Dropped Files | ZeroBOX
Name b767785fb077f00a_actbovbc.out
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\actbovbc.out
Size 444.0B
Processes 2544 (j.exe)
Type UTF-8 Unicode (with BOM) text, with CRLF, CR line terminators
MD5 7274204ff6417d7f884aece98e3dc87d
SHA1 f06288b2abd18c8d3c0fdb1026a128eec9476d80
SHA256 b767785fb077f00ab5ecee20a68a58bb34889619050e7bffc699ce928bc4e604
CRC32 1B5AF94F
ssdeep 12:K4OLM9qR37L/6KQOLMnBJ+XOLMnaKa8GIKO5SBFN+y:K+9qdn6K2n+naKa2KoSDQy
Yara None matched
VirusTotal Search for analysis
Name 2281ba635aa04137_actbovbc.cmdline
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\actbovbc.cmdline
Size 188.0B
Processes 2544 (j.exe)
Type UTF-8 Unicode (with BOM) text, with no line terminators
MD5 1835b58ab1e9f3d3cda0eaa7c74023b8
SHA1 e8342d190322968cb41f3a45a9a22b8632fff6a6
SHA256 2281ba635aa0413780cbff92e2519a807317269987136c02065a7a472848f9cf
CRC32 6DEC0556
ssdeep 3:0HXEXA8F+H2R5BJiWR5mKWLRRmWxpcL4E2J5xAI7imLBJ+iQCIFRVRMxTPImWxpT:pAu+H2L/6K2mQpcLJ23f7zBJ+zxszImA
Yara None matched
VirusTotal Search for analysis
Name ae11144f426028e5_actbovbc.0.cs
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\actbovbc.0.cs
Size 8.9KB
Processes 2544 (j.exe)
Type C++ source, UTF-8 Unicode (with BOM) text, with CRLF line terminators
MD5 58b10ef6ba0da88788f1aac56ce7e2db
SHA1 48221936b98aac14ead7c4589513d074365414ec
SHA256 ae11144f426028e50e77d64a66aeb954e169f627f8abfe403791032594834520
CRC32 07EB5779
ssdeep 96:JO1vYGpHKU5fZBDeXWuaLN0lWeCAaEjcqQDJ7iiLYkhxdP7NFa/COAoTOyt13IPw:AaGu7vpcfDFfckhxdP7NA/CxoSytSPf4
Yara None matched
VirusTotal Search for analysis
Name 89c7b8ad2acb0493_RESF4B0.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\RESF4B0.tmp
Size 1.3KB
Processes 2744 (cvtres.exe) 2676 (csc.exe)
Type Intel 80386 COFF object file, not stripped, 3 sections, symbol offset=0x48e, 9 symbols
MD5 c8687b5bbfd3df09699cdf452f040596
SHA1 d5d780ba4c42473d39bb9612dd1dc00469adc5b9
SHA256 89c7b8ad2acb04930c8203b8d6bd8c0634e5085008e374c2c2c5bfdb52a3fb8a
CRC32 27CBDCB2
ssdeep 24:HRnFzW99/g/HeWwrUeKnxfeI+ycuZhNkakSgPNnqw2d:g/g/ofKnxm1ulka34qwG
Yara None matched
VirusTotal Search for analysis
Name 30b02fb1821437ee_actbovbc.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\actbovbc.dll
Size 8.5KB
Processes 2676 (csc.exe) 2544 (j.exe)
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 b9ce39be2973816a56eb61e9ca7558ca
SHA1 3ca4657f18d53af54d4e11cb07c141358ca1d83f
SHA256 30b02fb1821437eea4a8454f0df5acbd7cf2a3b5e4d1d139871ebc3c8929cd94
CRC32 86FD2EFB
ssdeep 192:wxhVsIlJlHlHlHlHldlglfbflnldIqNuBa5Mg5Mqh/pexr:U1lJlHlHlHlHldlglfbflnljABi5Mq+5
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Is_DotNET_DLL - (no description)
VirusTotal Search for analysis
Name e3b0c44298fc1c14_actbovbc.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\actbovbc.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name cbedc2dc4efd3e66_CSC530628AC6D6B49EA802240A0596476DA.TMP
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\CSC530628AC6D6B49EA802240A0596476DA.TMP
Size 652.0B
Processes 2676 (csc.exe)
Type MSVC .res
MD5 e1d3566248071698439dd0520851b454
SHA1 c2d2c4132290af4de8785899a3af5901330c5921
SHA256 cbedc2dc4efd3e66cd4b29b05bc3e98a09024622362245a40d26ac87c164438f
CRC32 626775F5
ssdeep 12:DXt4Ii3ntuAHia5YA49aUGiqMZAiN5gry54ak7Ynqq4tPN5Dlq5J:+RI+ycuZhNkakSgPNnqX
Yara None matched
VirusTotal Search for analysis