Dropped Files | ZeroBOX
Name e3b0c44298fc1c14_nse79DC.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nse79DC.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 6b86b273ff34fce1_6D6F4D.lck
Submit file
Filepath C:\Users\test22\AppData\Roaming\41D896\6D6F4D.lck
Size 1.0B
Processes 2140 (domandols.exe)
Type very short file (no magic)
MD5 c4ca4238a0b923820dcc509a6f75849b
SHA1 356a192b7913b04c54574d18c28d46e6395428ab
SHA256 6b86b273ff34fce19d6b804eff5a3f5747ada4eaa22f1d49c01e52ddb7875b4b
CRC32 83DCEFB7
ssdeep 3:U:U
Yara None matched
VirusTotal Search for analysis
Name 05462096c025bc83_6d6f4d.hdb
Submit file
Filepath C:\Users\test22\AppData\Roaming\41D896\6D6F4D.hdb
Size 4.0B
Processes 2140 (domandols.exe)
Type data
MD5 177de09fbe150964907259be20020205
SHA1 f94fb2c7649b2625a60588197da581c6db86be57
SHA256 05462096c025bc83af4625090059846a13be93e55af5169a589c920c4dfa3416
CRC32 63AEB4D5
ssdeep 3:7N:B
Yara None matched
VirusTotal Search for analysis
Name d688c41f1538a3fc_dk8zkjwxzjgvz3
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\dk8zkjwxzjgvz3
Size 213.6KB
Processes 2472 (domandols.exe)
Type data
MD5 74b412fecf0bed01f4b05f8108cc2b0f
SHA1 6c57d147dd6587e93b5e62a12be605a0d5421a64
SHA256 d688c41f1538a3fcb9b180a51a31d53686c44a1e7110b9b36a632d26a9dfeecf
CRC32 B2B5FC24
ssdeep 6144:lDAGXAnDIzospxJM9SN6XUrlCsA51HoMshJrJYxBGP3m:mfDIzrxaYN6X24HobrKxg+
Yara None matched
VirusTotal Search for analysis
Name 9d244ce232bd2b5d_zhtgjntp.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nsz7A0C.tmp\zhtgjntp.dll
Size 16.0KB
Processes 2472 (domandols.exe)
Type PE32 executable (DLL) (console) Intel 80386, for MS Windows
MD5 df9eddd593ed61a110b37c5611c7ff0b
SHA1 9fc7bca474335a58e1f41706e86b3fff94a9241a
SHA256 9d244ce232bd2b5d26c9ce094fed10396725688393046ff812a9df1fe420a5af
CRC32 E822BBCD
ssdeep 384:/2owqtZzLxnp/YcUL0znQz4op5RQkWLYAnVRw:+oFtZLhplUL0rDcRQk
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
VirusTotal Search for analysis