Dropped Files | ZeroBOX
Name b32d2bf38ab368c3_~wrs{cda3b211-f04e-45e6-86b5-7da222b136a4}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{CDA3B211-F04E-45E6-86B5-7DA222B136A4}.tmp
Size 4.5KB
Processes 2236 (WINWORD.EXE)
Type data
MD5 96e4f0630929d607028efcbcc4c55679
SHA1 33138030bf4024a2a67303d2dacaa57806d26000
SHA256 b32d2bf38ab368c37e931172e2b3a51ef02a7384d61311a442ea002aad2763b7
CRC32 F26D008F
ssdeep 96:xYwK49CiJF+ahWeXA7ZQbzfOSrpaRG9ubr034BUt:awK493nAdQnDrptoW
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{bb579189-be2b-4c20-80fa-041bda7dbedf}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{BB579189-BE2B-4C20-80FA-041BDA7DBEDF}.tmp
Size 1.0KB
Processes 2236 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name b94d63d5a5bc4597_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 2236 (WINWORD.EXE)
Type data
MD5 065071323ed6d1b6ea7980dc7d9d3f76
SHA1 600804b6debf471838f8a42c707fc73213bde375
SHA256 b94d63d5a5bc4597066cbc7843e863afbd601e75cde946ae5a59fe84b628ff95
CRC32 89F0E588
ssdeep 3:yW2lWRdvL7YMlbK7l:y1lWnlxK7
Yara None matched
VirusTotal Search for analysis
Name acf6dd8aef3087c4_~$n.dot
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$n.dot
Size 162.0B
Processes 2236 (WINWORD.EXE)
Type data
MD5 092cc45f5995a651eedc003b6a7c110f
SHA1 01108e8c98e1a40ea1d59a359a34a8794cac372c
SHA256 acf6dd8aef3087c400c69e513373ab072691cd2d6f3590f91da026de8e223311
CRC32 46C0919E
ssdeep 3:yW2lWRdvL7YMlbK7lZ7nF:y1lWnlxK73
Yara None matched
VirusTotal Search for analysis