Dropped Files | ZeroBOX
Name 0de325ddc8ad00b8_run.dat
Submit file
Filepath C:\Users\test22\AppData\Roaming\017BD04F-B3BF-45B6-8167-9E8F41FF87BF\run.dat
Size 8.0B
Processes 2404 (RegSvcs.exe)
Type Non-ISO extended-ASCII text, with no line terminators
MD5 01ad8a76d6a78131b92225679a484cc1
SHA1 1fef0faba525f3f98c4edaf810d3fa5203e98740
SHA256 0de325ddc8ad00b841d869bf73b30d5f2f7521eff0896269f7adb75ebeb2d3df
CRC32 71F451C6
ssdeep 3:8Tn8:8w
Yara None matched
VirusTotal Search for analysis
Name f8098a6290118f29_settings.bin
Submit file
Filepath C:\Users\test22\AppData\Roaming\017BD04F-B3BF-45B6-8167-9E8F41FF87BF\settings.bin
Size 40.0B
Processes 2404 (RegSvcs.exe)
Type data
MD5 4e5e92e2369688041cc82ef9650eded2
SHA1 15e44f2f3194ee232b44e9684163b6f66472c862
SHA256 f8098a6290118f2944b9e7c842bd014377d45844379f863b00d54515a8a64b48
CRC32 C6B6460B
ssdeep 3:9bzY6oRDT6P2bfVn1:RzWDT621
Yara None matched
VirusTotal Search for analysis
Name 0cbef4cf3a8c9e7b_tmpFE00.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\tmpFE00.tmp
Size 1.6KB
Processes 2236 (file.exe)
Type XML 1.0 document, ASCII text, with CRLF line terminators
MD5 aa39c629cc7aa591a4f24824aee1ea95
SHA1 32589376dd243c37a98d1e2d0f5ba6f9216a09aa
SHA256 0cbef4cf3a8c9e7b97d040e635de2d8d6ff232b3e584281b439b3ec895505a21
CRC32 0FECC32E
ssdeep 24:2dH4+SEqCH/7IlNMFQ/rlMhEMjnGpwjpIgUYODOLD9RJh7h8gKBStn:cbhf7IlNQQ/rydbz9I3YODOLNdq3y
Yara None matched
VirusTotal Search for analysis
Name 4cfa0e50d93a65c8_catalog.dat
Submit file
Filepath C:\Users\test22\AppData\Roaming\017BD04F-B3BF-45B6-8167-9E8F41FF87BF\catalog.dat
Size 216.0B
Processes 2404 (RegSvcs.exe)
Type data
MD5 0fa1be38a5a8d2a56f48982c3e9142a6
SHA1 28e5b087e687e57d4ab6db352a493aa5657c8484
SHA256 4cfa0e50d93a65c81b5cf800f4970e7ad0f7324e0220d1ee91b27d0c0f289493
CRC32 09178904
ssdeep 6:X4LDAnybgCFgwOp7Lr8gVyTwvMV84Miuk:X4LEnybgCF7wHJyCe8Oh
Yara None matched
VirusTotal Search for analysis