Dropped Files | ZeroBOX
Name 37d151f7d9c5a2f2_elliotez.vbs
Submit file
Filepath C:\Users\Public\ElliotEZ.vbs
Size 690.0B
Processes 3064 (powershell.exe)
Type ASCII text, with CRLF line terminators
MD5 2b34ae21eb34cb4c49679a484f009b7f
SHA1 7cdd64772e6a9e34012b12a11ce948300308750a
SHA256 37d151f7d9c5a2f2c0b64bd427854c097cd652e11d40083bdc48d9ffe464a9de
CRC32 A90135FF
ssdeep 12:VtAFNUupNO4gLM9Zdt41QhI1O9ZgT3MBdx9Z+/SpR9TzFdWNc5RNey/Spn:/AYupw42VT3MP4/QvMmRNZ/6
Yara None matched
VirusTotal Search for analysis
Name efb2b28497a828b3_elliotez.bat
Submit file
Filepath C:\Users\Public\ElliotEZ.bat
Size 207.0B
Processes 3064 (powershell.exe)
Type ASCII text, with CRLF line terminators
MD5 5497663a632df64bc59ed7d2db454bb0
SHA1 905fbcdb89003183b9862a5674d15cea59a6151e
SHA256 efb2b28497a828b36b8154a553c2abc6813e91f0a865ad9247553b0ed44741b5
CRC32 08E30362
ssdeep 6:ofvR9bGnIvWWqII1R3KbQO0cvfp1aH0mQ24Nivy:ofv7SnIOWXI1kbQpcvfPmQ/ia
Yara
  • Antivirus - Contains references to security software
VirusTotal Search for analysis
Name fd5f4791f7e03f51_elliotez.ps1
Submit file
Filepath C:\Users\Public\ElliotEZ.ps1
Size 219.1KB
Processes 3064 (powershell.exe)
Type ASCII text, with very long lines, with CRLF line terminators
MD5 c9e02cdc3873440bafd6d05b2c6dcaf1
SHA1 8d74ca7cdf74442f4f891191164c94d82cae7e45
SHA256 fd5f4791f7e03f5145630d0903b9631ac4b1323119afa955e2c4680fe7c07407
CRC32 1422A3F7
ssdeep 3072:EzE4koyAWy4WYiBiHEMadxawPp4wVTwjQdMhvSWm8+B0RjcGd1F9h/IleqxEAY5U:6E4k+WPWYiIkMadxaIp4uwjQdMhvFuH
Yara None matched
VirusTotal Search for analysis
Name a9b1dc8eaa5fcd00_d93f411851d7c929.customdestinations-ms
Submit file
Filepath c:\users\test22\appdata\roaming\microsoft\windows\recent\customdestinations\d93f411851d7c929.customdestinations-ms
Size 7.8KB
Processes 3064 (powershell.exe)
Type data
MD5 c1d8708bab1e838a2deda26d58bb8d42
SHA1 95d39e75a804752961c139bb6c0b67f84f685035
SHA256 a9b1dc8eaa5fcd0034694cf9742ae915a5932142a1477c3ab6fada45d98750b2
CRC32 E71AF2A2
ssdeep 96:QtuC6GCPDXBqvsqvJCwoFtuC6GCPDXBqvsEHyqvJCworFS7HwxWlUVul:QtbXoFtbbHnor/xo
Yara
  • Antivirus - Contains references to security software
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis