Dropped Files | ZeroBOX
Name 17ea722efecdb3f2_css[1].css
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\css[1].css
Size 188.0B
Processes 7232 (iexplore.exe)
Type ASCII text
MD5 3bd925042c5aa408e6ffd3886a769ac3
SHA1 4b1cc4bdc645a642dbec4459203d6431237884e3
SHA256 17ea722efecdb3f25e85780ecfdc6fdf0c52b0947ba0ab48bfe5e055d73e85f9
CRC32 87BF9F8A
ssdeep 3:0SYWFFWlIYCiF15RI5XwDKLRIHDfFWYhfqzrZqcdJ2dTi8EuRlGwLYTL5JYARNin:0IFFm15+56Zzhizlpd0celB69JNin
Yara None matched
VirusTotal Search for analysis
Name d172d750493be64a_icon18_wrench_allbkg[1].png
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\icon18_wrench_allbkg[1].png
Size 475.0B
Processes 7232 (iexplore.exe)
Type PNG image data, 18 x 18, 8-bit colormap, non-interlaced
MD5 f617effe6d96c15acfea8b2e8aae551f
SHA1 6d676af11ad2e84b620cce4d5992b657cb2d8ab6
SHA256 d172d750493be64a7ed84dec1dd2a0d787ba42f78bc694b0858f152c52b6620b
CRC32 87FB2FCE
ssdeep 12:6v/7ElZUJDdwjI5Fa4ep0LPf+veUxQn6/Xh0ptMQsfZhkNTpQEsb7:ZK1dw0etKjfUxQn6/x0DWrETpQZb7
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name c91afadbe63dd834_3416767676-css_bundle_v2[1].css
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\3416767676-css_bundle_v2[1].css
Size 36.1KB
Processes 7232 (iexplore.exe)
Type ASCII text, with very long lines
MD5 0bef7c3d549ca15e5fe23315fc211990
SHA1 28e3a4693a8f0212850a38303a037a6ddbc14d2e
SHA256 c91afadbe63dd834aac00b49bc715795da58970e7d500c4bd8f50ed713c77880
CRC32 890CBC53
ssdeep 384:B0OhFvg3AwN6VysImDyPWquJMpx/SCYW0bS8+Rl9yapwuJ86YKSQCNL/J69nag9N:B0Oh+/N6nIm6IvW0ErVJwxgngRdFr2
Yara None matched
VirusTotal Search for analysis
Name ea50ac7fddb61a5c_kfomcnqeu92fr1mu4mxm[1].woff
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\KFOmCnqEu92Fr1Mu4mxM[1].woff
Size 19.9KB
Processes 7232 (iexplore.exe)
Type Web Open Font Format, TrueType, length 20332, version 1.1
MD5 dc3e086fc0c5addc09702e111d2adb42
SHA1 b1138b84ff19eac5f43c4202297529d389bd09b7
SHA256 ea50ac7fddb61a5ce248a7f8b3a31a98fe16285e076b16e6da6b4e10910724bb
CRC32 F6DA8D99
ssdeep 384:U0iwaxoOUPVkOJJSu6SsCKTIRDqG9oHKwZh98OSv+MsgkAOY:75mlUmOSu1guh+fZhLSxkAr
Yara None matched
VirusTotal Search for analysis
Name bab5b6447361b0d2_blogin[1].htm
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\blogin[1].htm
Size 278.0B
Processes 7232 (iexplore.exe)
Type gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT)
MD5 1ee33c7c14f2dedb5db791d8a54add41
SHA1 32c1606344c6a37087fbfe15e37ac780262e238a
SHA256 bab5b6447361b0d238101a743aef8b1ce3f74a4f5c50541334e2b5c24a27d113
CRC32 2157420A
ssdeep 6:Xtpg8mAHIx2u6HdGbMvi0IzYlcZKmA8O+ITcEcZCqDuQeMDcZf1FZ4d/:XAtrx2uGdGboezYAKmn5IArZuAsFZO
Yara None matched
VirusTotal Search for analysis
Name eab3720a8bef19f6_blogin[1].htm
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\blogin[1].htm
Size 147.8KB
Processes 7232 (iexplore.exe)
Type HTML document, UTF-8 Unicode text, with very long lines
MD5 c048cea524f08ae6c5c68ae31132c279
SHA1 b7916a050bc11a1a16b69f54d3fe7a11d7ecfb3f
SHA256 eab3720a8bef19f615af32f93206eb16b53b960fc06dec36bf5ef8ecc0e19092
CRC32 A3146AE8
ssdeep 1536:8bS/sDkN24yywq/Qq2wp2w8/dKhjxytS5ei2hB9xwZAb/aODHhZZNWieVcJFmnW9:CSUvoEaaII7y+PYGPG+WG
Yara None matched
VirusTotal Search for analysis
Name 1742a4bb08e44a63_cb=gapi[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\cb=gapi[1].js
Size 100.8KB
Processes 7232 (iexplore.exe)
Type ASCII text, with very long lines
MD5 5222f9c8f0483aafcb23e967d5d8a9b6
SHA1 be1a7a758a882d3c8b2ef2bce131e53e64340f05
SHA256 1742a4bb08e44a63d3d701674b8e37f85f7b9dc493d2f65220eb741f876545ce
CRC32 A9F393AA
ssdeep 1536:2QXnYyeui83Xx9MZgK4cIGW76cepOQqTs5wF2R6Dsa7vXgaUDIDgV:1Yyeui8b6cYqQiMMsa7vkIDgV
Yara None matched
VirusTotal Search for analysis
Name 8be28485f4fa69e8_27p8d7vh.txt
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Cookies\27P8D7VH.txt
Size 195.0B
Processes 7232 (iexplore.exe)
Type ASCII text
MD5 435a9ba6f1a1834ed4e6aa48ba1a0ea4
SHA1 4caeae8668b0da17601be299bc1671fc66712912
SHA256 8be28485f4fa69e82eaa5e058dc23337f38b4e54fd33e89d4ed92a34a3e7eaf2
CRC32 F72A1DCE
ssdeep 6:BXLv5RBsQGWVd7DM0j4gduLvVdeN+hu7Dn:JBPGSdP/d7chan
Yara None matched
VirusTotal Search for analysis
Name 8684a32d1a10d050_maia[1].css
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\maia[1].css
Size 42.5KB
Processes 7232 (iexplore.exe)
Type UTF-8 Unicode text, with very long lines, with no line terminators
MD5 9e914fd11c5238c50eba741a873f0896
SHA1 950316ffef900ceecca4cf847c9a8c14231271da
SHA256 8684a32d1a10d050a26fc33192edf427a5f0c6874c590a68d77ae6e0d186bd8a
CRC32 021CA9F6
ssdeep 768:xwAbmEw+jAJFnSCZ9vWdmIfhjQucISYsU8/F+:bAJFnSC3W1QXISYsU8t+
Yara None matched
VirusTotal Search for analysis
Name f79723478f4c4850_analytics[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\analytics[1].js
Size 47.6KB
Processes 7232 (iexplore.exe)
Type ASCII text, with very long lines
MD5 0a4e309b5f2d7439b4f8876b19f37fc7
SHA1 7ac30f933a2b889edbe5d3449f4ec90049b0e2a9
SHA256 f79723478f4c48501cd49ac52b81d6244a6562b9d3f08ce8ab208a8b8878d4c4
CRC32 36AF8522
ssdeep 768:/yR3fYFBLbfsce5XqY1TyPnHpX/KWY3SoavPVRhwmCgYUD0lgEw0stZc:/y9gZfA5h1UHpXxY3Soiuw0sU
Yara None matched
VirusTotal Search for analysis
Name 736c101df041d60c_recoverystore.{77bdb7ab-9cdb-11eb-bde1-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{77BDB7AB-9CDB-11EB-BDE1-94DE278C3274}.dat
Size 4.5KB
Processes 7680 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 5a6b027912cef7bfc6f74b93fb189f55
SHA1 287a09e472076bb39644b838b1b53d42d906be1b
SHA256 736c101df041d60c15eb7a81e995b624f62814c23820e5007c2cea1c96c75434
CRC32 9917FF91
ssdeep 12:rlfF2KrEg5+IaCrI0F7+F2sQrEg5+IaCrI0F7ugQNlTqbaxp42vZNlTqbaxp4g6v:rqK5/1r5/3QNlW6NlW
Yara
  • Microsoft_Office_Document_Zero - Microsoft Office Document Signature Zero
VirusTotal Search for analysis
Name cbad27c35fbc84e2_blogger-logotype-color-black-1x[1].png
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\blogger-logotype-color-black-1x[1].png
Size 1.1KB
Processes 7232 (iexplore.exe)
Type PNG image data, 112 x 27, 8-bit colormap, non-interlaced
MD5 a9d652846aeacdf8da5401f6e4d4a409
SHA1 6127321cafe0be999bc0c9d952715ede2b9dd83d
SHA256 cbad27c35fbc84e2da4280476adeb197566db2750b8b4a79eb7e872db8d8acb7
CRC32 66E5D8E4
ssdeep 24:pHw9USYaX/4NI/2E9sif2iEOMyraXw0RkG:gtYaX/RsOEOK5RkG
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name a01a632e56731a85_kfolcnqeu92fr1mmwulfbbc-[1].woff
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\KFOlCnqEu92Fr1MmWUlfBBc-[1].woff
Size 19.9KB
Processes 7232 (iexplore.exe)
Type Web Open Font Format, TrueType, length 20396, version 1.1
MD5 68d6dabfe54e245e7d5d5c16c3c4b1a9
SHA1 7fdab895eaebecedb3fb5473eab94a1b292cef19
SHA256 a01a632e56731a854f35701aa8c3a6a19a113290d9032ff9048f8064c45383bd
CRC32 657DC019
ssdeep 384:SfXdUIIA0zhyKR28ePpAwxZ5M3py8wtshtdf45DEVTGdYb7H2Q/VEgm:Svdj0zhbRmjIQ8wtsV4lEVGdY3/i/
Yara None matched
VirusTotal Search for analysis
Name 39d0228b07bb0b88_{77bdb7ac-9cdb-11eb-bde1-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{77BDB7AC-9CDB-11EB-BDE1-94DE278C3274}.dat
Size 4.0KB
Processes 7680 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 54ea74729841cf4753b812c4c0b33fa1
SHA1 6950995cb1f30c55a808787a57d5ca2cdd4a07f4
SHA256 39d0228b07bb0b884537d324773cce071db15631569faad9abcc265065619ca0
CRC32 856C1B44
ssdeep 12:rl0YmGF7BOrEgmfd7KFwrEgmfd7qgONlfxbax0DFeQRyfSNlfxbax0DFeQRyf:rFBOGDGbONlpnDBg6NlpnDBg
Yara
  • Microsoft_Office_Document_Zero - Microsoft Office Document Signature Zero
VirusTotal Search for analysis
Name da3eb4ab25e02a8d_1277698886-ieretrofit[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\1277698886-ieretrofit[1].js
Size 26.1KB
Processes 7232 (iexplore.exe)
Type ASCII text, with very long lines
MD5 cb9af0197f496f52b471a76cfd8d601a
SHA1 067b3ee27f6b49431b5c72791d52f353c577853b
SHA256 da3eb4ab25e02a8dc118febc626df495acd468e84bc0b9767b56e8959b150f99
CRC32 7DBDE732
ssdeep 384:kRXBsAF8UMG+43L1dHMqXCxPHo189YaGuVMxoufjWFerWxWHrog4P+eF4MeUkz9+:kRX1kwqwVqkWxWHrwjF4VUQ9DlbQ
Yara None matched
VirusTotal Search for analysis
Name 74f7a661dfad6247_1893845785-widgets[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\1893845785-widgets[1].js
Size 142.9KB
Processes 7232 (iexplore.exe)
Type ASCII text, with very long lines
MD5 b57321451ce9abfbf3fb3798dafb27eb
SHA1 2ed9bd3a4713e17500efeac3e0f5eaa6165dd808
SHA256 74f7a661dfad6247cc977f7042ee2e3db5d5f78d1d0b7987569821dfd445da25
CRC32 EEBBDBC6
ssdeep 1536:MZ2uAyYfofLWC9M5FisVKa17b/syz/7fSwEVsAqo9YIoUo+PoQ9mbH0flUhimp2P:WrfSKa1H97fsPqc7hepDnG
Yara None matched
VirusTotal Search for analysis
Name a1495da3cf3db37b_favicon[2].ico
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\favicon[2].ico
Size 3.6KB
Processes 7232 (iexplore.exe)
Type MS Windows icon resource - 2 icons, 32x32, 8 bits/pixel, 16x16, 8 bits/pixel
MD5 59a0c7b6e4848ccdabcea0636efda02b
SHA1 30ef5c54b8bbc3487ea2b4c45cd11ea2932e4340
SHA256 a1495da3cf3db37bf105a12658636ff628fee7b73975b9200049af7747e60b1f
CRC32 26FF9B96
ssdeep 6:NXulKltegZ//OekukCS4kdxpHIWvUkt/ctmnzteghFnUtC+i/T2MWFetk/m+:NaKXe2m5CREDssfnxeo/2XUKu+
Yara None matched
VirusTotal Search for analysis
Name a913113b8bb39453_css[1].css
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\css[1].css
Size 613.0B
Processes 7232 (iexplore.exe)
Type ASCII text
MD5 8f8c618976e55bdf895af4da0af7f7f5
SHA1 db1395d567e8b74595a139d8824b2cf6944a6a40
SHA256 a913113b8bb39453b6e07314953de7b3af45e7f3e17e04f27827cffbe6cdffc1
CRC32 0E01F9A2
ssdeep 12:UJO6940FD7O6ZRoT6pYwEmr37uqF/iO6ZRoT6pixUEqF/iO6ZN76pixQvJY:G9XD7OYs/UrR/iOYsNxUv/iOYN7Nxn
Yara None matched
VirusTotal Search for analysis
Name 6e8a28a0638c920e_mem5yags126mizpba-un_r8ouuhv[1].woff
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\mem5YaGs126MiZpBA-UN_r8OUuhv[1].woff
Size 18.2KB
Processes 7232 (iexplore.exe)
Type Web Open Font Format, TrueType, length 18668, version 1.1
MD5 a7622f60c56ddd5301549a786b54e6e6
SHA1 d55574524345932db3968c675e1aea08c68a456f
SHA256 6e8a28a0638c920e5b76177e5f03ba94fcdedd3e3ecd347c333d82876b51c9c0
CRC32 36CC95AF
ssdeep 384:Wv4QHZChiRh3lwLOf8cWN78NXpcr6gBUA9CD/q4cOPZmPO:WvwhNOkvvxC7qnc
Yara None matched
VirusTotal Search for analysis
Name 3228f439f3ff15c6_10[1].htm
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\10[1].htm
Size 41.6KB
Processes 7232 (iexplore.exe)
Type HTML document, ASCII text, with very long lines
MD5 885b4b76fea2a5416dacad19f6c6a200
SHA1 6c405355f1dd05dba31cd4bfd9346d57b30894eb
SHA256 3228f439f3ff15c64471a9c36227b83c226878e330abb54ab70255c8d437de49
CRC32 F9193CB5
ssdeep 768:Bv3eyHHvPWdCL6VqllllNEZllllItyuwtlvywhIsXnmO5P2SUr:Bv3LHH2dCLbPwtlGO54
Yara
  • Antivirus - Contains references to security software
VirusTotal Search for analysis
Name ecb30886406e3f77_gradients_light[1].png
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\gradients_light[1].png
Size 403.0B
Processes 7232 (iexplore.exe)
Type PNG image data, 20 x 1100, 8-bit/color RGBA, non-interlaced
MD5 4f7de2e6afefb125b1f14fa5cda610ee
SHA1 57a145f234b504a73f9d55cf39f2231a04719456
SHA256 ecb30886406e3f776ff7bc3834de849944471e626ff148bed2fa389d02866044
CRC32 DC34595E
ssdeep 12:6v/74Qlk8WIyzs740Oc5maj4m3YULe3dk:Hgk8uw740OcWAY13dk
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 21cc4dc6c3c01b84_3101730221-analytics_autotrack[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\3101730221-analytics_autotrack[1].js
Size 24.7KB
Processes 7232 (iexplore.exe)
Type ASCII text, with very long lines
MD5 094ce5dcaccf632457ae9fbf4f325399
SHA1 87e144f51c7bee2d624709c8f596037a92d06e66
SHA256 21cc4dc6c3c01b84c808004173f42e3ed1b4f09551a10d69b4cec7394a1590e6
CRC32 AFC34DF4
ssdeep 768:xkt9hXjJ9UP+8qeyDVrQi7xD21qTOxcVB9yNGY:xc9hXjJYyDVrQi7xD21qTfBg
Yara None matched
VirusTotal Search for analysis
Name 0fdcb4746995f0d5_body_gradient_tile_light[1].png
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\body_gradient_tile_light[1].png
Size 95.0B
Processes 7232 (iexplore.exe)
Type PNG image data, 10 x 10, 1-bit colormap, non-interlaced
MD5 3b2a20d5b0ba4ca0c5dd90865ad6b9c4
SHA1 a90928a16d11d21e112b45b60990a9d7d19cc1d5
SHA256 0fdcb4746995f0d5240e5ec11370cb950722a894f3cff4118aa68ccc92010edd
CRC32 B96E65DC
ssdeep 3:yionv//thPlH1kmlS1jmTQ9IyehXhbp:6v/lhPcS5TeIFdhbp
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 0fc52ef116f03fd9_281434096-static_pages[1].css
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\281434096-static_pages[1].css
Size 3.7KB
Processes 7232 (iexplore.exe)
Type ASCII text, with very long lines
MD5 b3e61df6e41a93485461f77324fcd93e
SHA1 46efb1044ff1cb854e02bcb49ada1d501ce0aff4
SHA256 0fc52ef116f03fd95f9857856f1e2cbdfa2cacc398e066db0d8d5481739bc2d7
CRC32 A124C187
ssdeep 96:Tpnj64Z4HufeAA4DhRXRBd031AkDhRXRBd039YAH/hv:xjnRfp
Yara None matched
VirusTotal Search for analysis
Name d53854b16fdffa15_rs=aa2yrtuuroat3qfbndnlczqthfgcgssoya[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\rs=AA2YrTuuRoat3QFBNDnlCzQThfgcGSSOYA[1].js
Size 121.4KB
Processes 7232 (iexplore.exe)
Type ASCII text, with very long lines
MD5 d6bf615c8fc8b86df195b396430d8931
SHA1 6638bc20b049482dbc637946df9c1f6c665e7a78
SHA256 d53854b16fdffa150da4dca7d195c883cc0001f77de1b72ccaa0a52e8ea8003a
CRC32 95AEE427
ssdeep 1536:aESk8a9JmnbIahwujhHYq4sbJWmJEnvI038ek2n98tZZF0H00jkngF+k1EJjqFnC:JDSnOsITU2qtZT0HTbCJjqFYTIhM
Yara None matched
VirusTotal Search for analysis