Dropped Files | ZeroBOX
Name 3edadfd668ffb004_recoverystore.{bd43b167-ba49-11ed-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{BD43B167-BA49-11ED-AC50-94DE278C3274}.dat
Size 5.0KB
Processes 2032 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 95afc1fc75174f249f5c7854855c229c
SHA1 09d9034ab032cc7eee7b43ff7ee2638374845856
SHA256 3edadfd668ffb004aee9d0e7df48e227784ed56fec58a20529fd49e6ef2501c0
CRC32 426BD180
ssdeep 12:rlfF2ErEg5+IaCrI0CI7eF24cTrEgmZ+IaCrI0CIc8GmRVOeMiqI771NlTqbaxm/:rqE5/fLTG5/k85jBM+NlWtIWNlWtIp
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name c7a343c0764747a0_{bd43b168-ba49-11ed-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{BD43B168-BA49-11ED-AC50-94DE278C3274}.dat
Size 4.5KB
Processes 2032 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 ad3b62605774fb3ab5e78bd76bd3436f
SHA1 c4d542ec4ff628f2b1baef8d90ccee898d78f3b3
SHA256 c7a343c0764747a0be3d789b5c5a0be4aea456fd31b14202ac403ebef735458d
CRC32 AB9F2C4D
ssdeep 12:rlxAFvljrEgm8GL7KFzDrEgm8G/7qsLNl26abax1NlUfRbaxocb:rahG8nG8yLNlIoNlQ4b
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name e1e2a12562841a26_dh[1].dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\dh[1].dat
Size 3.4MB
Processes 1376 (iexplore.exe)
Type PE32+ executable (DLL) (GUI) x86-64, for MS Windows
MD5 507d37544705bca11894108add996eca
SHA1 eae54d61159c6859ea5e6d4bf55ea64be300b701
SHA256 e1e2a12562841a26ebbe26be6a403492ef4683be728a11faaae13a3f7cad2281
CRC32 01D1C470
ssdeep 49152:d13/StcdMIgunc1es3SWjbGv5bm8WRvSoLm2ji22h:b3/QcdfIE5qCW2h
Yara
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE64 - (no description)
VirusTotal Search for analysis