Dropped Files | ZeroBOX
Name a93fd93267130945_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 564 (WINWORD.EXE)
Type data
MD5 16fbf910dec9b85f8b1aa6eaf2471d44
SHA1 8c98c3869a164e09ce892d7d1b611626a0b1a0b4
SHA256 a93fd9326713094516bbd678aa8fc9f4af5636b74ccee7e9f34c35bd8901c44a
CRC32 C39F5CAA
ssdeep 3:yW2lWRdIlvW6L7TJK7ClllcItzllFPdl:y1lWEvWmZK7C/B5
Yara None matched
VirusTotal Search for analysis
Name 4ef6dd0ddaceead8_~$2.doc
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$2.doc
Size 162.0B
Processes 564 (WINWORD.EXE)
Type data
MD5 3ca66b6324471fc0638a638ba167aaf0
SHA1 be33a0553efa8f4264245a53ece4008b01d29def
SHA256 4ef6dd0ddaceead8e9426b067b4a12e6ac7609fac86cd60eb9f9fd3058436d46
CRC32 DEA81495
ssdeep 3:yW2lWRdIlvW6L7TJK7ClllcItzllFT/l:y1lWEvWmZK7C/B3
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{a6ae3d04-ef6c-4409-bf06-b11267d4898a}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{A6AE3D04-EF6C-4409-BF06-B11267D4898A}.tmp
Size 1.0KB
Processes 564 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis