Dropped Files | ZeroBOX
Name afc4af67338c779d_{ba2c24b0-ba49-11ed-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{BA2C24B0-BA49-11ED-AC50-94DE278C3274}.dat
Size 4.5KB
Processes 1636 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 e17f3e5afd290c79ffdd8bfb77ab8712
SHA1 4de4400570bd195e978ad2fcd8c2a8d9a41307e5
SHA256 afc4af67338c779dd2800494b623a0618b4d174b70a816d77819f7d0e26996f1
CRC32 421EA3F0
ssdeep 12:rlxAF9jrEgm8GL7KFrADrEgm8Gr7qsLNl26abax1NlgfRbaxXb:rmG8oG8WLNlIoNlsub
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name d1ef1300cd782b30_recoverystore.{ba2c24af-ba49-11ed-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{BA2C24AF-BA49-11ED-AC50-94DE278C3274}.dat
Size 5.0KB
Processes 1636 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 467f8a9517c832f6c47742c5f290b6e9
SHA1 028ad3a28fc10a285d08a6bd3eba9ecc0a4a2499
SHA256 d1ef1300cd782b30f8069a3fe7f403d367e73b1fa60dd654f619908495c86c3c
CRC32 ED7CF949
ssdeep 12:rlfF2brEg5+IaCrI0CI7eF2zcTrEgmZ+IaCrI0CIc8GmRVOeMiqI771NlTqbax67:rqb5/fzcTG5/k85jBM+NlWLHNlWLN
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 54893039410f20e2_rust[1].dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\rust[1].dat
Size 3.6MB
Processes 1776 (iexplore.exe)
Type PE32+ executable (DLL) (GUI) x86-64, for MS Windows
MD5 e8ee21f5fde8922468a84b4754ec6aec
SHA1 e817f5ceac5cc75563edc1c875aaa85ed834461c
SHA256 54893039410f20e2e3f0d4ddfba5be48c135cead6259d69eeb6223c0c3bfd171
CRC32 B86E6217
ssdeep 49152:PC8ktg4iB+NbzdfUmZOB/Ne1Le/daLcoVq6:PCX8E/xUmW4heM46
Yara
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE64 - (no description)
VirusTotal Search for analysis