Dropped Files | ZeroBOX
Name b3d510ef04275ca8_holderwb.txt
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\holderwb.txt
Size 2.0B
Processes 1556 (vbc.exe) 2716 (InstallUtil.exe)
Type Little-endian UTF-16 Unicode text, with no line terminators
MD5 f3b25701fe362ec84616a93a45ce9998
SHA1 d62636d8caec13f04e28442a0a6fa1afeb024bbb
SHA256 b3d510ef04275ca8e698e5b3cbb0ece3949ef9252f0cdc839e9ee347409a2209
CRC32 88F83096
ssdeep 3:Qn:Qn
Yara None matched
VirusTotal Search for analysis
Name e3b0c44298fc1c14_holdermail.txt
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\holdermail.txt
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name c492babfd9a1e676_pidloc.txt
Submit file
Filepath C:\Users\test22\AppData\Roaming\pidloc.txt
Size 50.0B
Processes 2716 (InstallUtil.exe)
Type ASCII text, with no line terminators
MD5 a891b64e388cfff7d0f64c25bb06897f
SHA1 768afb095e85c1bbf7a250ebcbcd2283dfbeff2f
SHA256 c492babfd9a1e6767e001e936206c55f5f7952d3cefd603e171277856dbbee33
CRC32 3EFD409B
ssdeep 3:oNmWxpcL4E2J5xAIOWRxRI0dAn:oNmQpcLJ23f5RndA
Yara None matched
VirusTotal Search for analysis
Name cc9cf5d8f89bae4a_pid.txt
Submit file
Filepath C:\Users\test22\AppData\Roaming\pid.txt
Size 4.0B
Processes 2716 (InstallUtil.exe)
Type ASCII text, with no line terminators
MD5 cdd96eedd7f695f4d61802f8105ba2b0
SHA1 35e7cf0540f95620e0021660828f96c7ea51a5f9
SHA256 cc9cf5d8f89bae4aff9b2a1f98bc8c5a9b380be95caf7136286adafc8bd75f5f
CRC32 53A58E08
ssdeep 3:D:D
Yara None matched
VirusTotal Search for analysis