Dropped Files | ZeroBOX
Name 6b86b273ff34fce1_6D6F4D.lck
Submit file
Filepath C:\Users\test22\AppData\Roaming\41D896\6D6F4D.lck
Size 1.0B
Processes 668 (tesy.scr)
Type very short file (no magic)
MD5 c4ca4238a0b923820dcc509a6f75849b
SHA1 356a192b7913b04c54574d18c28d46e6395428ab
SHA256 6b86b273ff34fce19d6b804eff5a3f5747ada4eaa22f1d49c01e52ddb7875b4b
CRC32 83DCEFB7
ssdeep 3:U:U
Yara None matched
VirusTotal Search for analysis
Name 7b696ee3c8705132_6d6f4d.hdb
Submit file
Filepath C:\Users\test22\AppData\Roaming\41D896\6D6F4D.hdb
Size 4.0B
Processes 668 (tesy.scr)
Type ISO-8859 text, with no line terminators
MD5 58ef939bc1a59cbeb71bd27405c45963
SHA1 f7d1f14982baf8f217384cbbb5e9f4fc8cbd6859
SHA256 7b696ee3c870513211c44914453e564255df4a257edfeeb0341bb41f5095a0ea
CRC32 008AD611
ssdeep 3:cr:cr
Yara None matched
VirusTotal Search for analysis
Name e3b0c44298fc1c14_nsvFB9B.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nsvFB9B.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 852ddea984bc2f77_2greoikoq.txt
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\2GReoikOq.txt
Size 722.0B
Processes 8724 (tesy.scr)
Type UTF-8 Unicode text, with very long lines, with no line terminators
MD5 12c1aa799a1d19ca68bad90834659be6
SHA1 9f7bc9724c097ac71ef340850929de316f642fdc
SHA256 852ddea984bc2f774dfc8d4f75abed36d87909ee038aec8909f28fa5e960c7de
CRC32 D1866A7F
ssdeep 12:zG8zDsR0UevQzQSspot72VlEU+tGYOc5nhzJGkYEcHEarkwU2ix2+HoLzShIs:68/2tevoeEg3+0YOc5+l3kbH1
Yara None matched
VirusTotal Search for analysis
Name b49108b2254f3215_gcpvbewjsd
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\gcpvbewjsd
Size 45.2KB
Processes 8724 (tesy.scr)
Type data
MD5 057dad1f3d4d95609ccf2ac31f27bf4e
SHA1 0bd4fc4fa6911a405b595e4ee0ebaf451ff99fba
SHA256 b49108b2254f321572da9914d9522f766d138c631d46f04b36145a7a220917ad
CRC32 88A13EA6
ssdeep 768:d8llUh99HveW/saoPfFB/idJP8BefqHpKhQ28aX5vLyG/HY8d3Kbmx5T7ocUk3v:dUCDmeCP9Biv8AKpKhxLLHYpm7vocRv
Yara None matched
VirusTotal Search for analysis
Name b444db52d23d3696_j3g9w1kt0hr3o
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\j3g9w1kt0hr3o
Size 104.0KB
Processes 8724 (tesy.scr)
Type data
MD5 a8c49bb30707f242a33598eff35791b6
SHA1 0ba605a26987d08e0fcfac78877a2c0f5a45d082
SHA256 b444db52d23d3696edf205fbdafe581b308de320cecfbd871c7432b7e1da1989
CRC32 8920C48B
ssdeep 3072:sGcWb2Qnzto1KZHfsuYddPkTX2ABOClOrEE0eshJ4F+:RcWqIzSQZ/tYdBWX2UVlOrEE8hJ0+
Yara None matched
VirusTotal Search for analysis
Name 3de5dd963e6aaae9_2qkidcc.doc
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\2qKiDCC.doc
Size 18.5KB
Processes 8724 (tesy.scr)
Type Microsoft Word 2007+
MD5 29e0c22a8d346a92652a6be25d8f2884
SHA1 4ddef593f73d0624e4f14552bfbfa4e37242c65b
SHA256 3de5dd963e6aaae92913297570e7f7702ed9da4aacb67366c7ae545c76fe98eb
CRC32 91F0DBBD
ssdeep 384:fRdzZyRJJ0HYr/Nz5SVM27qNxt/ZtNN34LFfILiPZiO11y8AqenE:b26YrdUrExllN34LtILiPMtqp
Yara None matched
VirusTotal Search for analysis
Name dc58d8ad81cacb0c_system.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nsqFBCB.tmp\System.dll
Size 11.0KB
Processes 8724 (tesy.scr)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 c17103ae9072a06da581dec998343fc1
SHA1 b72148c6bdfaada8b8c3f950e610ee7cf1da1f8d
SHA256 dc58d8ad81cacb0c1ed72e33bff8f23ea40b5252b5bb55d393a0903e6819ae2f
CRC32 BFEE9B1E
ssdeep 192:7DKnJZCv6VmbJQC+tFiUdK7ckD4gRXKQx+LQ2CSF:7ViJrtFRdbmXK8+PCw
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
VirusTotal Search for analysis