Dropped Files | ZeroBOX
Name 985da56fb594bf65_1737930154.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\1737930154.exe
Size 80.0KB
Processes 2732 (sysmablsvr.exe)
Type data
MD5 2ff2bb06682812eeb76628bfbe817fbb
SHA1 18e86614d0f4904e1fe97198ccda34b25aab7dae
SHA256 985da56fb594bf65d8bb993e8e37cd6e78535da6c834945068040faf67e91e7d
CRC32 A9A3B26B
ssdeep 1536:pm0MZsv8GxSYZCQGoPTBygAku+XJIE+ch9tYoKRcw+RLJznfl0:p56QIQGoLBygAkMc2oKRcwYBfl0
Yara None matched
VirusTotal Search for analysis
Name a992920e64a64763_1866818480.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\1866818480.exe
Size 88.0KB
Processes 2540 (tpeinf.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 ababca6d12d96e8dd2f1d7114b406fae
SHA1 dcd9798e83ec688aacb3de8911492a232cb41a32
SHA256 a992920e64a64763f3dd8c2a431a0f5e56e5b3782a1496de92bc80ee71cca5ba
CRC32 6C526A17
ssdeep 1536:wL0IGzbFmav82XwudP6+0MTqEjXm/D5AKHK:c0poOfP6+JuEjaaKHK
Yara
  • Network_Downloader - File Downloader
  • Malicious_Library_Zero - Malicious_Library
  • Admin_Tool_IN_Zero - Admin Tool Sysinternals
  • PE_Header_Zero - PE File Signature
  • Malicious_Packer_Zero - Malicious Packer
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name c2123839754bb1ef_tbtnds.dat
Submit file
Filepath C:\Users\test22\tbtnds.dat
Size 4.0KB
Processes 2732 (sysmablsvr.exe)
Type data
MD5 39b2e7ba5678619d54c0d931cd2798c9
SHA1 6dceb6f4f900b6f62b8599207dea4aa949cc5db9
SHA256 c2123839754bb1efd62c612e55764464399961a8b49556cc3e76f3b74ac7805c
CRC32 02B5A5C6
ssdeep 96:1AQBF9/MCiPprtJ4AygurETyHA5s/omF6MZnHl50z2Q1NZoQDl2:22ACiBr4jETx5s/om6wlCz2QvBl2
Yara None matched
VirusTotal Search for analysis