Dropped Files | ZeroBOX
Name 03c4f763814e6afc_zdbrx.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nsqF280.tmp\zdbrx.dll
Size 41.0KB
Processes 2580 (lsass.exe)
Type PE32 executable (DLL) (console) Intel 80386, for MS Windows
MD5 16415e3114b130b8dae30636158a937b
SHA1 a5b11d55110bf707b334cf0b40c2389b5fbdc4a3
SHA256 03c4f763814e6afc8a12413f0abf68c786175c769b5595d8951de24cecde58f8
CRC32 3F1A987E
ssdeep 768:zn09JsJNJ4PwonAUSFoxObYkjExb9NKoWRm2Ua6W+e:gJMNEwonlSQ5WmkN+e
Yara
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
  • IsDLL - (no description)
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 7f4683b2e65e86b6_epcrv.e
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\epcrv.e
Size 206.1KB
Processes 2580 (lsass.exe)
Type data
MD5 b1f365598b6ee7be4d58667acd7b4e8c
SHA1 4dd6e4e037df5f1274d5cc8037234382ebe61f5e
SHA256 7f4683b2e65e86b641afd5b3be3fdf1c33ec4f86001a0d7862f09697ff95a3ee
CRC32 2E3E2985
ssdeep 6144:mpIj62KFfGLElvKrewyprdETdsMGkwTsfLadOSJ:guLQv0e1pBhlTs23
Yara None matched
VirusTotal Search for analysis
Name e3b0c44298fc1c14_nskF210.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nskF210.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 1361122e268c2ff6_natixuezahb.q
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\natixuezahb.q
Size 5.8KB
Processes 2580 (lsass.exe)
Type data
MD5 ee69262a46c918ce7ea500edde44af18
SHA1 7f822ef87f3101204cfdf1f7bd73b262b54d3596
SHA256 1361122e268c2ff6b2b842afd89376f30d447b5afca2dad1da7194c2af77bcb3
CRC32 678D1285
ssdeep 96:8UfTtXiAlVO0a5nFiL+RwxaM8cTovFmdOTms0qbnmxZwBaAzJvO2HMESp4:tTtXiA3AS9wccgs0qbnmx2HMjp4
Yara None matched
VirusTotal Search for analysis