Dropped Files | ZeroBOX
Name 22965fb759aca78f_lciuqplau.o
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\lciuqplau.o
Size 6.0KB
Processes 2552 (vbc.exe)
Type data
MD5 3fc6f6ede14704a50e8367a31e5a02d5
SHA1 c980ec789805480d8d545c10511fe898a6028a8f
SHA256 22965fb759aca78f415182b622eac506e0c73e58a21434545b0f762c8ad149e4
CRC32 DC7DF3E4
ssdeep 192:FarcRj3WhX1S9Zvl/dgQ+Ixfg/1c6mSBQiF:5mK99wQ+IxfzWZ
Yara None matched
VirusTotal Search for analysis
Name d4fc73d36f4fb419_zlyquzk.je
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\zlyquzk.je
Size 263.6KB
Processes 2552 (vbc.exe)
Type data
MD5 ac87b926b2349e26fcb2838221a7118e
SHA1 89ab1d5466b61051fafd2e93efc35a3ff9240e9e
SHA256 d4fc73d36f4fb419469f73fc3e35175c11390dc9da066308738282bb7f64f84f
CRC32 85325910
ssdeep 6144:kmknggTRzjWAZC/OQs47V/wqeqWgOReTBFibWsUP+aw6qV:pSTgMCWQsQg/RMB40+VhV
Yara None matched
VirusTotal Search for analysis
Name 86505df5bea11d77_aqadszv.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\aqadszv.exe
Size 59.5KB
Processes 2552 (vbc.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 b0811afe3898e88efed19e6f9c5ff383
SHA1 4813597d36e413b6743e48cfd2a4e0e48cd44bdc
SHA256 86505df5bea11d77e534e4bb24d2bb42be4456bd373afc5ba5dbf3532fb70611
CRC32 CAC7650D
ssdeep 768:4Rh6F3ytu3whIIcV0jaattabYK15ZEvK9e8gTBNKwWUMt8j0a9hBDm:4tu3whIc/6c5Mtq9hB
Yara
  • UPX_Zero - UPX packed file
  • Malicious_Library_Zero - Malicious_Library
  • OS_Processor_Check_Zero - OS Processor Check
  • IsPE32 - (no description)
  • PE_Header_Zero - PE File Signature
VirusTotal Search for analysis
Name e3b0c44298fc1c14_nsrEC73.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nsrEC73.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis