Dropped Files | ZeroBOX
Name 5268993fb7c9f1d3_~wrd0001.doc
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRD0001.doc
Size 1.9MB
Processes 660 (WINWORD.EXE)
Type data
MD5 3f6f965d81686ead9b215e2f0d8209a1
SHA1 cb996495b4dddc688e1c92ea74b05dd19df065d7
SHA256 5268993fb7c9f1d3120c44d6d2f264554ee694dcf515f5a48a097931d8a34e23
CRC32 880A3476
ssdeep 3072:cOcF7j/JXQVvqxfsn+JPB/HTDl56NoISMx:cOc1fsO/12SI
Yara None matched
VirusTotal Search for analysis
Name 1cdf2d40604ab170_~$1f7c5c4b6b486e5ba9340944036285.doc
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$1f7c5c4b6b486e5ba9340944036285.doc
Size 162.0B
Processes 660 (WINWORD.EXE)
Type data
MD5 6177bdc7d19ea89fff9fbbdae4f4a079
SHA1 57195374294a3ce4b320ec09838533d08f89e551
SHA256 1cdf2d40604ab170f8851cebbc16cd5c3b8864dee2c8fe761b7e33e77eb1330d
CRC32 9D10D41B
ssdeep 3:yW2lWRdI/3/W6L7YCXK7/7Y/pgFItzuYtq:y1lWM3/WmzXK7YgWzq
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{a017d903-b154-459a-bbfc-5ec710c71499}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{A017D903-B154-459A-BBFC-5EC710C71499}.tmp
Size 1.0KB
Processes 660 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name 93a6f9eee93897eb_~wrs{4196d6aa-2ef7-4ddb-b38e-8fad3c57b613}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{4196D6AA-2EF7-4DDB-B38E-8FAD3C57B613}.tmp
Size 1.5KB
Processes 660 (WINWORD.EXE)
Type data
MD5 d30fb850a2bd58371cf76bf2d4ea4dd0
SHA1 d29f6a8b749fdd74d42daacbf60dd5d5c4bd7fd9
SHA256 93a6f9eee93897eb2337741f315b7cb7bf3d6d129274406df44c48446df59eb4
CRC32 612AA4C6
ssdeep 6:IiiiiiiiiiI4/9+Qc8++lPkalT4Mu8lPloBl/4p:W49+QG+3/H
Yara None matched
VirusTotal Search for analysis
Name 289bd9cfe110e53b_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 660 (WINWORD.EXE)
Type data
MD5 0b3e37dd68044f925578f977800e43fd
SHA1 c05a1ffa3de08460f85ac9dc8df778643e7de3dc
SHA256 289bd9cfe110e53b02eaea4ff0eb979790e3ff8bcb3869c9096078f73c34f67c
CRC32 7E775461
ssdeep 3:yW2lWRdI/3/W6L7YCXK7/7Y/pgFItzuYt5l:y1lWM3/WmzXK7YgWz5l
Yara None matched
VirusTotal Search for analysis