Dropped Files | ZeroBOX
Name fa2ffa09429afa18_msforms.exd
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\VBE\MSForms.exd
Size 143.8KB
Processes 2232 (EXCEL.EXE)
Type data
MD5 dd330a2d11e5437e7765edfa9f18f2ea
SHA1 326d26786c7f0e3d45540d61f712fe4bc1c08b35
SHA256 fa2ffa09429afa1838d32c6a9b28caf03eb4dd158b5a7fb202c90bfe9b95349b
CRC32 C91BF1D7
ssdeep 1536:CkfL3FNSc8SetKB96vQVCjumVMOej6mXmYarrJQcd1FaLcmB:CMJNSc83tKBAvQVCGOtmXmLpLmB
Yara None matched
VirusTotal Search for analysis
Name 3485e7088f88a5fb_4039c61.emf
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.MSO\4039C61.emf
Size 700.0B
Processes 2232 (EXCEL.EXE)
Type Windows Enhanced Metafile (EMF) image data version 0x10000
MD5 73d035a6d06da7656f529d55faf4ba19
SHA1 6a2da0668817b3bf426c24a075606306a6798136
SHA256 3485e7088f88a5fbd1a5d71a554dbf718b22629fabee54bd1e7b85b4472303f9
CRC32 3B1DDD0C
ssdeep 12:YSt09SclRcyVAziJv/MBzTs0XTU4t8zSe1DWq:Y9/NxJY35+N1Db
Yara None matched
VirusTotal Search for analysis
Name 90cab44bfb865d43_tempfile.txt
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\tempfile.txt
Size 52.0B
Processes 2856 (WindowsSecurity.exe)
Type ASCII text, with CRLF line terminators
MD5 4f93a59b682460e7d566f580815bb268
SHA1 0a9d3ec2b3df0467d6b0e127fa7b07753b6ed175
SHA256 90cab44bfb865d43fe03072168513ea796030acfbe6e0fa9931e2f2cc758ed8f
CRC32 B024173A
ssdeep 3:fVFE5hM8sxAoFE5hM8p:9K/MZxK/Mc
Yara None matched
VirusTotal Search for analysis
Name 7676e145db131128_556468.od
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\556468.od
Size 134.0B
Processes 2232 (EXCEL.EXE)
Type ASCII text, with CRLF line terminators
MD5 4bac14773d3d4b4db362e756ba9f4ad7
SHA1 4ebcf19cff33a180ba6c48404eccc1fd652689a2
SHA256 7676e145db13112898d78590c18301d74f67718bec54969b4a7dbe77ab082e22
CRC32 5FE87673
ssdeep 3:OFrpRCMKLovyafNREalYEC9WoIk5zAajEY5RcdBjjSUvv:OKMKcaaYal9oIkkY5KZSQv
Yara None matched
VirusTotal Search for analysis
Name 1d1ea78d13d06234_windowssecurity.zip
Submit file
Filepath C:\Users\test22\AppData\Roaming\WindowsSecurity.zip
Size 352.7KB
Processes 2232 (EXCEL.EXE)
Type Zip archive data, at least v2.0 to extract
MD5 96b3733e75b9dbea8ba1d17b88cb3bd5
SHA1 e94b14000aee6212db7f1946a87284299434289f
SHA256 1d1ea78d13d0623458e8ede07cb545945d32134f6324a8b472d77304f32cb778
CRC32 387BEF55
ssdeep 6144:p5NGdK1xUMkqA6/zNruy+V0bvglMblB5qJRII/IXelmnDpvpLnL6gx8NHi:prGdDM+6Jru3Mvn2JWbwmn1vVnLPx8NC
Yara None matched
VirusTotal Search for analysis