Dropped Files | ZeroBOX
Name c2f28d6088cf1dec_{bd1664ba-ba49-11ed-948e-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{BD1664BA-BA49-11ED-948E-94DE278C3274}.dat
Size 4.5KB
Processes 2624 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 c18f3fccf92c378321c5a4b39187a208
SHA1 f26bb9e09f0f06783d5b7fe232d67f4efc77f62f
SHA256 c2f28d6088cf1dec1f12a5a038cba273565bbf9ee536bda0c00f03e620eb6fa5
CRC32 CE000CA2
ssdeep 12:rlxAFnjrEgm8GL7KFsIcDrEgm8Gn7qsLNl26abax1NlsfRbax0cbz:rcG8cIoG8KLNlIoNl4ncbz
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 758032c8fdac93ff_recoverystore.{bd1664b9-ba49-11ed-948e-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{BD1664B9-BA49-11ED-948E-94DE278C3274}.dat
Size 5.0KB
Processes 2624 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 dcf4471afea2a6e4c6a088a46fd2e9f7
SHA1 8ae457c8695b1a9660937718d7283bb00a0dc82e
SHA256 758032c8fdac93fffdff53fe124ec4090d28784fb523a48ba25ede920e9eda5b
CRC32 DFDD2D60
ssdeep 12:rlfF2ErEg5+IaCrI0CI7eF20cTrEgmZ+IaCrI0CIc8GmRVOeMiqI771NlTqbaxAN:rqE5/f0cTG5/k85jBM+NlWo6NlWoz
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name c1f437c927f576ea_driver[1].dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\driver[1].dat
Size 2.2MB
Processes 2704 (iexplore.exe)
Type PE32+ executable (native) x86-64, for MS Windows
MD5 ba40c472200733aebad89bc5e5c2ebd0
SHA1 669df0b4cd5a1940413af88094dd95184edf735b
SHA256 c1f437c927f576ea8b5cb8b26963e557f13b647c8fce070c5855974941e87b33
CRC32 AA1B22BB
ssdeep 24576:JunZl8GIfgdDP+QwMXUFwlJ8A/oZiGcnv1hlkft7T:kn71IfgF+QwhwlJ8vZ7H1f
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE64 - (no description)
VirusTotal Search for analysis