Dropped Files | ZeroBOX
Name e3b0c44298fc1c14_nslFD35.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nslFD35.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 1513abd30195b874_6d6f4d.hdb
Submit file
Filepath C:\Users\test22\AppData\Roaming\41D896\6D6F4D.hdb
Size 4.0B
Processes 8024 (vzwawork.exe)
Type data
MD5 faeb96cb25b5ff43b7d32cd56d71714c
SHA1 729df48d8e006f5948fa6afdfb46a48df65290d2
SHA256 1513abd30195b87453159f9abdea22c6ff0f424ddaa49ebda53de93ee86a1a5b
CRC32 6A770532
ssdeep 3:2t:K
Yara None matched
VirusTotal Search for analysis
Name 6b86b273ff34fce1_6D6F4D.lck
Submit file
Filepath C:\Users\test22\AppData\Roaming\41D896\6D6F4D.lck
Size 1.0B
Processes 8024 (vzwawork.exe)
Type very short file (no magic)
MD5 c4ca4238a0b923820dcc509a6f75849b
SHA1 356a192b7913b04c54574d18c28d46e6395428ab
SHA256 6b86b273ff34fce19d6b804eff5a3f5747ada4eaa22f1d49c01e52ddb7875b4b
CRC32 83DCEFB7
ssdeep 3:U:U
Yara None matched
VirusTotal Search for analysis
Name 2a9376b8efb5d0f3_ndaylpb
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\ndaylpb
Size 517.0B
Processes 2288 (vzwawork.exe)
Type DOS executable (COM)
MD5 c1c92db6ba3f5bc5e9aee0ef894b593e
SHA1 fb077d388cecf496c65d7e157146b4cf78b9d8d1
SHA256 2a9376b8efb5d0f3db65807628a2a4b4faa9107d36a4b68aa35bd5be70da4398
CRC32 A8915E32
ssdeep 12:J/BPmJN2e7lDRz8rfjS30rSlNdIMOTXdf4JZSJ+W4DMEcjs9t:J/5mJk8p8rbS30rSlNOnhioU
Yara None matched
VirusTotal Search for analysis
Name 8d36c928b5352dd7_17ee8b2ioa
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\17ee8b2ioa
Size 104.0KB
Processes 2288 (vzwawork.exe)
Type data
MD5 83d385c8d21e251460c14a00bec504e3
SHA1 b523bb5412b0b7e8387017b66d9d3520730f8f88
SHA256 8d36c928b5352dd7f4d0cdf98db921b218358dedeb3289a1f6cf47cc0746fcca
CRC32 C556B6EC
ssdeep 3072:WqLbZwo4kQTixkHN+E5i45eMP05ZdlySHBh:DfZwo49i2sSiPMM5gU
Yara None matched
VirusTotal Search for analysis
Name 000e5cb7c6ea4222_ccxhls5ni6cx5
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\ccxhls5ni6cx5
Size 6.5KB
Processes 2288 (vzwawork.exe)
Type data
MD5 12067305bfe144e76571c1b742b8a38e
SHA1 3b90af4972abdcdc168d745eb6282d182228e533
SHA256 000e5cb7c6ea422240ed0eaa79224e51ff3ef415fa37bf58f976d3cbc1336971
CRC32 67D16DFC
ssdeep 96:o7uxzJPrBwYdacXdgRyGULM9V9mlQr7QUIhBnG9Nw69mKImtyL0TJY3DBz3TV:nxzN9NdzdgRfpWQrL+sK69emtP9YzF3B
Yara None matched
VirusTotal Search for analysis
Name dc58d8ad81cacb0c_system.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nsgFD66.tmp\System.dll
Size 11.0KB
Processes 2288 (vzwawork.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 c17103ae9072a06da581dec998343fc1
SHA1 b72148c6bdfaada8b8c3f950e610ee7cf1da1f8d
SHA256 dc58d8ad81cacb0c1ed72e33bff8f23ea40b5252b5bb55d393a0903e6819ae2f
CRC32 BFEE9B1E
ssdeep 192:7DKnJZCv6VmbJQC+tFiUdK7ckD4gRXKQx+LQ2CSF:7ViJrtFRdbmXK8+PCw
Yara
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis