Dropped Files | ZeroBOX
Name 53aa3183af539a45_message.html
Submit file
Filepath C:\Users\Public\Libraries\Message.html
Size 15.4KB
Processes 776 (hh.exe)
Type HTML document, UTF-8 Unicode text, with very long lines, with CRLF line terminators
MD5 88cedb5531353575572dd7ed7ce4ff0c
SHA1 d6da265eaecf9ed4d5b1c9e8b84c35091f4d095a
SHA256 53aa3183af539a45e5400e26b1c0e82beb2fe5a4456cd23e41777e8557ddc210
CRC32 799E3A54
ssdeep 384:7ldsdJ7IB2ZHZEZPoZIZVZNHZEZSZ3oZqZMZISGvi5p1MJTL2r4:7bvYKTLb
Yara None matched
VirusTotal Search for analysis
Name 4b513511255a2395_docs.jse
Submit file
Filepath C:\Users\Public\Libraries\Docs.jse
Size 1.2KB
Processes 776 (hh.exe)
Type data
MD5 9f160d236bb9a926edd818d730316b45
SHA1 919af54952f03ef9e23b9b1784b334cf4eea421c
SHA256 4b513511255a2395b841c667031f008e7fd5099e75d72de3331291e21b496ad4
CRC32 81257647
ssdeep 24:GjGrmALCmN1Xmo0CD6sY75KTq/1vEL011wyZHVi+DWwT:GjWmAHXgKlY7EL0oy3tCe
Yara None matched
VirusTotal Search for analysis
Name 0ed5b0823e71e0e3_590aee7bdd69b59b.customdestinations-ms
Submit file
Filepath c:\users\test22\appdata\roaming\microsoft\windows\recent\customdestinations\590aee7bdd69b59b.customdestinations-ms
Size 7.8KB
Processes 2488 (powershell.exe)
Type data
MD5 f4a8a3e56bca0190031a365f104571cf
SHA1 7a4eac7016b8feca961f757cfe05bfeb4b76c10f
SHA256 0ed5b0823e71e0e3262a8a73ff269499135b20c9c5aa71e34b57a9f43218ed41
CRC32 E95A2C69
ssdeep 96:QtuC6GCPDXBqvsqvJCwoFtuC6GCPDXBqvsEHyqvJCworQStDHXyWlUVul:QtbXoFtbbHnorFTyo
Yara
  • Antivirus - Contains references to security software
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name 8539f222b35c8b51_logo_new[1].png
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\logo_new[1].png
Size 3.1KB
Processes 932 (hh.exe)
Type PNG image data, 205 x 33, 8-bit/color RGBA, non-interlaced
MD5 660bbe7f016a31a55381c334629e3bb2
SHA1 fce4907c3666ed04bca4603af90c4c19fcc873f6
SHA256 8539f222b35c8b5111a39983cc7aa3c63aaf18f073014f817f04195c77e7396f
CRC32 18CD9211
ssdeep 96:+7nxFfoxHpeWL8S9psik8lmJgcQmuASbND3t:+7nxFIpbp6bagwL
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis