Dropped Files | ZeroBOX
Name 03bb4f02948a0929_perf.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\perf.tmp
Size 797.5KB
Processes 3044 (lodctr.exe)
Type data
MD5 ef2d1f5bfb043c095e3a0cfd6d297edb
SHA1 9fa156dad0d84c2b78259e8624f4ed844dfdadcc
SHA256 03bb4f02948a09296d0091728a554ec71d156cda6b2820c604797b151b32f6e0
CRC32 4F2CA55A
ssdeep 3072:+QGG/6IMolY/OhykmZ6lldcnqgspNTRALhkZpyN2RBOHxlTlsQZ/m6fCiRH2qzWl:IVnqgsp/s7GaCH
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name 292e73c1ea1a7a90_perf.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\perf.tmp
Size 802.6KB
Processes 3044 (lodctr.exe)
Type data
MD5 9021d745e352ef4ab782d0e0d9494d84
SHA1 012a1e14c4ee9e1f66cae725f850d07f38302dbe
SHA256 e239967f59a765ac22c55d6143e64913c90f72630d06112a9e4a686972366d11
CRC32 854FECDB
ssdeep 3072:+QGG/6IMolY/OhykmZ6lldcnqgspNTRALhkZpyN2RBOHxlTlsQZ/m6fCiRH2qzWK:IVnqgsp/s7GaCc
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name 5c28199ea916644c_perf.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\perf.tmp
Size 805.2KB
Processes 3044 (lodctr.exe)
Type data
MD5 8e3759767ebfc7602380f087b09f185d
SHA1 d64f11a17cd304677316d8c19447865318f122a5
SHA256 5c28199ea916644ce2bf5c3030b66cbfed5a07fd74f3724ea5152129280739eb
CRC32 B7131B7E
ssdeep 3072:+QGG/6IMolY/OhykmZ6lldcnqgspNTRALhkZpyN2RBOHxlTlsQZ/m6fCiRH2qzWW:IVnqgsp/s7GaC0
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name b0acf625c271c28e_perf.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\perf.tmp
Size 1.3MB
Processes 2172 (lodctr.exe) 2088 (cmd.exe)
Type data
MD5 8d4ae51312d69341473b15527cb24451
SHA1 9c066be078544a1f814e00c73e8695fa61bd2cd4
SHA256 b0acf625c271c28eff38bc57152d250f7b52a2fd635ca6adf7b596f87b2ad967
CRC32 8D8ACD0E
ssdeep 6144:IVnqgsp/s7GaC5G8Qm2CF4BGi6wlCe27tNtP+dF:6cG8Qm2COBtLMtNtPW
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name fe9beed710582889_99.cmd
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\BE59.tmp\99.cmd
Size 1.2KB
Processes 1836 (cvekil.exe)
Type DOS batch file, ASCII text, with CRLF line terminators
MD5 94e7223dd5ebbf305811c7199d5743c3
SHA1 2db91fd52337deed8a4e25f5b473a371bb8e3705
SHA256 fe9beed7105828894e15e1f5311bd6dc4222595f934cdcd53d2e9d722cda8f85
CRC32 79D1664E
ssdeep 24:hvOLc6Fr3frbW8WWyrUm90s92dQyMeDM+zf2oluAG:1Zur3frdMLQL3eN
Yara None matched
VirusTotal Search for analysis
Name e3b0c44298fc1c14_BE59.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\BE59.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 4ae5137392acd2d4_2.bat
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\BE59.tmp\2.bat
Size 23.0B
Processes 1836 (cvekil.exe)
Type ASCII text, with CRLF line terminators
MD5 788ebea021391a668a2599fc2aaadeb0
SHA1 4e7f74623256cbe6d8b3eeb26fcd5c56e0abf2a9
SHA256 4ae5137392acd2d4b92370a98016eb871e62c4f677e438c1a1b2be138b66de26
CRC32 A0741F56
ssdeep 3:NNgPcLGIBW:N06GIU
Yara None matched
VirusTotal Search for analysis