Dropped Files | ZeroBOX
Name 4023972d3bf87c2c_flashupdate.lnk
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\FlashUpdate.lnk
Size 980.0B
Processes 2568 (pdf.exe)
Type MS Windows shortcut, Item id list present, Has Relative path, Has Working directory, ctime=Sun Dec 31 15:32:08 1600, mtime=Sun Dec 31 15:32:08 1600, atime=Sun Dec 31 15:32:08 1600, length=0, window=hide
MD5 df95f5bed594c855a1c8bc8fd8b4577a
SHA1 bc35adfb92f61310c40ebdba076ceae0febdd254
SHA256 4023972d3bf87c2c4f0083a5ddff3260c569d6322563501d22b0e87cec7a5163
CRC32 EDE83541
ssdeep 12:8wl0KY3HV7GyuR+/fGYi1Amm/Q18/omNJkKA54t2YLEPKzlX8:8NZqRQmeYSoCHADPy
Yara
  • lnk_file_format - Microsoft Windows Shortcut File Format
  • Lnk_Format_Zero - LNK Format
VirusTotal Search for analysis
Name b8308f4b16372045_metadata
Submit file
Filepath C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad\metadata
Size 114.0B
Processes 2776 (chrome.exe)
Type data
MD5 d0c43c67123576a0d98ab40a45f78b9f
SHA1 153ea408f2defc7c9cfa757cd8b429072fa457b1
SHA256 b8308f4b163720456635303e4e1f4d96b406faa57fed9a7dce050184bf371dd7
CRC32 E97427C5
ssdeep 3:mTll+Xl+tssPlallFAnlSG8Ty6fcURN1T3WLB4l:mTlE+txM/F3fy6f9bYLel
Yara None matched
VirusTotal Search for analysis
Name 6e133786bde80624_debug.log
Submit file
Filepath C:\Program Files (x86)\Google\Chrome\Application\debug.log
Size 272.0B
Processes 2776 (chrome.exe)
Type ASCII text
MD5 9f098eeb335565fa0a7cebfafe4d77f9
SHA1 47e6fa05a90dbf1d06af911a24eda75a4dc848f7
SHA256 6e133786bde8062487b2b6e1999959532e3eb19c9cddaac656a1efb95f997558
CRC32 8372FD37
ssdeep 6:qcUmSlNoqYl2ndf8RU4LGGmm3V4v8XcMsRU4LGGmm3V4vF:nyyqYl2dERU4LGBm3V61ZRU4LGBm3V6F
Yara None matched
VirusTotal Search for analysis
Name 93702f82d15092f2_flashupdater.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\FlashUpdater.exe
Size 4.4MB
Processes 2568 (pdf.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 7d8f53a448aecba3bc74d11d5b469f53
SHA1 bc336bda918a8d675c922ab7a203c3c8f93dfdb0
SHA256 93702f82d15092f2e0f4ad807f5afa80bdd1e3b7f7e78972db38036de729c677
CRC32 27FCD3F5
ssdeep 98304:Z1lRBSHIYhVyhrxFrlCDOfEBVWuFAtIVJI5:Zl540FrlCCfEBta5
Yara
  • IsPE32 - (no description)
  • PE_Header_Zero - PE File Signature
  • anti_vm_detect - Possibly employs anti-virtualization techniques
  • UPX_Zero - UPX packed file
  • mzp_file_format - MZP(Delphi) file format
  • themida_packer - themida packer
VirusTotal Search for analysis
Name e3b0c44298fc1c14_nslF1E1.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\nslF1E1.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name ad5cef3b106d5325_e27d041a-4cf6-4d41-b889-3e2d28466dd3.dmp
Submit file
Filepath C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad\reports\e27d041a-4cf6-4d41-b889-3e2d28466dd3.dmp
Size 852.3KB
Processes 2776 (chrome.exe)
Type Mini DuMP crash report, 10 streams, Mon Feb 12 17:13:01 2024, 0x0 type
MD5 7f85c59ee604cdf0d1a648b6f2ec7b34
SHA1 4c1471b6a8dbf68b98bbdb0c831374954f576ec5
SHA256 ad5cef3b106d53250c2620c81affe87be6b66ff4b4eefd9b45e159a951f41780
CRC32 763FDE21
ssdeep 3072:yKVipNx15KDu6tEvdTeW+HOVH+kIle6njTkngM/NDzGmF/TEnsE/8RkCbE6Kdau/:GzE3W+HD763/EyYt
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name c52027c8787f6cb5_spisok_uchasnikov_na_programmy_rfrit.pdf
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\Spisok_uchasnikov_na_programmy_RFRIT.pdf
Size 265.9KB
Processes 2568 (pdf.exe)
Type PDF document, version 1.5
MD5 7665c01fdbe2f4b906a6193854d24582
SHA1 d1f4bdb11abed3620c8f02fce0f7293d3523b2ba
SHA256 c52027c8787f6cb57daf1e51bc757d02e2100a58d29535ce83b5fd52a2d62ac4
CRC32 95A9EA49
ssdeep 6144:WqwenmEUOicHcabOx+UVxP6ObXeR56xAHve2eU4hN37vN635Zn:WqwXenYrV56OreRQxo3Qo5V
Yara
  • PDF_Format_Z - PDF Format
VirusTotal Search for analysis
Name d37fcb160d37cfdd_settings.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
Size 40.0B
Processes 2732 (chrome.exe)
Type data
MD5 a3122d4670c51912628b97bdd6fffb80
SHA1 45d2e3060e09f46071125d6125983c81ae4970a1
SHA256 d37fcb160d37cfddefea794094044b7e588d44c4883c72ba0ef1503e5f9c7d59
CRC32 77809701
ssdeep 3:FkXD3WyqUm:+ix
Yara None matched
VirusTotal Search for analysis