Dropped Files | ZeroBOX
Name 9ae415f2ddc27b1c_install.ps1
Submit file
Filepath C:\Users\Public\install.ps1
Size 182.6KB
Processes 2724 (iexplore.exe)
Type ASCII text, with very long lines, with CRLF line terminators
MD5 fb9d34322f06b76fe35e30fabea11437
SHA1 7b27796d4777e06d98122d69531797a395dc39e9
SHA256 9ae415f2ddc27b1cb22c2a68564d41da3cb01aeee36f65534b65fd0a55873f34
CRC32 DFB3AB97
ssdeep 3072:L7bgezAGx+v9KZMgeGUpWbzqaQwmZIJ5DeAuDsj0+80waivgqlenngI3+obfc3r8:LQnGAvwJe4bjQwmZ+tKG0+9iInj3+obH
Yara None matched
VirusTotal Search for analysis
Name 55296b7074976515_{7a8325c8-25af-11ec-9a69-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{7A8325C8-25AF-11EC-9A69-94DE278C3274}.dat
Size 4.5KB
Processes 2600 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 944629b4d7ca6c0ae6a3dd2d80f5afc8
SHA1 0e9503fa9bde5c962dc585fef01d4640f5458ad4
SHA256 55296b7074976515ed470733af445bd2997834178aac252bb9a7da9d3fad7391
CRC32 389D8464
ssdeep 12:rl0ZGFhrEgmfe76FrarEgmfV7qgONlH5baxgv/Q14aDNlX9baxRzKtHaK+we:r9GCGzONlZMNNlNJlh+N
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 62d82aee119a656f_recoverystore.{7a8325c7-25af-11ec-9a69-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{7A8325C7-25AF-11EC-9A69-94DE278C3274}.dat
Size 4.5KB
Processes 2600 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 a314d9df311416d29eb44fa2dbbde06f
SHA1 476eb591bdfdaef938298f82f65a497b19e27691
SHA256 62d82aee119a656fa1bb9cb8b1ac2a81875ce91ab2bd2fe62f23dc0c1fc8f890
CRC32 931108CB
ssdeep 12:rlfF2brEg5+IaCrI0F7+F21rEg5+IaCrI0F7ugQNlTqbaxnNlTqbax:rqb5/115/3QNlWyNlW
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis