Dropped Files | ZeroBOX
Name 6fff2bf198d958e2_user.config
Submit file
Filepath c:\users\test22\appdata\local\eahdopc_znhrvmw\payment_invoice.exe_url_410hgvzq4jzxf4dsyo2qx5451qwk5qxb\8.661.936.663\user.config
Size 370.9KB
Processes 2972 (Payment Invoice.exe)
Type XML 1.0 document, ASCII text, with very long lines, with CRLF line terminators
MD5 b4fff08e793a823d23a2bdccde3e923c
SHA1 6e60ec2271ebd1ff08019fb15c4fe316dd9c7d77
SHA256 6fff2bf198d958e2b0b0ce0c4540516f4365c8b547f2a01cd5f0a3092f032712
CRC32 14E7AA04
ssdeep 6144:Hu4uT+nEJ96p+ckJaSN62zjs1Ha8IgHM4uwmmXsQD:0+EJ96pP6aS5jaMgHMGh
Yara None matched
VirusTotal Search for analysis
Name e3b0c44298fc1c14_ennldfdk.tmp
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\EAhdoPc_ZnHRvmw\Payment_Invoice.exe_Url_410hgvzq4jzxf4dsyo2qx5451qwk5qxb\8.661.936.663\ennldfdk.tmp
Size 0.0B
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis