Dropped Files | ZeroBOX
Name e59b45fa9c042f8f_~$12_4408305114.doc
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$12_4408305114.doc
Size 162.0B
Processes 1540 (WINWORD.EXE)
Type data
MD5 6c9ac1f92df836ec4ecfc98bff8798b8
SHA1 58b8ef1fcb25d89cb64952cb45c277ecf5908a7c
SHA256 e59b45fa9c042f8fb189495cea3db85ebd16ac2ac1971e0c2e4aa47487ffb5df
CRC32 6FE01542
ssdeep 3:yW2lWRdnfll/W6L7g/lvZJK79xlllpuItmlllt+TYXn:y1lWxl/WmUvXK7FllpVml/t+sXn
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{9cd1011f-fc4e-4d2e-b62c-a09d92753fe1}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{9CD1011F-FC4E-4D2E-B62C-A09D92753FE1}.tmp
Size 1.0KB
Processes 1540 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name 7dba901e89ea319b_75dda285.emf
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.MSO\75DDA285.emf
Size 4.9KB
Processes 1540 (WINWORD.EXE)
Type Windows Enhanced Metafile (EMF) image data version 0x10000
MD5 059317ebbbcad437fa76caee99a8f746
SHA1 8445242c4b44717ee68d4e17ce0a67f1d05021b4
SHA256 7dba901e89ea319bbc367b9c7c24bec42407962cbb7b37ab86cc6fcb9a8d5785
CRC32 C14BE600
ssdeep 48:FC3hNQ0BbmsdBgD89t1Tb4HKKZX3Y6kpnydHkil/aE:CTQGLBvt1X6Y+EE
Yara None matched
VirusTotal Search for analysis
Name 8fff80ce76cd8daf_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 1540 (WINWORD.EXE)
Type data
MD5 6db9e687cec8c87bf61945f2b1deef68
SHA1 4b7ebc055799a004918c50aa736265c08af81c96
SHA256 8fff80ce76cd8daff8974b59d98dabe6081f7c58ea57f2ef4301f0cbb6b5c7f0
CRC32 10112F94
ssdeep 3:yW2lWRdnfll/W6L7g/lvZJK79xlllpuItmlllt+GVllll:y1lWxl/WmUvXK7FllpVml/t+GP/l
Yara None matched
VirusTotal Search for analysis