Dropped Files | ZeroBOX
Name b90ae15ac5119b8e_hymzwe.url
Submit file
Filepath C:\Users\Public\hymzwE.url
Size 75.0B
Processes 2364 (vbc.exe)
Type MS Windows 95 Internet shortcut text (URL=<file:"C:\\Users\\Public\\Ewzmyh.exe">), ASCII text, with CRLF line terminators
MD5 67ea8d8f67cca6e31ce59d559a295e7b
SHA1 fd09d2d8996d3934605b93416dd89f47438d1eeb
SHA256 b90ae15ac5119b8e741de8549cef68e4410746dee2ecf1ee36932274126d20af
CRC32 ECD4C3E1
ssdeep 3:HRAbABGQYmTWAX+rSF55pNLNSsGKd4ovn:HRYFVmTWDypOsblvn
Yara None matched
VirusTotal Search for analysis
Name 602b818b816dd421_ewzmyh.exe
Submit file
Filepath C:\Users\Public\Ewzmyh.exe
Size 973.0KB
Processes 2364 (vbc.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 43c4f31951dfaa67b56f438bc1454522
SHA1 dbaf2ed921ee87980fc7c9a4493aa4543cc5beb0
SHA256 602b818b816dd421212e56f00c0f6ac807e1f01497601fcd49e1e081b8fdcb24
CRC32 96D2FE91
ssdeep 12288:fDug7DeIhyEzPsO4z+oxMOQWHphA3hHx8rkRZQ9XYBk9NAOe6k1+hO/O5N8DoQTh:rt7JhyEz0O4z+OQK79HHQT2ODA
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • Malicious_Library_Zero - Malicious_Library
  • UPX_Zero - UPX packed file
VirusTotal Search for analysis