Dropped Files | ZeroBOX
Name 339121bc4e79b038_aut.l.bat
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\aut.l.bat
Size 136.0B
Type ASCII text, with CRLF line terminators
MD5 9ffec05fe4b99278b28bb7c54ba6a810
SHA1 50f4463a320ff9b07443aca76604ff626964bad3
SHA256 339121bc4e79b03813ad8b7eedb8bdfdded952e7cb4a635e62aedea1ccb00fc6
CRC32 90A368AC
ssdeep 3:3J3e+KUwK3Lq7lVQRFomWxpcL4E2J5xAIttJT8HF7X3x6QQFIzUv:3J3e+KUdjomQpcLJ23fttJT8HFV6DFW2
Yara None matched
VirusTotal Search for analysis
Name de3fd8c6919fbd75_aut.l
Submit file
Filepath c:\users\test22\appdata\local\temp\aut.l
Size 638.5KB
Processes 1648 (curl.exe) 664 (cmd.exe)
Type PE32+ executable (DLL) (GUI) x86-64, for MS Windows
MD5 77a40845a6425b9cc14f5e4f71d82adf
SHA1 aa18ed296ab1490693ff01ba2c56d826c9476627
SHA256 de3fd8c6919fbd75cfd3611e501bcf64eae0aed265d54208e0b003646e14c0f7
CRC32 1BD0EBAD
ssdeep 12288:BqlI8nyOrk/09drnix9Lo/k9crJmEcUKx12UAXXWRfo:BmyOrkM9lk9Lo/k9crJmEcUKx1252Jo
Yara
  • OS_Processor_Check_Zero - OS Processor Check
  • UPX_Zero - UPX packed file
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE64 - (no description)
VirusTotal Search for analysis
Name 3bac40543dde306d_Document_Scan_480.js
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\Document_Scan_480.js
Size 30.1KB
Type ASCII text
MD5 e22cc458efd3971cb286c74abef7bd5a
SHA1 f8b42118cbcd4df8e70b453f3577e06d8785f50d
SHA256 3bac40543dde306ddbb28ffb748fc3924cc1c25be2d19973c1f8ed20dabb9c74
CRC32 D24D3B25
ssdeep 768:kP1pljT83ppI1EHZ7MxClGmk+sjMnnlD8VPG0:elf8zXHJ1qVPG0
Yara None matched
VirusTotal Search for analysis