Dropped Files | ZeroBOX
Name af7b536fa3babf93_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 2828 (WINWORD.EXE)
Type data
MD5 0bde4514ad907deeb4fe84af456107b4
SHA1 fd88e283d87c7fa66c5748bfffd605b855ad5715
SHA256 af7b536fa3babf93e42c9033d52be536de80de0d1c9cca16379b7d7919737d4a
CRC32 D8E6BEBF
ssdeep 3:yW2lWRdvL7YMlbK7g7lxIt50iSjlVt3ZtFXUn:y1lWnlxK7ghqqFJjU
Yara None matched
VirusTotal Search for analysis
Name 4a8b6e35e2ea2ce7_~wrs{6bb37094-79e4-4eaf-8c0d-af93e7d09680}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{6BB37094-79E4-4EAF-8C0D-AF93E7D09680}.tmp
Size 10.5KB
Processes 2828 (WINWORD.EXE)
Type data
MD5 a4c1a0294bbca5f7ed830fd06cccdb68
SHA1 62f62b9fd6d2ed583f5377ba7c29731083edd205
SHA256 4a8b6e35e2ea2ce7ebf3a243aa4a7502fb9d8ffb2c430b233bdcfb0805c90ff3
CRC32 E2C5D866
ssdeep 192:U3PvmsBoolEYyEzJOoT2eL8N1+nMHc7tK03E8H/SFoYJucMyqyVdR3yvRhVs:U/OQEMLTxgNQMH+O8H/SaYBMcv0vVs
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{3bd78833-bb93-4b5e-aaf7-0d791390d8cd}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{3BD78833-BB93-4B5E-AAF7-0D791390D8CD}.tmp
Size 1.0KB
Processes 2828 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name 20c6ce75426d9533_~$dsf.wbk
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$dsf.wbk
Size 162.0B
Processes 2828 (WINWORD.EXE)
Type data
MD5 12c83d7395e3cba9b84c5baa7b984a31
SHA1 0dba8dbd49820c0a1a8b86349b5b435ca1b329d9
SHA256 20c6ce75426d953319a571a158c6420da7ee457470ae0a21191ed726bee7401a
CRC32 3FE230D1
ssdeep 3:yW2lWRdvL7YMlbK7g7lxIt50iSjlVt+n/lDXUn:y1lWnlxK7ghqqFytU
Yara None matched
VirusTotal Search for analysis