Dropped Files | ZeroBOX
Name a107cba0525d21a9_tmp60A.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\tmp60A.tmp
Size 1.6KB
Processes 2768 (afo.exe)
Type XML 1.0 document, ASCII text, with CRLF line terminators
MD5 b2890640df02963219a0dcfce036ffd9
SHA1 e5cd4b80e892b2a729f262e382ee9fd6f6a58b4b
SHA256 a107cba0525d21a97a360337012ae7583a0c894c1fffac1509577c552eb08c7f
CRC32 2BF1DE18
ssdeep 24:2dH4+SEqCH/7IlNMFQ/rlMhEMjnGpwjpIgUYODOLD9RJh7h8gKBrtn:cbhf7IlNQQ/rydbz9I3YODOLNdq3b
Yara None matched
VirusTotal Search for analysis
Name 2dee39f69d9494c5_run.dat
Submit file
Filepath C:\Users\test22\AppData\Roaming\017BD04F-B3BF-45B6-8167-9E8F41FF87BF\run.dat
Size 8.0B
Processes 872 (afo.exe)
Type data
MD5 f5d9f63b8b2221645b20b022237ccd39
SHA1 33d6600bf9a37a2a2bcae1fdd0e394b82a45131a
SHA256 2dee39f69d9494c56ed9df19d00abbdb20366bf5a26201990560f9406029dc7c
CRC32 33511D46
ssdeep 3:T8t:T8
Yara None matched
VirusTotal Search for analysis
Name bb9181b3935b8681_tmpA8F.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\tmpA8F.tmp
Size 1.3KB
Processes 872 (afo.exe)
Type XML 1.0 document, ASCII text, with CRLF line terminators
MD5 be81f72fa4dbc827132836ee2af92c96
SHA1 fe5ded04ab4932dea6cf414e9e4428f43da70d03
SHA256 bb9181b3935b8681a71b578f8166883e61380de6181df82d05f14829323fbf0f
CRC32 7AA438E3
ssdeep 24:2dH4+S/4oL600QlMhEMjn5pwjVLUYODOLG9RJh7h8gK0Rb5xtn:cbk4oL600QydbQxIYODOLedq3Sb5j
Yara None matched
VirusTotal Search for analysis
Name 98cd5e0c361f9d3f_tmp9C3.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\tmp9C3.tmp
Size 1.3KB
Processes 872 (afo.exe)
Type XML 1.0 document, ASCII text, with CRLF line terminators
MD5 2d4bf44577dee42abe1498a4c9a06dea
SHA1 6187b670e225cef33ca09ea8fa04a0e9c9ec6d45
SHA256 98cd5e0c361f9d3fbd3c03cccd4bf9f146d6b5dae4c94271b732d8e50493d9aa
CRC32 8A44A666
ssdeep 24:2dH4+S/4oL600QlMhEMjn5pwjVLUYODOLG9RJh7h8gK0Zjxtn:cbk4oL600QydbQxIYODOLedq3Yjj
Yara None matched
VirusTotal Search for analysis
Name cd46b87b88e5e4a6_task.dat
Submit file
Filepath C:\Users\test22\AppData\Roaming\017BD04F-B3BF-45B6-8167-9E8F41FF87BF\task.dat
Size 42.0B
Processes 872 (afo.exe)
Type ASCII text, with no line terminators
MD5 f0e2a1e740520b6464f12b1a6183e3bd
SHA1 0cc90ca37a1427ba915be0a31d33ddbb60dde963
SHA256 cd46b87b88e5e4a6bca8a2b664a2b7979e7983556600a3eb755373379c50c844
CRC32 8F4B069B
ssdeep 3:oNmWxpcL4E2J5xAI+KL4An:oNmQpcLJ23f6An
Yara None matched
VirusTotal Search for analysis