Dropped Files | ZeroBOX
Name c8416bb988b0d0c0_qlmeduljskn.d
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\qlmeduljskn.d
Size 274.0KB
Processes 2572 (shenaka.exe)
Type data
MD5 a34154dfc54f18f556d222ffea3e6979
SHA1 c5804b7040197cf37d8f150b5912d37f5a6d5e92
SHA256 c8416bb988b0d0c0ebcefd1d35f9eb039b8ee62561395cdb4fdbe8799f567d40
CRC32 64E91BDC
ssdeep 6144:uh95Iz0tpEyafVtVfc7Riss6zP9V2RthE6xvURoYswOhkyvgu:uhsbVvc7RiUV27/JZlkyvn
Yara None matched
VirusTotal Search for analysis
Name c313cc09b8519644_xnalmjcb.vy
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\xnalmjcb.vy
Size 5.8KB
Processes 2572 (shenaka.exe)
Type data
MD5 9f95b45bb7f5a41cfa3b6bccd0564c0a
SHA1 48fbe063f93ea5396d0963d554e95f1805ad6495
SHA256 c313cc09b85196446f81d4288324a46f076f70da912974d2a5102ab996c76716
CRC32 BD14D050
ssdeep 96:Z5WqoxBtyyg2yaRn+YWxUClxfdowJP+IeLmKLm6CJTtP9daMJ5p:ZbDkfRnTW2SfBJP+IJZaMHp
Yara None matched
VirusTotal Search for analysis
Name e3b0c44298fc1c14_nssEF90.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nssEF90.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 8e9829db786fd4dd_nsbttacwzy.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nsbttacwzy.exe
Size 13.5KB
Processes 2572 (shenaka.exe)
Type PE32 executable (console) Intel 80386, for MS Windows
MD5 df65d294fe3ca49efc95270878be44d7
SHA1 3a5979a9f64f1293255c57c314528d51653be28f
SHA256 8e9829db786fd4dd410be1a1caab3a69c7323057bacae66431c9136ef74d8c99
CRC32 F39EB8BD
ssdeep 192:enssIfbw0nMyyJK9wqZeJaOMzXlPPOoynJ+LvRJRTlU7b0ZRl55y0ryMZ:esfbLpyJKXegOMzVXOQKMk0ry
Yara
  • IsPE32 - (no description)
  • PE_Header_Zero - PE File Signature
VirusTotal Search for analysis