Dropped Files | ZeroBOX
Name fce6e243f42662eb_user.config
Submit file
Filepath c:\users\test22\appdata\local\柑柘栆栂栐栗栁柣柷柕_inc\mazx.exe_url_u03rti0hiw425amgogqqxre4p0spnbru\2.78.996.560\user.config
Size 1.2MB
Processes 1684 (mazx.exe)
Type XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
MD5 aa665a5e20b0a9d51c4f09f8055fa398
SHA1 89e072aa20e256a87a210607671e52ca848db68d
SHA256 fce6e243f42662eb92c5a1b6d24fc84ea170610a151553d47f04d5a01c43d093
CRC32 76E66B79
ssdeep 24576:BwRonX9ETGhW8TVGj5oY5kirwY+dfDOtt/7vy868PkTEUHmmaznDLS/ZE9gnQz1u:/
Yara None matched
VirusTotal Search for analysis
Name 9b13a3ea948a1071_hosts
Submit file
Filepath C:\Windows\System32\drivers\etc\hosts
Size 835.0B
Processes 2324 (mazx.exe)
Type ASCII text, with CRLF line terminators
MD5 6eb47c1cf858e25486e42440074917f2
SHA1 6a63f93a95e1ae831c393a97158c526a4fa0faae
SHA256 9b13a3ea948a1071a81787aac1930b89e30df22ce13f8ff751f31b5d83e79ffb
CRC32 1C23CE7E
ssdeep 24:QWDZh+ragzMZfuMMs1L/JU5fFCkK8T1rTt8:vDZhyoZWM9rU5fFcP
Yara None matched
VirusTotal Search for analysis
Name e3b0c44298fc1c14_c3dxy3fg.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\柑柘栆栂栐栗栁柣柷柕_Inc\mazx.exe_Url_u03rti0hiw425amgogqqxre4p0spnbru\2.78.996.560\c3dxy3fg.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis