Dropped Files | ZeroBOX
Name 3109a3b059f8b50e_O0G.cmd
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\7zSCF999D18\O0G.cmd
Size 29.0B
Processes 2556 (setup294.exe)
Type ASCII text, with no line terminators
MD5 ab6cea8557f67e800a41fae33740c7e9
SHA1 11b2db887f29a0354721bbb3319a90fa94840bb2
SHA256 3109a3b059f8b50e398c11ef975ddf5e661820ece67f9200df4df3153327790f
CRC32 2A71C3E8
ssdeep 3:bNKpF8zxHn:Z/F
Yara None matched
VirusTotal Search for analysis
Name 6afdb6529a0c9520_XVT.v
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\7zSCF999D18\XVT.v
Size 2.7MB
Processes 2556 (setup294.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 1777a23eff66eae843c63004c07526b2
SHA1 cee0978c5acd626e40e8edf14720b41bec344b94
SHA256 6afdb6529a0c9520b132ad50a6cff96171c0577886753dcf5f46deee12e3161a
CRC32 B5333E43
ssdeep 49152:ooyzT6M96EhFYSfabc/OlxZdQ8ibArACW1pWn3vl1Pa6Tr/bZd:7M9ZhFBfa3Uk3vza6b
Yara
  • Malicious_Library_Zero - Malicious_Library
  • UPX_Zero - UPX packed file
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis