHw3eQnWSNm7p1Oz9h03:i+0Ut33WHwxnBurOz2
Yara None matched
VirusTotal Search for analysis
Name 5bb177e88a830aae_38pl2h5z2dja
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\38pl2h5z2dja
Size 173.5KB
Processes 3024 (winlog.exe)
Type data
MD5 1a86ea01ec06460b6f786e08f3a0c005
SHA1 129bc637dfa2b230808f7e8f22b44cc16878d9d9
SHA256 5bb177e88a830aaefc2610eb39698ec972c8de360a0663e5f2b855b88f7bf368
CRC32 E6540936
ssdeep 3072:TK4oOpbpBmiaHrY1+Q/x3qDgpP1Rnk6Gzk7Fo3N0bEJweOzn+TPoXp+pf8ag:u4o+pB04+Q/xFHNwk7y3NXgjQp+
Yara None matched
VirusTotal Search for analysis