Dropped Files | ZeroBOX
Name 88a86c5d0503ec64_~$cp_21000989.wbk
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$cp_21000989.wbk
Size 162.0B
Processes 2800 (WINWORD.EXE)
Type data
MD5 a9fdd82cf86eb4279153179124828280
SHA1 ea249348cc7e262cb2943648bb26cea087d9e63d
SHA256 88a86c5d0503ec642023b11a6814b1f49d030f8d49ea81a62688398eb8920393
CRC32 390B731A
ssdeep 3:yW2lWRdvL7YMlbK7lZrnLP:y1lWnlxK73rn
Yara None matched
VirusTotal Search for analysis
Name b94d63d5a5bc4597_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 2800 (WINWORD.EXE)
Type data
MD5 065071323ed6d1b6ea7980dc7d9d3f76
SHA1 600804b6debf471838f8a42c707fc73213bde375
SHA256 b94d63d5a5bc4597066cbc7843e863afbd601e75cde946ae5a59fe84b628ff95
CRC32 89F0E588
ssdeep 3:yW2lWRdvL7YMlbK7l:y1lWnlxK7
Yara None matched
VirusTotal Search for analysis
Name 062f36dc0db720a4_~wrs{cda3b211-f04e-45e6-86b5-7da222b136a4}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{CDA3B211-F04E-45E6-86B5-7DA222B136A4}.tmp
Size 6.5KB
Processes 2800 (WINWORD.EXE)
Type data
MD5 91fdf8ed7fdcc7c033082be811ebc8c2
SHA1 c0d75805f3f5ba69c0007f99972d64772d96f8b5
SHA256 062f36dc0db720a415d25fb4324b671f69c1aa8145f87099bfd3847e873619a4
CRC32 0C5C685A
ssdeep 96:KhYcZNthyTq8P5xTE0quZ0OUJ59pFNqUlCktifI0UebkgD+aXQE3gQEk855TQUt:K/ZNWTq8Pg0NZ83TFNqULEfLUmRQ2HuL
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{451a703c-a47e-45fe-a2de-fce5197be4cd}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{451A703C-A47E-45FE-A2DE-FCE5197BE4CD}.tmp
Size 1.0KB
Processes 2800 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis