Dropped Files | ZeroBOX
Name c80092ebcd4f62b0_lnfdr.x
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\lnfdr.x
Size 7.5KB
Processes 1268 (contrem2.1.exe)
Type data
MD5 33a7472ed0b381860ff4adcd02eb750a
SHA1 88c75f57f025478163c55f54d5cd87181c990338
SHA256 c80092ebcd4f62b055961e131aca20cd1c59798b6b40545c19560bc159128df7
CRC32 9A4A09B9
ssdeep 192:darcitQvArWiPv8F2b9Nu4/CZnoIx7gn1cgmSBQiF:uCYrNPv8FYX6OIx7/wZ
Yara None matched
VirusTotal Search for analysis
Name e3b0c44298fc1c14_nsbBF05.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nsbBF05.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 37e040e667920eb0_mfzgtfkki.txd
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\mfzgtfkki.txd
Size 496.6KB
Processes 1268 (contrem2.1.exe)
Type data
MD5 19dcf5f2bf834ac9965ebff8a5b61653
SHA1 0c7ab919fb2baf0d0358c04c5b4af6685bedfdc7
SHA256 37e040e667920eb0fd9c46f15abb1a920e4a21f9c5ee702df60ebc4d772e4b55
CRC32 4780823B
ssdeep 12288:h6KzI93j5agn/17zm16ofyz3vuc8hRbyHYkh:h67aKVzoK2c8TKh
Yara None matched
VirusTotal Search for analysis
Name c7c8c0289c0d9a44_ajfo.exe
Submit file
Filepath C:\Users\test22\AppData\Roaming\mrbwgcluq\ajfo.exe
Size 85.0KB
Processes 2052 (fkfoiuttz.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 94d48df03ed7ae332cd9db6dd067e53d
SHA1 3219f686d4ab99bc8d8bbda247309c71b60496cc
SHA256 c7c8c0289c0d9a44f70c9347dbe9bf5207af98f051616238aa8c7b11cdd084b6
CRC32 03CA2AB2
ssdeep 1536:2uzc/CKEoEKALclXtaEPYdlMVpnrj7jrndyhgtoQYbEwNuofiSPdpsWzcdR5Tyh:2u6CKEoSYlXtamY8j7jrVtSfidRJyh
Yara
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
  • IsPE32 - (no description)
  • PE_Header_Zero - PE File Signature
  • Malicious_Library_Zero - Malicious_Library
VirusTotal Search for analysis