Dropped Files | ZeroBOX
Name d3e21e4bcb4e8fca_~wrs{f71e81b5-1b12-4928-be11-eb40b84d7c26}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{F71E81B5-1B12-4928-BE11-EB40B84D7C26}.tmp
Size 5.5KB
Processes 1160 (WINWORD.EXE)
Type data
MD5 5a9187cbc0e437e9ebb96f0cecced4c1
SHA1 f048b00857ed175a58df8762bbb048c1794105ae
SHA256 d3e21e4bcb4e8fcae7307f772b100deabccd0be7e6ecb58ee856134eeee9d9ee
CRC32 C359CE9A
ssdeep 96:mT5pjY6FxDsUkCRlJHzsgCp3ng+fvuD2/S4dd/0+az8i3oI4Ut:QNxDlkMogCpgUvaTB+az8i3X/
Yara None matched
VirusTotal Search for analysis
Name 945612927f28c8f1_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 1160 (WINWORD.EXE)
Type data
MD5 dd1320a1248e83803fb2bcc3f33e1dcf
SHA1 c93723e46b06a2edc3eacff8560cd5dc7044c27b
SHA256 945612927f28c8f14b25eff982cb65c307fb71e58fb884b0c051277729980a70
CRC32 4BEC6349
ssdeep 3:yW2lWRdvL7YMlbK7ldnlX:y1lWnlxK7
Yara None matched
VirusTotal Search for analysis
Name c361ee40b7007e01_~$d.wbk
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$d.wbk
Size 162.0B
Processes 1160 (WINWORD.EXE)
Type data
MD5 3de877bb37c8dff9e6c2289f207bb31e
SHA1 73376095290657a08dd83cd50d7ae3711cd8e21b
SHA256 c361ee40b7007e01e846df66efd52a54e18ad39c17771efacfb8e954f6088b56
CRC32 A2B1C2CA
ssdeep 3:yW2lWRdvL7YMlbK7lZznNWon8nl/X:y1lWnlxK73znEon2l
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{cdd192d3-0b12-4393-966b-e1ae4a03c10e}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{CDD192D3-0B12-4393-966B-E1AE4A03C10E}.tmp
Size 1.0KB
Processes 1160 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis