Dropped Files | ZeroBOX
Name 760954e886be0d83_poyukas.c
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\poyukas.c
Size 333.2KB
Processes 2556 (legend.exe)
Type data
MD5 2b4d08869bf52235776450f972eb4e14
SHA1 239c9d5c80f8a9ebcafff027ca62a2f28ab2a4f2
SHA256 760954e886be0d830a97dff466dd6f199fe76c12f95ee9c34fc1fea12b8e6941
CRC32 5D1ABC3A
ssdeep 6144:JeLd1XKE/D3MVW0V+PWPtdEBOj78LeNeQZE8yH1nehR4ATBl2c6dzh3CNSQ:JeLdxKE7YW03tuBO78LEzyghRzdsLdh+
Yara None matched
VirusTotal Search for analysis
Name 3c70c6b43d985a72_wlhgt.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\wlhgt.exe
Size 168.0KB
Processes 2556 (legend.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 857d33e8f8429f5ee496132d66023e24
SHA1 8d9e3a0d63b863ed1fbc01ad73777dba752c8538
SHA256 3c70c6b43d985a72df3a28215e4417cf3276f5c46f7b67df16c7250da6ecdf72
CRC32 767A3037
ssdeep 1536:hVwhmFLQj9WItmAfsuPUEh+a23JnWSfSrQP5vrHoSV5OXLus+yckU4Ss8jcdszP1:h2OQ0g9jmWQ3mXLus+0n3szpA2/RNj
Yara
  • Malicious_Library_Zero - Malicious_Library
  • UPX_Zero - UPX packed file
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis
Name e3b0c44298fc1c14_nsxEFED.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nsxEFED.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis