Dropped Files | ZeroBOX
Name 19a794aab8d93c3c_anon36[1].png
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\anon36[1].png
Size 1.6KB
Processes 7400 (iexplore.exe)
Type PNG image data, 36 x 36, 8-bit/color RGB, non-interlaced
MD5 106b75877485647b4b5618523f541732
SHA1 c19e26c01d2972a4c895c3688c735158785620c7
SHA256 19a794aab8d93c3cafd1efa4ae19579369f92ed5f1bb114d05aa0d7c7d1b3c22
CRC32 B7DF921C
ssdeep 24:a4ybnJkuNQTVsXnjVg0AsQSap5eJfpUeuQ5JggpKB7skDuGkdH8iOs08MdRGWo+h:aRniumT0GYrap5+fpHOzB7s9jl8iOHyS
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name c2e214be398c05b0_1114208092-comment_from_post_iframe[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\1114208092-comment_from_post_iframe[1].js
Size 18.0KB
Processes 7400 (iexplore.exe)
Type ASCII text, with very long lines
MD5 435f9fcb5a4a1a14104ab62148172f4f
SHA1 28d3d1f9dc32b449191faa4db31ca3dfa141e1b6
SHA256 c2e214be398c05b09e1914a37a7508c16167542c327aa381734918de48f4f167
CRC32 50005670
ssdeep 384:rzo+SFaEaBKNZrhy0MjuecLiSCh6Bmlh4/6O27Mj6M+ne:rNSFaWLiiwe
Yara None matched
VirusTotal Search for analysis
Name 891606a09f56e68c_comment-iframe[1].htm
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\comment-iframe[1].htm
Size 14.5KB
Processes 7400 (iexplore.exe)
Type HTML document, UTF-8 Unicode text, with very long lines
MD5 0763546e550e5e712ff5e150c62875a7
SHA1 c962fe6ba6f6aea64337316b1f77552d4c960f21
SHA256 891606a09f56e68c45b46f427207bdef3b83e4111891b34d7c527aa759af7fa5
CRC32 ADF45C6D
ssdeep 192:bvWfB3LMnMSb2ha2GFLONTQuFySivpKjhgvXyPnegAa5mDHYXlFp:O3Yrb2ha2GFtn3RKegb5mDHip
Yara None matched
VirusTotal Search for analysis
Name 187592828d0e3048_comment-iframe[1].htm
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\comment-iframe[1].htm
Size 328.0B
Processes 7400 (iexplore.exe)
Type gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT)
MD5 21efe5b667c1b0ac2129191f19770cfe
SHA1 b21e977aa23e7fd14c84cbd02a004696ef225e4d
SHA256 187592828d0e30484afb0303a25a697960a3f68002bae1e0fce1000fb89a7a7d
CRC32 686EB4E7
ssdeep 6:Xty0Kda0Xnm24jyPnVyXS479zwnspfeFPAuVdwOPcckbFEv56YzT8Ln:XIdu24jyPAC4xUnsh6LZ0ckbq0GT8L
Yara None matched
VirusTotal Search for analysis
Name b87dd1f80f323946_sprite_comment_v1.css[1].svg
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\sprite_comment_v1.css[1].svg
Size 585.0B
Processes 7400 (iexplore.exe)
Type SVG Scalable Vector Graphics image
MD5 3b9dfde066cf4c06ace070fd456e34c3
SHA1 8d065f73fdfc64e5540e40b17eaaaa9588391977
SHA256 b87dd1f80f3239467127bfa7c4d48f4071b0bacb510dc87cd1193eb3afc8241d
CRC32 39DC192C
ssdeep 12:TMHdC/KYzsqI0x4/DVIoYbxMVqH9s9Joc6jRq60I0Rn:2dCLzsbP/DVcKVS9s9q9qYOn
Yara None matched
VirusTotal Search for analysis
Name 73d16aca9b019e42_sprite_v1_6.css[1].svg
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\sprite_v1_6.css[1].svg
Size 7.5KB
Processes 7400 (iexplore.exe)
Type SVG Scalable Vector Graphics image
MD5 d4dcfc8144f556815c7a1d84ed4e959e
SHA1 22088bd6cdf970dcf7bfab9a74a4768548ca8890
SHA256 73d16aca9b019e42dd2de3a10e5049b5606268ce0d8e3a167b05b37acb9b0e9c
CRC32 1C4DB56A
ssdeep 192:S0S54QQw+4C4qV7DnovzS/KuO7/Jk4UZgf+q:S0S54HP4C4g7DovzCKuO7/Jk4UZoJ
Yara None matched
VirusTotal Search for analysis
Name 92e40dc4bbb485a1_clipboard.min[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\clipboard.min[1].js
Size 11.5KB
Processes 7400 (iexplore.exe)
Type UTF-8 Unicode text, with very long lines
MD5 158013acb7e269a3dbe18de855656c97
SHA1 08fa355584fc849539b3f04589ae6f61eb4a7d98
SHA256 92e40dc4bbb485a182b796c58e6da7974cb8a6a84fdb4548ace3b85c991f0f94
CRC32 B834AC5C
ssdeep 192:tZrSzYMRHR/061SHY1XWe6B99bc8IHtam5PkJS953CZi7gwRATt+wuLJRKZOYuQC:XrQbc60999bcIYim3yvwRQt+9LJqO7QC
Yara None matched
VirusTotal Search for analysis
Name 6a5482e0dc4e77a6_unnamed[1].jpg
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\unnamed[1].jpg
Size 223.2KB
Processes 7400 (iexplore.exe)
Type JPEG image data, JFIF standard 1.01, aspect ratio, density 1x1, segment length 16, Exif Standard: [TIFF image data, little-endian, direntries=4, description=Sunset afterglow and twlight dunes in White Sands National Monument, software=Picasa], baseline, precision 8, 1600x1067, frames 3
MD5 e66ef1f4c654be20558150214aa2b85a
SHA1 ad1dfbefad9a21e48aeeac1bae9f8a5b8ea1ef3c
SHA256 6a5482e0dc4e77a6be20281b13d7ef4d8b67521e73b66bc633ea4e4242934be9
CRC32 0F9A882C
ssdeep 6144:ZLvXzTZPaNDvJrIgKk1pfe+I4K8dAChaA:Zb2dEgKOpWkKGAqaA
Yara
  • JPEG_Format_Zero - JPEG Format
VirusTotal Search for analysis
Name 2976785da197a0c4_kxz4xagxomsmlwd6kqoctlnjyjzwigncsaouazegnuo[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\KXZ4XaGXoMSmLwd6kqoCTLNJyJzwIGNCSAOuAZeGnUo[1].js
Size 20.7KB
Processes 7400 (iexplore.exe)
Type ASCII text, with very long lines, with no line terminators
MD5 1c3ebe11481b921b0c1fd5aba930a828
SHA1 e94f3a8e266904e33453b07d8609a1c722038809
SHA256 2976785da197a0c4a62f077a92aa024cb349c89cf02063424803ae0197869d4a
CRC32 D4BFB95A
ssdeep 384:GfGn85dc8p/rFj8mAzUFiup9rf7HyrxUbNvctQbbwLldoz:3n83p/rFPAzzOrTSrxabbbz
Yara None matched
VirusTotal Search for analysis
Name b1442e85b03bdcaf_blank[1].gif
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\blank[1].gif
Size 43.0B
Processes 7400 (iexplore.exe)
Type GIF image data, version 89a, 1 x 1
MD5 325472601571f31e1bf00674c368d335
SHA1 2daeaa8b5f19f0bc209d976c02bd6acb51b00b0a
SHA256 b1442e85b03bdcaf66dc58c7abb98745dd2687d86350be9a298a1d9382ac849b
CRC32 9ACCEAB1
ssdeep 3:CUkwltxlHh/:P/
Yara None matched
VirusTotal Search for analysis
Name 1e2c209346d02318_mspin_black_large[1].svg
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\mspin_black_large[1].svg
Size 6.3KB
Processes 7400 (iexplore.exe)
Type SVG Scalable Vector Graphics image
MD5 98e0e5b23b2beab22f8278e26b349129
SHA1 1414f65ab732f08c8efb82ac4b724df3502532f2
SHA256 1e2c209346d02318a063c7ea2513498881c35f1525114c9b969b573384f54baf
CRC32 98131296
ssdeep 24:tUL+b8GjtqXPFgE7j+7gm7K7qC75z7747w79Q+7fF7jV77aY7g7Wxk7M7o77Dl7R:+Neq/ss5NWVwh7WdmRQBtD9VjTDzndS6
Yara None matched
VirusTotal Search for analysis
Name 80eb58776e2a9212_recoverystore.{2a94c4d1-c7ee-11eb-bde1-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{2A94C4D1-C7EE-11EB-BDE1-94DE278C3274}.dat
Size 4.5KB
Processes 4864 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 e475608a43c62cc1a543693e4dfbb7a3
SHA1 0922dc08165523feb7bb7924f807338cfd00c04c
SHA256 80eb58776e2a9212e7f09068ab6327b8bb927ccf816a3bba5fe531be90f8184f
CRC32 6B40153C
ssdeep 12:rlfF2drEg5+IaCrI0F7+F2SrEg5+IaCrI0F7ugQNlTqbaxwYoxYoBYoZNlTqbaxC:rqd5/1S5/3QNlWht9tNlWhtNJ
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name bd67ec0635543222_{2a94c4d2-c7ee-11eb-bde1-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{2A94C4D2-C7EE-11EB-BDE1-94DE278C3274}.dat
Size 7.0KB
Processes 4864 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 3d61357187f5d93614eb577e76bb9993
SHA1 3a6ec0b42f182276e7207540ba38c4eff7a8565e
SHA256 bd67ec0635543222a8b1b4d7962951ea8632dbb8465688c8aae3776c03561d3e
CRC32 AF156DD2
ssdeep 96:E6Ig4UMmg2Z8ibxibq4ibka9lV266nvHMgTa:E6IN10QXMlgs
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 183923f8c8c3960d_blogger_logo_round_35[1].png
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\blogger_logo_round_35[1].png
Size 2.5KB
Processes 7400 (iexplore.exe)
Type PNG image data, 35 x 35, 8-bit/color RGBA, non-interlaced
MD5 838622483cbfed35380b4705f19d7cca
SHA1 7de684136affc969a24d61927afc18905cf2fc36
SHA256 183923f8c8c3960dce8ad9722cf55a30d19b321b721741bd9e2ab6ae1f1ae72a
CRC32 A333A760
ssdeep 48:Jn8/VPO97L8B5r6SCxlsQMgNCiQ0icNcEWvUTIaCrWPZVK+vD56HEtHpKl:V8U9sBR6S0XLdEcaRKIa2WPu+vD51u
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 69f9d592e3d46c51_dootakim[1].htm
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\dootakim[1].htm
Size 92.7KB
Processes 7400 (iexplore.exe)
Type HTML document, UTF-8 Unicode text, with very long lines
MD5 aea34c0a7532eeebd2f9d29b312ef6a0
SHA1 4051fee934be667fb0bb1ab791bccb49ebe0050b
SHA256 69f9d592e3d46c51ff036c5c544b68552d590a4c7484b01fa7566b1e6867d2d0
CRC32 3D144F04
ssdeep 768:pQPImqi06gMvFCrm7MZpyvDRNv+f5AfpUxnHeob4f1u0eJwO0H+UJFvBdUzoCTPj:u6n0BO8CTPWQrPbA813i8CoCpfPs
Yara None matched
VirusTotal Search for analysis
Name a1495da3cf3db37b_favicon[2].ico
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\favicon[2].ico
Size 3.6KB
Processes 7400 (iexplore.exe)
Type MS Windows icon resource - 2 icons, 32x32, 8 bits/pixel, 16x16, 8 bits/pixel
MD5 59a0c7b6e4848ccdabcea0636efda02b
SHA1 30ef5c54b8bbc3487ea2b4c45cd11ea2932e4340
SHA256 a1495da3cf3db37bf105a12658636ff628fee7b73975b9200049af7747e60b1f
CRC32 26FF9B96
ssdeep 6:NXulKltegZ//OekukCS4kdxpHIWvUkt/ctmnzteghFnUtC+i/T2MWFetk/m+:NaKXe2m5CREDssfnxeo/2XUKu+
Yara None matched
VirusTotal Search for analysis
Name 93aac89ae67e5262_3098431828-widgets[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\3098431828-widgets[1].js
Size 146.8KB
Processes 7400 (iexplore.exe)
Type ASCII text, with very long lines
MD5 106c83a70224a56471b1c0214fd46571
SHA1 6aee89960a416a9fef6ef69e336c1f15be007e14
SHA256 93aac89ae67e526261e4cd25136d4e2bb4f922d4ff288dbacd9548fa9b40fcae
CRC32 BF41B2A3
ssdeep 1536:Mavvnc3CWG9MdeW4dHUJAyekX5dWsfb7BGRsHjm8T/VEljmCommE5AIfEFJyc89V:3TUJnXP7B8JbkTBLm
Yara None matched
VirusTotal Search for analysis
Name bda800b557017939_1938999652-cmt__ko[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\1938999652-cmt__ko[1].js
Size 95.5KB
Processes 7400 (iexplore.exe)
Type ASCII text, with very long lines
MD5 fb34b2b520ae618c6e20c653fb340337
SHA1 01425b3fedbdbfdf600ee3fe30d524f2dda1c4a0
SHA256 bda800b5570179390d9cc9c3f43f283d058a09e34e82d8bdea063170cb6a9b5c
CRC32 78E8DB89
ssdeep 1536:XxR5+GElP5MnI4/GFtxEXrjF6bm/gOBJq4/+RQu2aln+RK:NP/GF7yhgaQRdT+Q
Yara None matched
VirusTotal Search for analysis
Name 7b6936cf403b3e6b_3088200718-indie_compiled[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\3088200718-indie_compiled[1].js
Size 137.9KB
Processes 7400 (iexplore.exe)
Type ASCII text, with very long lines
MD5 0611e747b613e1d9d3a8d8730f1c9b0a
SHA1 1870a8f702a7a439b49b38fd92add0a4341f00a1
SHA256 7b6936cf403b3e6b66f41a076575bfa1918fb37b299af9881b319260c8ed0ec3
CRC32 78E9E505
ssdeep 1536:9nkwGfWP9M27i5HMRmWMYCTfjukmaN3wHv3PiZVh69Y/vBD61Kmo0ZPVqRZWyDaI:dkwG7X7jukmbHPPMdgKmqYo/
Yara None matched
VirusTotal Search for analysis