Dropped Files | ZeroBOX
Name 875b4bbbc4cc47fa_CSCA1BFE77E184747488E8E1F8747ACC2C0.TMP
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\CSCA1BFE77E184747488E8E1F8747ACC2C0.TMP
Size 652.0B
Processes 2828 (csc.exe)
Type MSVC .res
MD5 3cb6d1feae332906d701ed7f3f3ae80a
SHA1 6f0696424a85f781de7ba3ceaf509bec9eed16e0
SHA256 875b4bbbc4cc47fac109aab4148e0593a72c2dea20a15a4027806e3746e964c2
CRC32 2AEA65D1
ssdeep 12:DXt4Ii3ntuAHia5YA49aUGiqMZAiN5gryKUak7Ynqqx5PN5Dlq5J:+RI+ycuZhNAUakSx5PNnqX
Yara None matched
VirusTotal Search for analysis
Name ae11144f426028e5_c1kqx5tj.0.cs
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\c1kqx5tj.0.cs
Size 8.9KB
Processes 2552 (jp.exe)
Type C++ source, UTF-8 Unicode (with BOM) text, with CRLF line terminators
MD5 58b10ef6ba0da88788f1aac56ce7e2db
SHA1 48221936b98aac14ead7c4589513d074365414ec
SHA256 ae11144f426028e50e77d64a66aeb954e169f627f8abfe403791032594834520
CRC32 07EB5779
ssdeep 96:JO1vYGpHKU5fZBDeXWuaLN0lWeCAaEjcqQDJ7iiLYkhxdP7NFa/COAoTOyt13IPw:AaGu7vpcfDFfckhxdP7NA/CxoSytSPf4
Yara None matched
VirusTotal Search for analysis
Name e3b0c44298fc1c14_c1kqx5tj.err
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Temp\c1kqx5tj.err
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 6f5f34faddf3e4ae_c1kqx5tj.out
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\c1kqx5tj.out
Size 444.0B
Processes 2552 (jp.exe)
Type UTF-8 Unicode (with BOM) text, with CRLF, CR line terminators
MD5 c4aa1d363d88594a35f962f913d71c9e
SHA1 6b28558ce684b5b2cdbec593e9a7d01c227e1633
SHA256 6f5f34faddf3e4ae49dcca84bdaebab1a106be37ff8e30f48a1e2db1d3cfb8a0
CRC32 5FA73989
ssdeep 12:K4OLM9qR37L/6KQOLMu4XOLMuQKa8GIKO5SBFN+y:K+9qdn6K2uYuQKa2KoSDQy
Yara None matched
VirusTotal Search for analysis
Name 1406bb0aa5f40502_c1kqx5tj.cmdline
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\c1kqx5tj.cmdline
Size 188.0B
Processes 2552 (jp.exe)
Type UTF-8 Unicode (with BOM) text, with no line terminators
MD5 d8ddd082473e6891bc0c8611df43c8a0
SHA1 7cd844029ac5cb72f99cf923da4a9e73d9c4efea
SHA256 1406bb0aa5f4050245eff7fcbcec9ba2b3aa8eb57548eb09391ee8efc5aed89c
CRC32 327EEFFC
ssdeep 3:0HXEXA8F+H2R5BJiWR5mKWLRRmWxpcL4E2J5xAIPOUdQtJ0iQCIFRVRMxTPImWxC:pAu+H2L/6K2mQpcLJ23fPOUSt+zxszIS
Yara None matched
VirusTotal Search for analysis
Name bd82e7e6582614fb_RES6F3F.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\RES6F3F.tmp
Size 1.3KB
Processes 2892 (cvtres.exe) 2828 (csc.exe)
Type Intel 80386 COFF object file, not stripped, 3 sections, symbol offset=0x48e, 9 symbols
MD5 46d6536208d1343f62528fd8c0f6a298
SHA1 499346306c6aef816ea6ec812e125d531e627484
SHA256 bd82e7e6582614fb889c85f0f7116e76deb46349aa520692b1e8f75063ca0baa
CRC32 A6655D74
ssdeep 24:HUFzW99/QpGKHv8wrUeKnxfeI+ycuZhNAUakSx5PNnqw2d:N/QB/fKnxm1ulha39qwG
Yara None matched
VirusTotal Search for analysis
Name b7838ba66e0b4703_c1kqx5tj.dll
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\c1kqx5tj.dll
Size 8.5KB
Processes 2828 (csc.exe) 2552 (jp.exe)
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 46f107a6c9c31da5c5eb9794ce84dc7f
SHA1 07c3b7f1a4fa2bf30732be2235e5e7dd9f9933c0
SHA256 b7838ba66e0b4703dce5d3c3c92d299f48e449612d1bdcba540c1e001b123a91
CRC32 6F4775ED
ssdeep 192:7xhVsIlJlHlHlHlHldlglfbflnldIzNuBaoMg5Mq9exq:91lJlHlHlHlHldlglfbflnlqABj5MqkM
Yara
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Is_DotNET_DLL - (no description)
VirusTotal Search for analysis