Dropped Files | ZeroBOX
Name 76296ca80ceb9d2d_sharefont.ini
Submit file
Filepath C:\Users\test22\AppData\Roaming\HNC\User\Common\80\Fonts\ShareFont.ini
Size 183.0B
Processes 2552 (Hwp.exe)
Type ASCII text, with CRLF line terminators
MD5 34766d17d04c24aaa62124eae6b5bac4
SHA1 984e092e32fe8f7bd340a7799541c2600d96a4fb
SHA256 76296ca80ceb9d2db0b4ed08ba1b060c92a75805d71978c30dd33b87bd698b6e
CRC32 E0E924A3
ssdeep 3:5xxovKdVo6LR5nE9Aj4I5tLGoW+QRX7AMWRUrNmWxpcL4EaKC5YoH1KLDTjEcKl0:5RVogR5nEk55GoW+QWMWRKNmQpcLJaZg
Yara None matched
VirusTotal Search for analysis
Name c044464362ca04aa_94f6d162d47da132_워싱턴선언, 북핵 위협 대응에 얼마나 도움이 될까.hwp.lnk
Submit file
Size 1.3KB
Type MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Archive, ctime=Mon Sep 26 19:48:00 2022, mtime=Mon Sep 26 19:48:00 2022, atime=Mon Sep 26 19:48:00 2022, length=58880, window=hide
MD5 7324dcd4f5386bd5467f562ee7a849b0
SHA1 bc67204ea091a537d978df12a2e257973cae7a94
SHA256 c044464362ca04aa4778440fc8a5182bd1065fdd537db0c1c87ca7793fd513aa
CRC32 FD293580
ssdeep 12:8O6R4cZCrR8EvSWMlR+/KGUrQPtjjSUOjz8wCOLMpc/Q1LSUOjz8B1LSUOjz8QwG:8gsERdglR1QlnOGRl5OE5OP6PyoiliK
Yara
  • Lnk_Format_Zero - LNK Format
VirusTotal Search for analysis
Name 0771b95c54006093_normal80.hwt
Submit file
Filepath C:\Users\test22\AppData\Roaming\HNC\User\Shared80\HwpTemplate\Doc\ENU\Normal80.hwt
Size 14.5KB
Processes 2552 (Hwp.exe)
Type Hangul (Korean) Word Processor File 5.x
MD5 bfe569dbee47f5bb41f91e83de5b6c40
SHA1 299509b6c808074026d938884f5ff01914c28aa1
SHA256 0771b95c540060936dd22571145e86141021dfc869b78f1eeef86fde228463c9
CRC32 AD69E2DD
ssdeep 96:Hr6MSQ0gWep/GtbBKYDoylxrvKLNYSjKQMgWSpEtbBKYDoylxrj:Hr6MSdepgBomxUpjKlSpaBomx3
Yara
  • HWP_file_format - HWP Document File
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name b5b9d92fba613ca7_temp.folder.lnk
Submit file
Filepath C:\Users\test22\AppData\Roaming\HNC\Office\Recent\Temp.folder.lnk
Size 823.0B
Processes 2552 (Hwp.exe)
Type MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Directory, ctime=Wed Jan 31 20:32:29 2018, mtime=Tue May 9 19:57:39 2023, atime=Tue May 9 19:57:39 2023, length=65536, window=hide
MD5 edcf543876706e8d370b4fbb2cdc8ab0
SHA1 addc78753f1576d5c12e470df575998cc35f6ab2
SHA256 b5b9d92fba613ca76783a3297682e577fece67053a7c8c25b3558d7fa17d8f6b
CRC32 ED6733AE
ssdeep 12:8pZjOsh64cZCrR8EvSWMlR+/KG8izCCOLMa1Swua4t2YLEPKzlX8ydhN:8pZjLsERdglRwzNRak6Pyx
Yara
  • Lnk_Format_Zero - LNK Format
VirusTotal Search for analysis