Dropped Files | ZeroBOX
Name 83b7dd8d15eb80f0_vortex-fkv.jpg
Submit file
Filepath C:\Users\test22\AppData\Roaming\0-[KR]-175.208.134.150\Vortex-FKV.jpg
Size 46.4KB
Processes 2216 (0GTTI98V0N.exe)
Type JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 1024x768, frames 3
MD5 78951af78cb69fb8d69c4b26bce29fcd
SHA1 2f30fba4849e4486722550b42c18f8ea64b4a95c
SHA256 83b7dd8d15eb80f0ceecfd09a487983309d0b7cb2483dea0f3289aba6c76172f
CRC32 682E6DC6
ssdeep 768:0v5GTObnNEF3n2ZK47EvKvEyjHVcvvd5jMUYYY9L8x7jvX:0v5GT4NEF3S4vyHIvdmUYYY9Qb
Yara
  • JPEG_Format_Zero - JPEG Format
VirusTotal Search for analysis
Name d1603376512bc8af_information.txt
Submit file
Filepath C:\Users\test22\AppData\Roaming\0-[KR]-175.208.134.150\Information.txt
Size 203.0B
Processes 2216 (0GTTI98V0N.exe)
Type UTF-8 Unicode text, with CRLF line terminators
MD5 3747ff5226611c9f98917ed8f7534c3a
SHA1 42cde38bacdb6333bf1bb68e884b996471c79174
SHA256 d1603376512bc8af5be662e21f40863dcca0f5f23e728724c0f7f0d1ed0640b0
CRC32 F1493337
ssdeep 3:jT5yvRzFCvVrQPfwNPhJoEgfE+hbNNu0OCE6E7NVCAJLHko4aS1ko0H/w3tmWxi:H5YzyphJZ5qNNu0t47LCoBS6o0o3Ri
Yara None matched
VirusTotal Search for analysis
Name 6f878c485ee7d776_tmp6549.tmp.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\tmp6549.tmp.dat
Size 120.0KB
Type SQLite 3.x database, last written using SQLite version 3021000
MD5 7cd1f915719aa3f01dcb5d1d04018ba0
SHA1 6e50a73815aae25bd6295d7240d517f0758b94be
SHA256 6f878c485ee7d776face2b6f0f72d6b2b383041ce5abd23ee5948d987afa9c64
CRC32 AA763EF2
ssdeep 48:T1HW6tdfxNPp+suktLReRK+NaUvdWSZ00LTL0drQHHp7C5fVcS2+VANUXq6uw5Nb:DJQpWSZ00LTL0QCbc0VANPjwQU+
Yara None matched
VirusTotal Search for analysis
Name 024412429b0853bb_img.png
Submit file
Filepath C:\Users\test22\AppData\Roaming\0-[KR]-175.208.134.150\img.png
Size 21.9KB
Processes 2216 (0GTTI98V0N.exe)
Type PNG image data, 600 x 200, 8-bit/color RGBA, non-interlaced
MD5 c9366943146eea5ae19176d23a427128
SHA1 d0aa418c779972c369657708b08f8f667247eb6f
SHA256 024412429b0853bb59c23a80934dee4a157db470d08b648df4479733dcba167a
CRC32 9BE1F9DA
ssdeep 384:cLtP5UVyd+OUIJZX8On/DIaZtwgwx4fteTDdrKwarmv3:cJxWyQSZXBrlDwj25bmv3
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name da6ee1aadb57230a_aboutpc.txt
Submit file
Filepath C:\Users\test22\AppData\Roaming\0-[KR]-175.208.134.150\AboutPC.txt
Size 342.0B
Processes 2216 (0GTTI98V0N.exe)
Type UTF-8 Unicode text
MD5 a3684c2d07d5d358c48fec0765cb2790
SHA1 34be20bd12901acaf6419de2c80b8c805ab4f3cc
SHA256 da6ee1aadb57230ab8cabd0e423f7f63b2f7def454a7e5ae17a1fbb6685712a3
CRC32 4B87C7A9
ssdeep 6:eFKnQCvfhT/PQJX3GO0QQTeeo72PmLk/XifNI9Yah:eEnQYfhT/Pub0QQTeFQ/V91
Yara None matched
VirusTotal Search for analysis
Name 38c389720b75365f_tmp60F0.tmp.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\tmp60F0.tmp.dat
Size 72.0KB
Type SQLite 3.x database, last written using SQLite version 3021000
MD5 c480140ee3c5758b968b69749145128d
SHA1 035a0656bc0d1d376dfc92f75fa664bdf71b3e4d
SHA256 38c389720b75365fcb080b40f7fdc5dc4587f4c264ec4e12a22030d15709e4a9
CRC32 954A724F
ssdeep 96:f0CWo3dOEctAYyY9MsH738Hsa/NTIdE8uKIaPdUDFBlrrVY/qBOnx4yWTJereWbY:fXtd69TYndTJMb3j0
Yara None matched
VirusTotal Search for analysis
Name 407402450ce58279_Vortex.jpg
Submit file
Filepath C:\Users\test22\AppData\Roaming\0-[KR]-175.208.134.150\Vortex.jpg
Size 50.7KB
Processes 2216 (0GTTI98V0N.exe)
Type JPEG image data, JFIF standard 1.01, resolution (DPI), density 96x96, segment length 16, baseline, precision 8, 1024x768, frames 3
MD5 617bb9e1bc0f4fd08305ec24e9b131f2
SHA1 47847ff2bc345404c0c5f1c16608ef1339160049
SHA256 407402450ce58279bd86d0cd86dcd6d80ee8e232b911376afe1b6f497c9dc821
CRC32 E8CABC11
ssdeep 768:iLfOVxDOUbrsejQxWphT33PpsAO/UUUeVOuw9FAK5xd+zV6drd0pQ5:iLfyxDO6rsIphTnPyASi9FJTdQVc75
Yara
  • JPEG_Format_Zero - JPEG Format
VirusTotal Search for analysis
Name 6ec867dc1caa77ec_tmp6324.tmp.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\tmp6324.tmp.dat
Size 18.0KB
Type SQLite 3.x database, last written using SQLite version 3021000
MD5 f3a100cba30b2a07a7af8886e439024e
SHA1 a454cca0db028b4d0fb29fa932c9056519efe2cf
SHA256 6ec867dc1caa77ecfd8e457d464b6bebc3be8694b4c88734fa83d197c0b214cc
CRC32 72CF6AF8
ssdeep 24:LLI10KL7G0TMJHUyyJtmCm0XKY6lOKQAE9V8MffD4fOzeCmly6Uwc6KaW:oz+JH3yJUheCVE9V8MX0PFlNU1faW
Yara None matched
VirusTotal Search for analysis
Name 3b046d30dc2e6021_tmp642E.tmp.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\tmp642E.tmp.dat
Size 36.0KB
Type SQLite 3.x database, last written using SQLite version 3021000
MD5 e185515780e9dcb21c3262899c206308
SHA1 230714474693919d93949ab5a291f7ec02fd286f
SHA256 3b046d30dc2e6021be55d1bd47c2a92970856526c021df5de6e4ea3c4144659b
CRC32 25EF2A64
ssdeep 24:TLNg/5UcJOyTGVZTPaFpEvg3obNmCFk6Uwcc85fBvlllYu:TC/ecVTgPOpEveoJZFrU1cQBvlllY
Yara None matched
VirusTotal Search for analysis