Dropped Files | ZeroBOX
Name 3f883f6fedebb0a8_task.dat
Submit file
Filepath C:\Users\test22\AppData\Roaming\017BD04F-B3BF-45B6-8167-9E8F41FF87BF\task.dat
Size 42.0B
Processes 3056 (EDG.exe)
Type ASCII text, with no line terminators
MD5 ba5cddd20ad3165d26c2fae2689ea048
SHA1 6bf3789e94689c3c9da18eb483836ff1bd067795
SHA256 3f883f6fedebb0a8fdf47902ccfb7341c90d2101cde2d5f389457b2dd59735ee
CRC32 0F6CDBEC
ssdeep 3:oNmWxpcL4E2J5xAIHL4A:oNmQpcLJ23fEA
Yara None matched
VirusTotal Search for analysis
Name 5cbaf644e12a87c4_run.dat
Submit file
Filepath C:\Users\test22\AppData\Roaming\017BD04F-B3BF-45B6-8167-9E8F41FF87BF\run.dat
Size 8.0B
Processes 3056 (EDG.exe)
Type data
MD5 d9752cd3c5d1b01d30accbb407f24aa8
SHA1 6ff004bb69e37c8c2a7d5ef39f59d7bb6a8b13bd
SHA256 5cbaf644e12a87c452ba2f84b4e30ea1b6447cdcdd8a072987aeacf710dfde64
CRC32 5B416203
ssdeep 3:Pv8:c
Yara None matched
VirusTotal Search for analysis
Name ad66a9ae0d3178c7_tmp85F4.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\tmp85F4.tmp
Size 1.3KB
Processes 3056 (EDG.exe)
Type XML 1.0 document, ASCII text, with CRLF line terminators
MD5 79b57833948bc78e634cc24fcb47ec37
SHA1 96590b8f608631cb8e83cbe8eac33bb1de713a52
SHA256 ad66a9ae0d3178c7f8f853c624584b7a11d4519f6a95247bd72f33bfdb06efb4
CRC32 3A28BCEE
ssdeep 24:2dH4+S/4oL600QlMhEMjn5pwjVLUYODOLG9RJh7h8gK0ZNxtn:cbk4oL600QydbQxIYODOLedq3YNj
Yara None matched
VirusTotal Search for analysis
Name f8098a6290118f29_settings.bin
Submit file
Filepath C:\Users\test22\AppData\Roaming\017BD04F-B3BF-45B6-8167-9E8F41FF87BF\settings.bin
Size 40.0B
Processes 3056 (EDG.exe)
Type data
MD5 4e5e92e2369688041cc82ef9650eded2
SHA1 15e44f2f3194ee232b44e9684163b6f66472c862
SHA256 f8098a6290118f2944b9e7c842bd014377d45844379f863b00d54515a8a64b48
CRC32 C6B6460B
ssdeep 3:9bzY6oRDT6P2bfVn1:RzWDT621
Yara None matched
VirusTotal Search for analysis
Name 5eacf2974c9bb2c2_storage.dat
Submit file
Filepath C:\Users\test22\AppData\Roaming\017BD04F-B3BF-45B6-8167-9E8F41FF87BF\storage.dat
Size 416.8KB
Processes 3056 (EDG.exe)
Type data
MD5 963d5e2c9c0008dff05518b47c367a7f
SHA1 c183d601fabbc9ac8fbfa0a0937decc677535e74
SHA256 5eacf2974c9bb2c2e24cdc651c4840dd6f4b76a98f0e85e90279f1dbb2e6f3c0
CRC32 D1596006
ssdeep 12288:zKf137EiDsTjevgA4p0V7njXuWSvdVU7V4OC0Rr:+134i2lp67i5d8+OCg
Yara None matched
VirusTotal Search for analysis
Name bb9181b3935b8681_tmp87E9.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\tmp87E9.tmp
Size 1.3KB
Processes 3056 (EDG.exe)
Type XML 1.0 document, ASCII text, with CRLF line terminators
MD5 be81f72fa4dbc827132836ee2af92c96
SHA1 fe5ded04ab4932dea6cf414e9e4428f43da70d03
SHA256 bb9181b3935b8681a71b578f8166883e61380de6181df82d05f14829323fbf0f
CRC32 7AA438E3
ssdeep 24:2dH4+S/4oL600QlMhEMjn5pwjVLUYODOLG9RJh7h8gK0Rb5xtn:cbk4oL600QydbQxIYODOLedq3Sb5j
Yara None matched
VirusTotal Search for analysis
Name 5347661365e7ad2c_catalog.dat
Submit file
Filepath C:\Users\test22\AppData\Roaming\017BD04F-B3BF-45B6-8167-9E8F41FF87BF\catalog.dat
Size 232.0B
Processes 3056 (EDG.exe)
Type data
MD5 32d0aae13696ff7f8af33b2d22451028
SHA1 ef80c4e0db2ae8ef288027c9d3518e6950b583a4
SHA256 5347661365e7ad2c1acc27ab0d150ffa097d9246bb3626fca06989e976e8dd29
CRC32 36FCB1A3
ssdeep 6:X4LDAnybgCFcpJSQwP4d7ZrqJgTFwoaw+9XU4:X4LEnybgCFCtvd7ZrCgpwoaw+Z9
Yara None matched
VirusTotal Search for analysis