Dropped Files | ZeroBOX
Name 67f2949a7bc5a3e3_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 2264 (WINWORD.EXE)
Type data
MD5 ee1379be315a9b1b90b3b90bf2fd462c
SHA1 07caa8e5ad40b83a969d1b1a472e5920ed4f5fc5
SHA256 67f2949a7bc5a3e3d3f35fae301766243c3ef2631cfd75442c88c8fead69c3cf
CRC32 728BD212
ssdeep 3:yW2lWRdvL7YMlbK7lDnl:y1lWnlxK7
Yara None matched
VirusTotal Search for analysis
Name 943a64e8e3c963e9_~wrs{37c9334e-0c87-4340-8a51-544a83382ac3}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{37C9334E-0C87-4340-8A51-544A83382AC3}.tmp
Size 9.0KB
Processes 2264 (WINWORD.EXE)
Type data
MD5 78e092cd92485f4381a1dd1223f3afbb
SHA1 1b570e92e0b7c8ba331426da0890582830008f22
SHA256 943a64e8e3c963e957bbe347c3161b4de7b2244d004a127c325bfe5f73ee161b
CRC32 39964182
ssdeep 192:2JkR3vAQyZ5zEvvWVuh/V5GPVs0I+a1yt0++TZnli/yhrT5Rdg:G4y3zxQ6dNIz1yt2nli/U1g
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{bb579189-be2b-4c20-80fa-041bda7dbedf}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{BB579189-BE2B-4C20-80FA-041BDA7DBEDF}.tmp
Size 1.0KB
Processes 2264 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name a8ac204780009b99_~$nvoice.wbk
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$nvoice.wbk
Size 162.0B
Processes 2264 (WINWORD.EXE)
Type data
MD5 629c3791ed1c07f06f33df981bd98135
SHA1 1818282d7c849b326e30a261a8f61273dbd6f348
SHA256 a8ac204780009b99fbbd668ca335be53cdadc4c4659e4c22e780c59fb98acfbe
CRC32 97C11B2F
ssdeep 3:yW2lWRdvL7YMlbK7lZmQHmh:y1lWnlxK73B
Yara None matched
VirusTotal Search for analysis