Dropped Files | ZeroBOX
Name 2fe5d07fedf3adde_bowsakkdestx.txt
Submit file
Filepath C:\Users\test22\AppData\Local\bowsakkdestx.txt
Size 558.0B
Processes 2420 (build.exe)
Type ASCII text, with very long lines, with no line terminators
MD5 f540f2a7b1b018934b78e4a476a367a6
SHA1 ee21edc93349af9482ab6b40b83e15fc97e5cb24
SHA256 2fe5d07fedf3adde7e642ae32a6b1ba9edadc93a038f39f4c8937435b52c9786
CRC32 96611F78
ssdeep 12:YGJ68q+V2BJYS1S1OXeFNVHgnBoknQOX/WQV691s5DdBFUTn:YgJq+Q3SEYVHEu3OX/Wl1sxxIn
Yara None matched
VirusTotal Search for analysis
Name 6f032f671284b381_build3.exe
Submit file
Filepath C:\Users\test22\AppData\Local\acb649b3-dd0c-45ef-9056-9ce20693173f\build3.exe
Size 335.0KB
Processes 2420 (build.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 0fea771099e342facd95a9d659548919
SHA1 9f8b56a37870f8b4ac5aa0ff5677a666f94c7197
SHA256 6f032f671284b3812373e90b0ab5b16ea737bd7dc87d22b8f2aabe558334e403
CRC32 947BABA5
ssdeep 6144:c2lWU/7qVQ5k6ykD5+nuMYCO/A27OIh5aGU5+QZJOR/A:vWUTdLykDsrYv/A2rhDcJO
Yara
  • PE_Header_Zero - PE File Signature
  • OS_Processor_Check_Zero - OS Processor Check
  • Malicious_Library_Zero - Malicious_Library
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 5fa1a955041d182b_personalid.txt
Submit file
Filepath C:\SystemID\PersonalID.txt
Size 42.0B
Processes 2420 (build.exe)
Type ASCII text, with CRLF line terminators
MD5 98d3bd5dd8521080f153fcff944dd60c
SHA1 181d6994461dfd2f0d439f78a2b609addb22ab37
SHA256 5fa1a955041d182b57bcea733471cc657140f74741af5eda45cc27569fb29ca2
CRC32 662D709F
ssdeep 3:Ap+sU1VAkYV2UTCKb:XdAkFUl
Yara None matched
VirusTotal Search for analysis
Name 33d15dacd2b49515_build2.exe
Submit file
Filepath C:\Users\test22\AppData\Local\acb649b3-dd0c-45ef-9056-9ce20693173f\build2.exe
Size 711.5KB
Processes 2420 (build.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 7c48019f424bbd08de9d0c7d66e0ea7c
SHA1 1394ad4f1fd9a7109e179695d4b404eaca70fa88
SHA256 33d15dacd2b4951517f39aa2e12afa747ddc5785b0ef3c2d78c3db16cae97d7c
CRC32 FA0F1C2D
ssdeep 12288:cncY5ozinnbUiFGMWR9wWmrJdLI05xzFlcNQyVp9uGjOL6N3nd:QozYbhW5mrzk05xzFlcRjuzc3d
Yara
  • PE_Header_Zero - PE File Signature
  • OS_Processor_Check_Zero - OS Processor Check
  • Malicious_Library_Zero - Malicious_Library
  • IsPE32 - (no description)
VirusTotal Search for analysis