Dropped Files | ZeroBOX
Name 3d5d44c734df27e1_prefs.js
Submit file
Filepath C:\Users\test22\AppData\Roaming\Mozilla\Firefox\Profiles\qxo5wa6x.default-release\prefs.js
Size 12.8KB
Processes 2248 (svchost.exe)
Type ASCII text, with very long lines, with CRLF line terminators
MD5 c3842935f4c73441ff2896f118a33070
SHA1 54112045a0dd1d2ed7111f2c843b528abdd8c991
SHA256 3d5d44c734df27e141c6a725908e39b0bd914ae0d854dcc77567f57a34b6718d
CRC32 EC7FD352
ssdeep 192:RaniqRcDMfdaWaT7A7pKPuFXJrFFw8AxSqCFmRt:nydJnwtm8
Yara None matched
VirusTotal Search for analysis
Name fa04debb912533f9_microsoftedgeupdate.lnk
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MicrosoftEdgeUpdate.lnk
Size 1005.0B
Processes 2544 (Sniffthem.exe)
Type MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Hidden, ctime=Sun Oct 20 20:07:58 2024, mtime=Sun Oct 20 20:07:58 2024, atime=Mon Sep 26 19:47:59 2022, length=285696, window=hide
MD5 9aac9be6cd403f95909186ce38607ffa
SHA1 887c2b75550bb907c68d465aee632f0311571b75
SHA256 fa04debb912533f96e2c20e7746e3ac6649c54b33bb2b4f3fe7a5da6d314f1ec
CRC32 A1E8B642
ssdeep 24:8722sERdw4vhlOOHZsLYl8OHZsLFzNpmtKOHZsLiOHZsLiEa:8nsIZ4+SMC+SpppmtK+S2+SM
Yara
  • lnk_file_format - Microsoft Windows Shortcut File Format
  • Lnk_Format_Zero - LNK Format
VirusTotal Search for analysis
Name 6dd194e77a059a6f_hosts
Submit file
Filepath C:\Windows\System32\drivers\etc\hosts
Size 1.5KB
Processes 2248 (svchost.exe)
Type ASCII text, with CRLF, CR line terminators
MD5 698c5316dc71b60c9fabd7f0fd12ca69
SHA1 59913a9d73758dfab1fbcdae11f000dd29bb5eda
SHA256 6dd194e77a059a6f98dc37f5ddd2d12f977d8716ee21bdf35a541ecab6729038
CRC32 B77DF4DA
ssdeep 24:QWDZh+ragzMZfuMMs1L/JU5fFCkK8T1rTtU70cfC/fop+w+H+J+z+d+8+ve+D+8T:vDZhyoZWM9rU5fFcNDTmkgaJwe4JT
Yara None matched
VirusTotal Search for analysis