Dropped Files | ZeroBOX
Name ce1941b2b41d7347_bills.sjl
Submit file
Filepath C:\Users\test22\blindeskriften\Bills.sjl
Size 1.3KB
Processes 444 (None)
Type data
MD5 f030ec216de210e84e5c2c764a9687a8
SHA1 6fcb361a171c0fbb27962e06f0ffc518af984cac
SHA256 ce1941b2b41d7347172bf81d24a005183dc1f98477e71ab99f4e6fac9ec90632
CRC32 88FBA731
ssdeep 24:D7EQyYELPLHZ99LAVWm25tq9GVqKlWT7PRYmntqFAhIhnzFngbCkPn:M1Ya1PAVWPSAUXZMVleCw
Yara None matched
VirusTotal Search for analysis
Name 44e5dfd551b38e88_system.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\nseC84D.tmp\System.dll
Size 11.0KB
Processes 444 (None)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 883eff06ac96966270731e4e22817e11
SHA1 523c87c98236cbc04430e87ec19b977595092ac8
SHA256 44e5dfd551b38e886214bd6b9c8ee913c4c4d1f085a6575d97c3e892b925da82
CRC32 6AB990A4
ssdeep 96:UPDYcJ+nx4vVp76JX7zBlkCg21Fxz4THxtrqw1at0JgwLEjo+OB3yUVCdl/wNj+l:UPtkuWJX7zB3kGwfy0nyUVsxCjOMb1u
Yara
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
VirusTotal Search for analysis
Name 2c3454ce5acefcd5_medkmpe.ken
Submit file
Filepath C:\Users\test22\blindeskriften\medkmpe.ken
Size 1.8KB
Processes 444 (None)
Type DOS executable (COM, 0x8C-variant)
MD5 45ba52f979e50d8730084f8fcf829226
SHA1 8ca8c9fdce626c0fa9f5db1c4059a573b61a7878
SHA256 2c3454ce5acefcd5d474ad6d23f1e0040e2e1d343134792701e2e44aa683bbdf
CRC32 63AFF903
ssdeep 48:Njkjd8S+U49OcTUxlCjb7s2eSgu/343Ft5:NYx49OHxa7zenR35
Yara None matched
VirusTotal Search for analysis
Name 023481c65a5a2a1f_devchar.fru
Submit file
Filepath C:\Users\test22\blindeskriften\Devchar.Fru
Size 312.9KB
Processes 444 (None)
Type data
MD5 d7932ea1cd9a2cbaad5351458c4bd8c5
SHA1 b4e3d2ec1ffa6df6204354c948f48ade121f4f02
SHA256 023481c65a5a2a1f235a06b6eefe9afcab24fda5e094bc08f786a03659963a73
CRC32 D2A623C0
ssdeep 6144:J9GZoIoXdhKxVEXBgKwIcVRWjY2dhtAFg0LI99e39z:J9AYbKTSgKTcGzhh0LI9o31
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name e3b0c44298fc1c14_nswC128.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nswC128.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis