Dropped Files | ZeroBOX
Name bebd3a1892b6b3b7_run.dat
Submit file
Filepath C:\Users\test22\AppData\Roaming\017BD04F-B3BF-45B6-8167-9E8F41FF87BF\run.dat
Size 8.0B
Processes 2388 (nf.exe)
Type data
MD5 6b7a492cbe51cbdd7ca2f265b14519dd
SHA1 02ad4a0fe72cf6ad2da42f5140136e41dc115f1c
SHA256 bebd3a1892b6b3b7369a1d93f7bbc0f7ab17153c1b731d19d36a4871f9ed5f26
CRC32 9331FB60
ssdeep 3:jVr8t:pr8
Yara None matched
VirusTotal Search for analysis
Name 30138e00cc9a7990_nhaenbujw.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nss5FDD.tmp\nhaenbujw.dll
Size 20.5KB
Processes 1868 (nf.exe)
Type PE32 executable (DLL) (console) Intel 80386, for MS Windows
MD5 3cec90abcc877796644394a6feff2471
SHA1 c065767f710cdead42ec081aa5e1d71ee529c77e
SHA256 30138e00cc9a7990460be03c031b30c6fb58fb1ffb8c26157da73ebcc5d27496
CRC32 1C22D467
ssdeep 192:+OlQoHCbYl6RMoi36LkqgOg68OGuJ1/lH68zd1Khwb5wI5vY2tQmEMwmbKwE0a5z:PCbQzgLkYgbnAdF1Mw0wfKY+R8PdMp3
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • IsDLL - (no description)
VirusTotal Search for analysis
Name e3b0c44298fc1c14_nsm5FBC.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nsm5FBC.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 939e6e3ddc1a9b34_a8vt9a350w
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\a8vt9a350w
Size 272.0KB
Processes 1868 (nf.exe)
Type data
MD5 10e2546c310119c0558eb88a84b5fbdd
SHA1 873dc4a21ae9e4b79cf76bf008f654173a011fe9
SHA256 939e6e3ddc1a9b3483fec5f1814f77dfb7f59eb93ecaa404b5243f059e66e669
CRC32 C8F87E7A
ssdeep 6144:oJDIzfwVktUxwSUhfqY5Ydx9XmlD84Sat7AscisHHImWY:oJUj6YmUhf9YdxxQ44R7rqd
Yara None matched
VirusTotal Search for analysis