Dropped Files | ZeroBOX
Name b3d510ef04275ca8_holderwb.txt
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\holderwb.txt
Size 2.0B
Processes 584 (vbc.exe) 2936 (6789568764240821.exe)
Type Little-endian UTF-16 Unicode text, with no line terminators
MD5 f3b25701fe362ec84616a93a45ce9998
SHA1 d62636d8caec13f04e28442a0a6fa1afeb024bbb
SHA256 b3d510ef04275ca8e698e5b3cbb0ece3949ef9252f0cdc839e9ee347409a2209
CRC32 88F83096
ssdeep 3:Qn:Qn
Yara None matched
VirusTotal Search for analysis
Name a93706e865c271f4_pid.txt
Submit file
Filepath C:\Users\test22\AppData\Roaming\pid.txt
Size 4.0B
Processes 2936 (6789568764240821.exe)
Type ASCII text, with no line terminators
MD5 ec7f346604f518906d35ef0492709f78
SHA1 7bb1cb9865c151582d401104cdac51bd140734b2
SHA256 a93706e865c271f4741a4a5583981818a6697fc88c0b2f15d8781c10eb21e431
CRC32 6B0DC180
ssdeep 3:Dn:Dn
Yara None matched
VirusTotal Search for analysis
Name e3b0c44298fc1c14_holdermail.txt
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\holdermail.txt
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name cb8aad9cb7cd20a7_pidloc.txt
Submit file
Filepath C:\Users\test22\AppData\Roaming\pidloc.txt
Size 55.0B
Processes 2936 (6789568764240821.exe)
Type ASCII text, with no line terminators
MD5 a91937deffab793753d75074f3fa70d3
SHA1 f8cdc5bc982fa0b59df63bb6d5d554fba1bcb10d
SHA256 cb8aad9cb7cd20a716285fee00cd0f8d0ed6825099fbeeefb8112d9232624358
CRC32 68B08190
ssdeep 3:oNmWxpcL4E2J5xAILdiAC:oNmQpcLJ23fL0AC
Yara None matched
VirusTotal Search for analysis