Dropped Files | ZeroBOX
Name e3b0c44298fc1c14_nsz6431.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nsz6431.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 42a878858e8ceb50_run.dat
Submit file
Filepath C:\Users\test22\AppData\Roaming\017BD04F-B3BF-45B6-8167-9E8F41FF87BF\run.dat
Size 8.0B
Processes 2252 (vbc.exe)
Type data
MD5 d4d7e0333d6a5bd43ec1a8980816b619
SHA1 02513adefef8133e2468890b253a982369978474
SHA256 42a878858e8ceb50d832067092d2b3dd48b5896874316c58604a7ed734983671
CRC32 EAFFDF02
ssdeep 3:ppn:ppn
Yara None matched
VirusTotal Search for analysis
Name 546b368cfe5f182e_nvxay.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nse6451.tmp\nvxay.dll
Size 17.5KB
Processes 2388 (vbc.exe)
Type PE32 executable (DLL) (console) Intel 80386, for MS Windows
MD5 d89abb008b3ad43710f474e0110bce10
SHA1 fd062c0e97ebf4d0dde7cde51b17fd95d82dccd2
SHA256 546b368cfe5f182ee6d7fc0a55539586134c71c4ae93b8dd980e38928fcdb6e4
CRC32 5A0CFD92
ssdeep 192:YP2r2FixGkpEuUJVWN+bAFTjAicYODvbhSS/BduziNDXn29k+HjxwQWQYb+316Uj:YP2PxzpHNZzOTlB/buzUXnMk+fQr
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name b9a13778c7ffe281_xun061rqredu2hn1f
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\xun061rqredu2hn1f
Size 272.0KB
Processes 2388 (vbc.exe)
Type data
MD5 dd4aa6296c08472761fa7e7b2d66f1b2
SHA1 c2fe2b7f766183f416df805420f0d0ac10afae06
SHA256 b9a13778c7ffe281f6350cbaaff0bac420e38c9d3bb0a1d6350b50f40323b11d
CRC32 CB31FB6E
ssdeep 6144:elCdrr2yJIuhLywKuT7CR+EF+BAwRKcLcLCycltF9WnWvkvf:NriuNfT7CgEEBoyOCLtTkvf
Yara None matched
VirusTotal Search for analysis