Dropped Files | ZeroBOX
Name 68a069648ac4e651_~wrs{f71e81b5-1b12-4928-be11-eb40b84d7c26}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{F71E81B5-1B12-4928-BE11-EB40B84D7C26}.tmp
Size 11.5KB
Processes 2252 (WINWORD.EXE)
Type data
MD5 bf817a11e7c101b57b8d7853fa078f0f
SHA1 2191462f71cea47423f80e7a75af63334bec372b
SHA256 68a069648ac4e6512659b51b3edad18813ca7a4602331999ffb7dd6ba090bc02
CRC32 A7F772B2
ssdeep 192:nfdhh4qlk0oOnMcXR0jzHZ3PUIfDYgGSEmc7DYT32nba7Sxes2nhhYL3676MgpCP:nFhh4qPMcWzhUIbYgG3mzT32basOhub8
Yara None matched
VirusTotal Search for analysis
Name 73732d20ef854cb7_~$svch.dot
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$svch.dot
Size 162.0B
Processes 2252 (WINWORD.EXE)
Type data
MD5 6cad70e6e26aa44c1f582d01acf7fe88
SHA1 0acc98bb6dcd876bdcf53189737a579e34f4d210
SHA256 73732d20ef854cb78099514aabb22daedc1efdc6559cf1b6fcf58b8bcbda041a
CRC32 FAD4666B
ssdeep 3:yW2lWRdvL7YMlbK7lZ3nG8:y1lWnlxK733nG
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{1bcc3581-0bee-4026-8aa3-46b12efbf6c9}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{1BCC3581-0BEE-4026-8AA3-46B12EFBF6C9}.tmp
Size 1.0KB
Processes 2252 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name b94d63d5a5bc4597_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 2252 (WINWORD.EXE)
Type data
MD5 065071323ed6d1b6ea7980dc7d9d3f76
SHA1 600804b6debf471838f8a42c707fc73213bde375
SHA256 b94d63d5a5bc4597066cbc7843e863afbd601e75cde946ae5a59fe84b628ff95
CRC32 89F0E588
ssdeep 3:yW2lWRdvL7YMlbK7l:y1lWnlxK7
Yara None matched
VirusTotal Search for analysis