Dropped Files | ZeroBOX
Name a523231ae796dad2_tbtnds.dat
Submit file
Filepath C:\Users\test22\tbtnds.dat
Size 4.0KB
Processes 2140 (sysklnorbcv.exe)
Type data
MD5 ed13b09cf6c12ae6e8734a15f1cba456
SHA1 5e4a865215eb48674668f7243a7427715c85719d
SHA256 a523231ae796dad2521d2eac52141cc9072fe09264d87c5fc4f46eda33a504be
CRC32 D9BD7FC5
ssdeep 96:x/kYIcK4Lp/WHIK3bJtOYutmYNry48Zi/iLZ/DEAvmRs90qP/KdnzS:hkYIG1Wr1tOJzry48E/ABD+m0qnYnzS
Yara None matched
VirusTotal Search for analysis
Name a9220271c0eb79e5_d93f411851d7c929.customDestinations-ms~RF194a309.TMP
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\d93f411851d7c929.customDestinations-ms~RF194a309.TMP
Size 7.8KB
Type data
MD5 b0c9ff441742f3847ea27da9dee7f2cd
SHA1 c42a1eb32ba953a0ce5d8635caabf71b5b281495
SHA256 a9220271c0eb79e5750e0d0e62058ecac560e09cdf9e82ef61aeeabada5d48a4
CRC32 0BBCAB1A
ssdeep 96:RutuCOGCPDXBqvsqvJCwo+utuCOGCPDXBqvsEHyqvJCworSP7Hwxf2lUVul:UtvXoxtvbHnorrxQ
Yara
  • Antivirus - Contains references to security software
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name bfc86dcb9fb4f2cb_d93f411851d7c929.customdestinations-ms
Submit file
Filepath c:\users\test22\appdata\roaming\microsoft\windows\recent\customdestinations\d93f411851d7c929.customdestinations-ms
Size 7.8KB
Processes 2372 (powershell.exe)
Type data
MD5 55fa8a03707366e0fa872ff5cdf2781e
SHA1 fa4e240232c8bed52d57e3fdbcda26b48028cdb6
SHA256 bfc86dcb9fb4f2cb350ea304b05747623e1c3b1eb3167cd6b8c08e820c55bacc
CRC32 B1C818E8
ssdeep 96:ctuCeGCPDXBqvsqvJCwo5tuCeGCPDXBqvsEHyqvJCwork7HwxSlUVul:ctvXo5tvbHnor/x0
Yara
  • Antivirus - Contains references to security software
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis