Dropped Files | ZeroBOX
Name e3b0c44298fc1c14_nswC186.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nswC186.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 0eacb3ecd29aa660_adnations.try
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Start Menu\Beslutningsdygtigt\sheafy\Svmmelappens\adnations.try
Size 1.3KB
Processes 1072 (jawazx.exe)
Type data
MD5 e72a9431aef302674fd2c42f4ea14629
SHA1 913f70198c59ed7e2f96b88e16117e01a443f32f
SHA256 0eacb3ecd29aa660124ae834f95b70fbae6c6569531e526cc745a6b23242f3cb
CRC32 14A5ECE7
ssdeep 24:s2mnUGDAGQGLiIOKQy7sQxcXWdYAMU9ilVQoRmRAz4Qt0QOSf5Vnar:knUhMtOKdhfWtU4lpz4W0pSR5ar
Yara None matched
VirusTotal Search for analysis
Name 9bb134c113b36247_kollektivaftale.vse
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Start Menu\Beslutningsdygtigt\sheafy\Genoptog\Skorstensfejermestrenes\Kollektivaftale.Vse
Size 264.7KB
Processes 1072 (jawazx.exe)
Type data
MD5 0500d85750ed7ba4378f0e1b5e6a3750
SHA1 9c5482d1274f7abb1dfe8d25f8926544ba8a506e
SHA256 9bb134c113b362471b2f13903ed8bddd92d3f4cd0e054f59689c689330aa550f
CRC32 91809941
ssdeep 3072:q+4cjg8MJiHwGRaUsIRzvC3GXLoJ91tnkmKHPV8PMFHsLgPtXT+CqFSL+wg:q+4cjgfmwOhZzvAfPPcPGMZ9XJqCrg
Yara None matched
VirusTotal Search for analysis
Name 80bc5a73c8dbf13d_forureningskonomis147.sku
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Start Menu\Beslutningsdygtigt\sheafy\Genoptog\Skorstensfejermestrenes\Forureningskonomis147.sku
Size 1.3KB
Processes 1072 (jawazx.exe)
Type data
MD5 f266b27972868677b4e066c2984c6479
SHA1 650fdffb5f6636b449d779c06744f308c81dbeff
SHA256 80bc5a73c8dbf13d29406ae534841687d9478584efe3d3f7653ced7ad421ce42
CRC32 F455D3B0
ssdeep 24:ksi2QoA+Wcs6kvXnrhJHWkjhQeIL5moEy6QQUwZsd40r5ssGxuAQGmlSEm/PsKH0:ksOj6cnr/a/5mROo1G5ssmuzGmpmXsKU
Yara None matched
VirusTotal Search for analysis
Name bd046e6497b304e4_system.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nsoC7B2.tmp\System.dll
Size 11.5KB
Processes 1072 (jawazx.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 17ed1c86bd67e78ade4712be48a7d2bd
SHA1 1cc9fe86d6d6030b4dae45ecddce5907991c01a0
SHA256 bd046e6497b304e4ea4ab102cab2b1f94ce09bde0eebba4c59942a732679e4eb
CRC32 A85D9AD6
ssdeep 192:eY24sihno00Wfl97nH6T2enXwWobpWBTU4VtHT7dmN35Ol+Sl:E8QIl975eXqlWBrz7YLOl+
Yara
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name f44b163bb227fb5a_brsteormens.top
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Start Menu\Beslutningsdygtigt\sheafy\Genoptog\Skorstensfejermestrenes\Brsteormens.top
Size 90.6KB
Processes 1072 (jawazx.exe)
Type data
MD5 d26417f4b6a8cdb16a060503b25f71fc
SHA1 35f939022aab9d6fcedad65bd97d667dea2b93af
SHA256 f44b163bb227fb5a1ec0388d85993f15038a12037e5adfd4f46c2570a45f2df6
CRC32 1726313D
ssdeep 1536:ya+3sx3u95cSs1NwmKJ8CvPUHJVcx/a1AtFz1CG:ya+eccSLmu8aUpax/a1GH
Yara None matched
VirusTotal Search for analysis
Name 29069f2b23e95a66_opsgt.ste
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Start Menu\Beslutningsdygtigt\sheafy\Planksheer\opsgt.ste
Size 1.3KB
Processes 1072 (jawazx.exe)
Type data
MD5 1fbf30ae3059bb9f4cb11567b0c4b3ac
SHA1 2fe75b5f6404829026232201bbc5d5c5dc1c5689
SHA256 29069f2b23e95a661d1e35440603be1491fc64965025c98a82950005c272fe05
CRC32 FC8E6B9C
ssdeep 24:YWVMdab5/Flny2/jhBK2i8BqNmoHtjD8dCI4OdHB2vczpYyXeEotRsLU3y:Y2MUbxFly2/jhBK2iZIYARlBoyOEorsn
Yara None matched
VirusTotal Search for analysis