Dropped Files | ZeroBOX
Name e3b0c44298fc1c14_CAB00884.TMP
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\CAB00884.TMP
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 1fa919a95a6f731c_d497e24a5d05183c.customdestinations-ms
Submit file
Filepath c:\users\test22\appdata\roaming\microsoft\windows\recent\customdestinations\d497e24a5d05183c.customdestinations-ms
Size 6.8KB
Processes 3056 (powershell.exe)
Type data
MD5 ce496e1e599b0802502adfabbf99b413
SHA1 d1ece8da1f63175cc4faaa921bba147e7f981736
SHA256 1fa919a95a6f731c174a4edbc9409e1b7f7af689105a705396886a8ad88e750c
CRC32 BB99CF8D
ssdeep 96:o/xPHiD1CW3EHoxPHiD1CbV4tDHXyGlUVul:MPCyHePCg+TyY
Yara
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name c794a9eb3906f3a9_x.exe
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\x.exe
Size 1.6MB
Processes 884 (extrac32.exe)
Type PE32 executable (GUI) Intel 80386, for MS Windows
MD5 e563ae1c83ff17fd031d3f87275a2f05
SHA1 276b6c2431ec7727dad6915eafd5a09fb721f9d9
SHA256 c794a9eb3906f3a93f75c06674c3327fe0ea9344e5749f04dfed6f7bd6176a4d
CRC32 31017DC4
ssdeep 24576:UBI3RB4jyrH1r+mBd2etljRKJe5znIghA986ZQ9kEg4a/OtkYnmkgFCz0hhfvR4U:UBq4ByKI529fZyw/O6BhvnNekqn4
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)
  • mzp_file_format - MZP(Delphi) file format
  • UPX_Zero - UPX packed file
VirusTotal Search for analysis