Dropped Files | ZeroBOX
Name 8474a2cb0e32f213_bowsakkdestx.txt
Submit file
Filepath C:\Users\test22\AppData\Local\bowsakkdestx.txt
Size 556.0B
Processes 2820 (buildz.exe)
Type ASCII text, with very long lines, with no line terminators
MD5 35b86e634f8557296438847394a0c2f2
SHA1 35672aca570474acdab60bfcc6a2242f1397b7da
SHA256 8474a2cb0e32f21328bbf84af0ad4d70abbcc18a08c8684bf43591aff3205ec6
CRC32 4C24C35F
ssdeep 12:YGJ68B/Wuafdjo4O/y9dKHjJCs8soI0uvKyAItyBw5tKce:YgJB+umo4OaCI5O9AkWF
Yara None matched
VirusTotal Search for analysis
Name 7189b9b1af2585a4_personalid.txt
Submit file
Filepath C:\SystemID\PersonalID.txt
Size 42.0B
Processes 2820 (buildz.exe)
Type ASCII text, with CRLF line terminators
MD5 6a2cf227777b84b9bdf1bfbaa1badeb2
SHA1 b761daa73aceca381f14e6df8f8522ed38348211
SHA256 7189b9b1af2585a4d72c4ced1766f750add73a8d60427452ac07942760d0b8a5
CRC32 A778C24E
ssdeep 3:qvSTWTnMiekgRSyy:AWUMKgRw
Yara
  • Suspicious_Obfuscation_Script_2 - Suspicious obfuscation script (e.g. executable files)
VirusTotal Search for analysis