Dropped Files | ZeroBOX
Name fd2d58aa01cbd610_~wrs{f16ac57e-561d-4c12-89c0-e3aaec389c46}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{F16AC57E-561D-4C12-89C0-E3AAEC389C46}.tmp
Size 12.5KB
Processes 2852 (WINWORD.EXE)
Type data
MD5 0d3aebbf1a1e5d6ebcd9c9c22a1304a4
SHA1 82c64cf9f5f8f45c46a7f686e9bcff20eb0b0cd9
SHA256 fd2d58aa01cbd6104cba4760b3a3ece129d4a021f43eba34208bcd3aba15de19
CRC32 CFA409E1
ssdeep 384:M0txyRcIG0Asm78eC+r5rIGWmsyxKhh2QEq:nxyRcKAQYVMmP4HDEq
Yara None matched
VirusTotal Search for analysis
Name b94d63d5a5bc4597_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 2852 (WINWORD.EXE)
Type data
MD5 065071323ed6d1b6ea7980dc7d9d3f76
SHA1 600804b6debf471838f8a42c707fc73213bde375
SHA256 b94d63d5a5bc4597066cbc7843e863afbd601e75cde946ae5a59fe84b628ff95
CRC32 89F0E588
ssdeep 3:yW2lWRdvL7YMlbK7l:y1lWnlxK7
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{cdd192d3-0b12-4393-966b-e1ae4a03c10e}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{CDD192D3-0B12-4393-966B-E1AE4A03C10E}.tmp
Size 1.0KB
Processes 2852 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name f8b2c1cebdc9b856_~$cccc.dot
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$cccc.dot
Size 162.0B
Processes 2852 (WINWORD.EXE)
Type data
MD5 9e0c905f1a1cb2087aa6f77678190884
SHA1 0e56c196dd1a75d61cca12b717a0a9b122fc4410
SHA256 f8b2c1cebdc9b856661f206d3cb6f79a2e45d2cca5adebdac7f16eac0d009e88
CRC32 8D090036
ssdeep 3:yW2lWRdvL7YMlbK7lZwnujnDI:y1lWnlxK73ljnD
Yara None matched
VirusTotal Search for analysis