Dropped Files | ZeroBOX
Name 6b5797204fc793d5_{087062f2-d707-11ec-a8f0-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{087062F2-D707-11EC-A8F0-94DE278C3274}.dat
Size 4.0KB
Processes 2220 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 3731eb79e2d3b9bfb835231dfea523ed
SHA1 c61f97b979833b3b09f1c37ef3148a7645aee07a
SHA256 6b5797204fc793d52df9233696c4823dc083d35234012a3503028608ec693314
CRC32 F3FC5DEF
ssdeep 12:rl0YmGFPYrEgmfR7KFSarEgmfh7qgONlTVbax5Um/Q1y6Nlj9baxChKtHaK+wr:r6GFaGnONlpYUR3NlxDclh+
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 22cd7e5a15d91957_590aee7bdd69b59b.customdestinations-ms
Submit file
Filepath c:\users\test22\appdata\roaming\microsoft\windows\recent\customdestinations\590aee7bdd69b59b.customdestinations-ms
Size 7.8KB
Processes 2032 (powershell.exe)
Type data
MD5 2e29f0b865a155809b747352a5acd48a
SHA1 6e2deb1928d9dc3f09e80dd2429cc9c26a460563
SHA256 22cd7e5a15d91957c5b91fc251d86939b9508aef8463cb78636632df034b597a
CRC32 4ADD82AE
ssdeep 96:ktuC+GCPDXBqvsqvJCwo5tuC+GCPDXBqvsEHyqvJCwor/tDHXyWlUVul:ktvXo5tvbHnorlTyo
Yara
  • Antivirus - Contains references to security software
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name 9718de6eef4304d5_recoverystore.{087062f1-d707-11ec-a8f0-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{087062F1-D707-11EC-A8F0-94DE278C3274}.dat
Size 4.5KB
Processes 2220 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 59844f3ac2f148746f1008ad5be4b21b
SHA1 235ccd4ac6986a2fe16ac95adb94124a285937f8
SHA256 9718de6eef4304d50bcb33c0fc0fedf78fc795b0838f12a691c1e08b92cd6916
CRC32 142C3D1E
ssdeep 12:rlfF2AQYrEg5+IaCrI0F7+F2rrEg5+IaCrI0F7ugQNlTqbaxuNlTqbaxO:rqi5/1r5/3QNlWvNlWV
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis