Dropped Files | ZeroBOX
Name 4191faf7e5eb105a_mozglue[1].dll
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\mozglue[1].dll
Size 612.4KB
Processes 2292 (iexplore.exe)
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 f07d9977430e762b563eaadc2b94bbfa
SHA1 da0a05b2b8d269fb73558dfcf0ed5c167f6d3877
SHA256 4191faf7e5eb105a0f4c5c6ed3e9e9c71014e8aa39bbee313bc92d1411e9e862
CRC32 ED48E95A
ssdeep 12288:dfsiG5KNZea77VUHQqROmbIDm0ICRfCtbtEE/2OH9E2ARlZYSd:df53NZea3V+QqROmum0nRKx79E2ARlrd
Yara
  • Malicious_Packer_Zero - Malicious Packer
  • OS_Processor_Check_Zero - OS Processor Check
  • IsDLL - (no description)
  • UPX_Zero - UPX packed file
  • IsPE32 - (no description)
  • PE_Header_Zero - PE File Signature
  • Malicious_Library_Zero - Malicious_Library
VirusTotal Search for analysis
Name cf0addd4e506bef5_recoverystore.{bd3300f1-ba49-11ed-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{BD3300F1-BA49-11ED-AC50-94DE278C3274}.dat
Size 5.0KB
Processes 2172 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 e77f81f7b41df4bf73307449eb053a84
SHA1 3081d0308f54e9c5c2198c46930717d7f3980e89
SHA256 cf0addd4e506bef5dbeb298e3ac17c506137f98336de79cf34690d2fd858d058
CRC32 EDA76B11
ssdeep 12:rlfF2pUrEg5+IaCrI0CI7eF2tcTrEgmZ+IaCrI0CIc8GmRVOeMiqI771NlTqbaxQ:rqpU5/ftcTG5/k85jBM+NlWCuNlW6Uy
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name e9d84e415610658c_{bd3300f2-ba49-11ed-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{BD3300F2-BA49-11ED-AC50-94DE278C3274}.dat
Size 4.5KB
Processes 2172 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 c8c081ba8e7ee9982972d701417abecf
SHA1 742a43c6af7162bcfc53f88ba35fbed7e845fff7
SHA256 e9d84e415610658c54421b79d3aaa911118e060b74f95c4fb99cc0ae58c5fda4
CRC32 1AF1C2B2
ssdeep 12:rlxAF0HljrEgm8GL7KFPDrEgm8GcD7qsLNl26abax1NlwfRbaxbZ1L6b+MKl:rThG87G83LNlIoNlcrKl
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis