Dropped Files | ZeroBOX
Name a12148a43ca3e818_~wrs{2843d9db-b868-451c-a466-d6385ba8abf2}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{2843D9DB-B868-451C-A466-D6385BA8ABF2}.tmp
Size 7.0KB
Processes 2768 (WINWORD.EXE)
Type data
MD5 cd1f2fe947f65930ce04afd12c13f358
SHA1 fddcf360e93f87f81c80e13788280a91b4ad6ad2
SHA256 a12148a43ca3e8187fb256e76aedc22c7523d43b926b80f2016f101f377b9300
CRC32 1BF95FED
ssdeep 96:qqhBHfrnmudUmwqKPwYd9BK7KCvkKSdRQsK8KeyqeMQS4KY13EWHSCaZ2Lw+Ut:/hhTmFNbd6Pk/dVK1ePe5SM3EuSZlV
Yara None matched
VirusTotal Search for analysis
Name fabf4219d619eb21_~$wef.wbk
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$wef.wbk
Size 162.0B
Processes 2768 (WINWORD.EXE)
Type data
MD5 724ce3b2c4caa83f2332b9d1f6b20502
SHA1 9c5a61bde80b7c77780dd197ff2fe301fbcb7ce3
SHA256 fabf4219d619eb2130bb1f43c28dc59c7667c4ee5d524e263c3437d00e98cbff
CRC32 448B674D
ssdeep 3:yW2lWRdvL7YMlbK7l9fgBol:y1lWnlxK7IB4
Yara None matched
VirusTotal Search for analysis
Name caf340217e8c825c_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 2768 (WINWORD.EXE)
Type data
MD5 473c03820b650fecc4f2d52bf41d7ffd
SHA1 7085b6d3d2c5b16a395a82676fa1851155cbe094
SHA256 caf340217e8c825c02a09bebaa51bfc94485a4ab923cd752c245edf9625b6d05
CRC32 D8D7DFFF
ssdeep 3:yW2lWRdvL7YMlbK7lu:y1lWnlxK74
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{2f567838-9881-4a63-b104-e6cf029c04ee}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{2F567838-9881-4A63-B104-E6CF029C04EE}.tmp
Size 1.0KB
Processes 2768 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis