Dropped Files | ZeroBOX
Name 8e51858e37dd41b7_c5d8393293ce2ba62f117b2c2d55bc3e_017bd04f-b3bf-45b6-8167-9e8f41ff87bf
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-3832866432-4053218753-3017428901-1001\c5d8393293ce2ba62f117b2c2d55bc3e_017bd04f-b3bf-45b6-8167-9e8f41ff87bf
Size 1.4KB
Processes 1072 (None)
Type data
MD5 1b203593f4f5c721e299a512aa5a2fcb
SHA1 425e0504435d022de6433a040fc2dc581e1660f4
SHA256 8e51858e37dd41b75085502e58e0d573ef2a7e6bbb4e20b9c4e1309e24b0bd34
CRC32 CDE364FB
ssdeep 24:EtPRDylU1QOeejdPvJjL220RjKFOvDOMMPDpY6zZU1xShg:EtP5ylU1vRZPxuDtKFLP9dVU17
Yara
  • Trojan_Win32_Cutwail - Cutwail
VirusTotal Search for analysis
Name a2ce3a0fa7d2a833_e0f5c59f9fa661f6f4c50b87fef3a15a
Submit file
Filepath C:\Users\test22\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E0F5C59F9FA661F6F4C50B87FEF3A15A
Size 893.0B
Processes 2752 (svchost.exe)
Type data
MD5 d4ae187b4574036c2d76b6df8a8c1a30
SHA1 b06f409fa14bab33cbaf4a37811b8740b624d9e5
SHA256 a2ce3a0fa7d2a833d1801e01ec48e35b70d84f3467cc9f8fab370386e13879c7
CRC32 1C31685D
ssdeep 24:hBntmDvKUQQDvKUr7C5fpqp8gPvXHmXvponXux:3ntmD5QQD5XC5RqHHXmXvp++x
Yara None matched
VirusTotal Search for analysis
Name bea2651824b1a055_e0f5c59f9fa661f6f4c50b87fef3a15a
Submit file
Filepath C:\Users\test22\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E0F5C59F9FA661F6F4C50B87FEF3A15A
Size 252.0B
Processes 2752 (svchost.exe)
Type data
MD5 15183333c89f6af23b97c1d78fa24280
SHA1 1fb5d231896bd38632c4d4f15b24c6c321111553
SHA256 bea2651824b1a05541ecc19528e1745427e0da9cc848cf9096750b536cacc1c3
CRC32 17B7FB5F
ssdeep 3:kkFklkd9vfllXlE/Bi9llPlzRkwWBARLNDU+ZMlKlBkvclcMlVHblB15RNU2UPlN:kKzHWiZliBAIdQZV742MN
Yara None matched
VirusTotal Search for analysis