Dropped Files | ZeroBOX
Name 65da83f3d64d6edd_fsf-{0e1eee64-e8c6-4e2a-9759-63cf07fd8988}.fsf
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\LocalCacheFileEditManager\FSF-{0E1EEE64-E8C6-4E2A-9759-63CF07FD8988}.FSF
Size 114.0B
Processes 1408 (WINWORD.EXE)
Type data
MD5 a099f747ea461587a721139f6a56fdb6
SHA1 5f0825518ecad2d5b4f27125f59300952ea20c1d
SHA256 65da83f3d64d6eddc43d4eaa9622e8cc0827843b182e1148e9457721c46218d1
CRC32 86998071
ssdeep 3:yVlgsRlzNvfQaItKrUl8hAKT7Hacf276:yPblzNvfQDMrUl8l36cf22
Yara None matched
VirusTotal Search for analysis
Name aab6ee5c92ecc7bc_fsd-{217339ac-d346-4797-afee-f3f57b2ab216}.fsd
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\FSD-{217339AC-D346-4797-AFEE-F3F57B2AB216}.FSD
Size 128.0KB
Processes 1408 (WINWORD.EXE)
Type data
MD5 0c9a12a9d2b65694ecb08a05c3157db6
SHA1 d80ed39f8f6357701f75ae2af2d9f4bc0e5a5639
SHA256 aab6ee5c92ecc7bc6b19767b021d52d3733e998705b5ecf3e28c8487b2f026a3
CRC32 CF0386EF
ssdeep 96:K08yxVefIgORh8oMz743WoGziBzxfTVOmFkUfIat8BQwhBQwr4tnQwOnCw:DtefIgbP/4LGuBkUwatUznzr4JzeR
Yara None matched
VirusTotal Search for analysis
Name 5d2682638dc76d0e_fsd-cnry.fsd
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\LocalCacheFileEditManager\FSD-CNRY.FSD
Size 128.0KB
Processes 1408 (WINWORD.EXE)
Type data
MD5 04734a70a8d09096416b2070bcf3dc19
SHA1 cc40fdf8542d3c8ea46d09512c6a24ae24cb3b01
SHA256 5d2682638dc76d0e57a90a00b8e78909f09c088a29fa0c3353b757956f708409
CRC32 81C8FC15
ssdeep 48:I3zkwBY5MD460Q+iGuz3HdE6KDuM6pU6HtUc60rb6rwmSJICzBkcUjemztBkcUjc:K9Lg0X//pHHtUvEWrwKH
Yara None matched
VirusTotal Search for analysis
Name 6efa003dd2d7049b_fsf-ctbl.fsf
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\FSF-CTBL.FSF
Size 114.0B
Processes 1408 (WINWORD.EXE)
Type data
MD5 dd53d19745e311eec08d4ed5da9f66a7
SHA1 bf67e4b1efc27a6f385c19f2b7000a6eab5b99a3
SHA256 6efa003dd2d7049bac840dfb7750e00624f6ed8935445e0c1c85986e4adc2500
CRC32 D02DB49E
ssdeep 3:yVlgsRlzsSl1lctlYziRJSlRqrZggN7Q+1snspYlLlZ276:yPblzzflctlY1l4rr7Q4sspYDZ22
Yara None matched
VirusTotal Search for analysis
Name a98ea9b1b4e856ea_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 1408 (WINWORD.EXE)
Type data
MD5 cdd9b6531cac73b66c07b89ab1389eff
SHA1 0a2b569cb87de7d27876a7843dc3ad271bd6676d
SHA256 a98ea9b1b4e856ea603b456f18130494b9f4b974e959c5641c81e8bcc4e57446
CRC32 436CB0F5
ssdeep 3:yW2lWRdvL7YMlbK7g7lxIt50iSjlVt0xkWlRlU5K:y1lWnlxK7ghqqFIkWl45K
Yara None matched
VirusTotal Search for analysis
Name d48c835e85d37f50_fsd-{5e71ae1d-d65a-4241-a11d-6fb16fbbfe0d}.fsd
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\LocalCacheFileEditManager\FSD-{5E71AE1D-D65A-4241-A11D-6FB16FBBFE0D}.FSD
Size 128.0KB
Processes 1408 (WINWORD.EXE)
Type data
MD5 a99f786598677071e7d9f670830cc3a4
SHA1 6c087f8baad4b6f3f7a34cdd9fe4edd2a03c8933
SHA256 d48c835e85d37f50bbf8d12dccd9a00774445066200bcdd03c8875f25f0fbed1
CRC32 3706E078
ssdeep 48:I3CHkHrB7YbJ9JLK2yQis9USsTW2DTh8RBU/pWc/pWT:Kx7Kd1vsiy8R2lM
Yara None matched
VirusTotal Search for analysis
Name d2b47172b40fd705_~$583e3247.doc
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$583e3247.doc
Size 162.0B
Processes 1408 (WINWORD.EXE)
Type data
MD5 3a9e9fe7d36c093d32cb4c77fe63ab28
SHA1 51d7c4eb1a114f31b0a7d09aab3d0a4dd28cc01f
SHA256 d2b47172b40fd705176b69595f09bfb6ca4a920a525469a033162ab29cbdfb17
CRC32 BB0DE86B
ssdeep 3:yW2lWRdvL7YMlbK7g7lxIt50iSjlVt6l/DlU5K:y1lWnlxK7ghqqF+K5K
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{31e369f2-3ec1-4980-8b2a-9abf93cd9a22}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{31E369F2-3EC1-4980-8B2A-9ABF93CD9A22}.tmp
Size 1.0KB
Processes 1408 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name cd7a24583509da26_fsd-cnry.fsd
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\FSD-CNRY.FSD
Size 128.0KB
Processes 1408 (WINWORD.EXE)
Type data
MD5 5ccf07b988e341ed1aa252c2891bfe6e
SHA1 3f1bc7b880dc5af8d934864440f9cb26c61a3197
SHA256 cd7a24583509da265a8c5191b3d24657c9e74d2e7126c611b6165e7d19e24419
CRC32 09EE5EFD
ssdeep 96:Kp2TU+ML/Wp/wBSeS8waYUg7bUIV3jeoJrSJrS8H:GOU+ML/WBmRNwaYUgEIV3jXJr+rx
Yara None matched
VirusTotal Search for analysis