Dropped Files | ZeroBOX
Name bcf5d1d751743f52_{8cd0fc3a-c373-11eb-bde1-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{8CD0FC3A-C373-11EB-BDE1-94DE278C3274}.dat
Size 3.5KB
Processes 2384 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 bfc8ae6be5914b955203f61d92631ed0
SHA1 089360101735fe03d101e215b38c3cbd00c2b6ae
SHA256 bcf5d1d751743f52db16c2276d5b72b4b6fd86725b7e8c5cacefacd69b2a9b0a
CRC32 9B0775E5
ssdeep 12:rl0oXGF1Q+xrEgmfx06FzxrEgmfx0qTNlI8lbaxxtb3+JU:rmxGZGBNlJQtb/
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name d72c7f4e8096d2c8_favicon[3].ico
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTDTA402\favicon[3].ico
Size 1.1KB
Processes 2256 (iexplore.exe)
Type MS Windows icon resource - 1 icon, 16x16, 32 bits/pixel
MD5 8a82a12a665f0124ed865d960ca70b13
SHA1 7b57aee4a9fa49512cfa2202d720a5f2b8a8c300
SHA256 d72c7f4e8096d2c8fa503b5b011bed0696b74e6b774e183b7471510db074e869
CRC32 D9A15D35
ssdeep 12:hKyWo8nyF7gWLTTTTf+YoSXu9cOC0Ey3quIHS9LLLLLLLLLLLLY/b4KYdSV:8yNnTTTT23SXu+DGrIHS9Y/0TW
Yara None matched
VirusTotal Search for analysis
Name 3057c76699edf572_recoverystore.{8cd0fc39-c373-11eb-bde1-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{8CD0FC39-C373-11EB-BDE1-94DE278C3274}.dat
Size 4.5KB
Processes 2384 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 3c8f4c75221d190d2daa6ba875e04976
SHA1 f5bc056f73564773dd376df53cf0e9123b8d26d9
SHA256 3057c76699edf572a3613d1bf342f1fef7f319d89a524e8bed7b6fc3f03882ec
CRC32 F251C143
ssdeep 12:rlfF2iXrEg5+IaCrI0F7+F2jirEg5+IaCrI0F7ugQNlTqbaxYGCCZNlTqbaxYGCv:rqiX5/1ji5/3QNlWMNlW
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 7b80615aeb810fe2_proxy[1].htm
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\proxy[1].htm
Size 47.0B
Processes 2256 (iexplore.exe)
Type ASCII text
MD5 b6dc5502b3a9e484f096210896f467f5
SHA1 8ca53ca1a6c21eb39ff38cc9f7fecd728e6a85b5
SHA256 7b80615aeb810fe2de54f85661c15ccc22854b29cb2f507a7c95ee629a9c5584
CRC32 03ADC4BC
ssdeep 3:QQUmHXFQy2gbv:QbmHXFJbv
Yara None matched
VirusTotal Search for analysis