Dropped Files | ZeroBOX
Name a2ce3a0fa7d2a833_e0f5c59f9fa661f6f4c50b87fef3a15a
Submit file
Filepath C:\Users\test22\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E0F5C59F9FA661F6F4C50B87FEF3A15A
Size 893.0B
Processes 2852 (svchost.exe)
Type data
MD5 d4ae187b4574036c2d76b6df8a8c1a30
SHA1 b06f409fa14bab33cbaf4a37811b8740b624d9e5
SHA256 a2ce3a0fa7d2a833d1801e01ec48e35b70d84f3467cc9f8fab370386e13879c7
CRC32 1C31685D
ssdeep 24:hBntmDvKUQQDvKUr7C5fpqp8gPvXHmXvponXux:3ntmD5QQD5XC5RqHHXmXvp++x
Yara None matched
VirusTotal Search for analysis
Name 436d804daf6b231b_9I3HM23U.txt
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Cookies\9I3HM23U.txt
Size 223.0B
Type ASCII text
MD5 85f508b53c909f53caf3358e0b93cae0
SHA1 f1d764be6f5e5e6a1e5a33ae6f1bafe03db9cf92
SHA256 436d804daf6b231b86bfe090534b56be7eb04479ae9ffada08fa6622d8ad2a71
CRC32 658B6960
ssdeep 6:EW3z27WXQU+d1FOcbGAN5cDP0Q+pOUXN3AN5cDn:EmMQQbdHOHAAb0QSOQN3AAD
Yara None matched
VirusTotal Search for analysis
Name 78804f08dfdde0c5_c5d8393293ce2ba62f117b2c2d55bc3e_017bd04f-b3bf-45b6-8167-9e8f41ff87bf
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-3832866432-4053218753-3017428901-1001\c5d8393293ce2ba62f117b2c2d55bc3e_017bd04f-b3bf-45b6-8167-9e8f41ff87bf
Size 1.4KB
Processes 300 (None)
Type data
MD5 76fd9f786b3f45628a5d400c5978bc3f
SHA1 9a1a85f6c755e6aae221d6dbc6bd7972856a3212
SHA256 78804f08dfdde0c55f71901a07c46f34b5b9723e86b36c3de79584186a9e0d65
CRC32 4141ED21
ssdeep 24:EtPRDylUq3zGWvJbieme6/Tbyrsk4ve0jelI/kxyAbmO6R6tYUG9db/y/5zg:EtP5ylUq5odRTask4ve0u7ySmO66YUGJ
Yara
  • Trojan_Win32_Cutwail - Cutwail
VirusTotal Search for analysis
Name 68aa2b46425a345d_e0f5c59f9fa661f6f4c50b87fef3a15a
Submit file
Filepath C:\Users\test22\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E0F5C59F9FA661F6F4C50B87FEF3A15A
Size 252.0B
Processes 2852 (svchost.exe)
Type data
MD5 687cfa8c65bb7b37329b55a17aaee93a
SHA1 321adee5835a60c6b4d20e4964835cfe3cb1e1cd
SHA256 68aa2b46425a345d670d4f63fa07f25aff7f2b7f2eaf87baf5f09be124d2eff3
CRC32 F5FFEBE4
ssdeep 3:kkFkloRk3lltfllXlE/zwEkhlHllPlzRkwWBARLNDU+ZMlKlBkvclcMlVHblB8V6:kKjsqwrlXliBAIdQZV7IpAhx
Yara None matched
VirusTotal Search for analysis