Dropped Files | ZeroBOX
Name 67f70597a183fbca_cf-icon-error[1].png
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\cf-icon-error[1].png
Size 854.0B
Processes 1776 (iexplore.exe)
Type PNG image data, 48 x 48, 8-bit colormap, non-interlaced
MD5 e5577f04b6d92590410e26bd2292933b
SHA1 16946b2c99d98a57f83eac170ce94b012b7d1a7b
SHA256 67f70597a183fbca7fac55d609fbaac5c34bb4d4d32a0530bbbbb42591f2de2f
CRC32 02D4E659
ssdeep 24:834SQmcOQ3ZDcbdWUSeuTG8w1Kjc/Fu1IdKm:+4SQtrDkdbrb/Fu1Idb
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name d30b4ea6f6845667_main[1].css
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\main[1].css
Size 7.8KB
Processes 1776 (iexplore.exe)
Type ASCII text, with very long lines
MD5 ff26f59e28a5fe6ea4ab23586415696b
SHA1 4182675484d175e363cd34b43041b7b1af93d0cd
SHA256 d30b4ea6f68456672f5abb35e9dcf7d54226372b66e9d60a7ee26b7a52568e74
CRC32 FF6E23EE
ssdeep 96:1jMh3JNJinvaE5TQRGxfldudududEtCbnaimpSpIplDO6bU6b16bE6bb6bNdkd94:1jMFJiva655dimwqjlP0/mGTZxRbC
Yara None matched
VirusTotal Search for analysis
Name 78a7d8b29cabf168_cf-icon-browser[1].png
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\cf-icon-browser[1].png
Size 484.0B
Processes 1776 (iexplore.exe)
Type PNG image data, 100 x 80, 8-bit colormap, non-interlaced
MD5 59caf3c7eb63af78f12db37f41433779
SHA1 8024e688e78e910ae1ea3bc25be7a7ab65444b02
SHA256 78a7d8b29cabf16831417dba1b9bbe36fae0d060a35a495e8f10e9663b3c9e65
CRC32 D9F4432D
ssdeep 12:6v/7AQ/Sap5mxmKCGnvgO0Hsj5lUBWgbWAQPJ1:tQ/Sap5JKCGnY9HsjYBNqR1
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 3a223426c67a0a33_cf-icon-cloud[1].png
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTDTA402\cf-icon-cloud[1].png
Size 1.4KB
Processes 1776 (iexplore.exe)
Type PNG image data, 152 x 77, 8-bit colormap, non-interlaced
MD5 3ec81e5e3a4de9fec46ce9e6999b9e27
SHA1 8f03b6857ab8d31feb65f97b1ae6b678efdc2ddd
SHA256 3a223426c67a0a33ff57af68a57fb589fea36af2a6e8f9dae7798c77471e0e58
CRC32 7F747C32
ssdeep 24:Caui6awxFPTYdnag2W8Q6OyW8zK7rgkQzC6XIs/Bz20x1qA/Vf:C1i6VxFPTYdnag2MDyW8WHhQeBs5Plh
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 200c310d8ef568d8_recoverystore.{bd2e3c3d-ba49-11ed-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{BD2E3C3D-BA49-11ED-AC50-94DE278C3274}.dat
Size 4.5KB
Processes 1636 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 bb2470ef7c5ca84ba3bc5f65543ca742
SHA1 09caf4147758dd78d50defa78eaa933e531141f9
SHA256 200c310d8ef568d8aa5285c1ef117efb581660c3f57c48ee51bfd83e541d0f30
CRC32 79C0EBF6
ssdeep 12:rlfF2v5rEg5+IaCrI0F7+F2C7rEg5+IaCrI0F7ugQNlTqbaxkwNlTqbaxk:rqv55/1i5/3QNlW3wNlW3
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name ed732380ee3ff0f2_cf-icon-ok[1].png
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\cf-icon-ok[1].png
Size 946.0B
Processes 1776 (iexplore.exe)
Type PNG image data, 48 x 48, 8-bit colormap, non-interlaced
MD5 dfaf0fbb758c874be231335db178381d
SHA1 8f2597eb7ba4c89892aac0559816db3f5280b23e
SHA256 ed732380ee3ff0f2d841784da213c8c05d2b5ae187a5217b419d21cae5cedb1b
CRC32 82F3387D
ssdeep 12:6v/7+fa58s68565tXdDjAEeQIZioE/YchyH32VEh2scurQhPgPpBe0YEnIeTGKK+:na58AGNPBIg1/vkGsvXQePtIei3CGK5
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 41553a537f858399_cf-icon-server[1].png
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTDTA402\cf-icon-server[1].png
Size 1.4KB
Processes 1776 (iexplore.exe)
Type PNG image data, 95 x 75, 8-bit colormap, non-interlaced
MD5 2c11e67182601007f577f8bf2c72fee8
SHA1 01dc915d4745f00632021c05d3eef634747a9c3d
SHA256 41553a537f85839927155af093b7bfa1987215f474ed038714609cc48812ea3b
CRC32 163B92AA
ssdeep 24:Sa906kgSOsyHUVidkxHPZYsl+Ir+tcuATGSYw32vO:SC06kgSOQ0CHYEqzJSVr
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name af26bec295ef7aae_{bd2e3c3e-ba49-11ed-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{BD2E3C3E-BA49-11ED-AC50-94DE278C3274}.dat
Size 4.0KB
Processes 1636 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 6b2de855a57ad2fedd0f9291429397ba
SHA1 6ed122ae0ce7afe868a7f359d4330c71ceae3785
SHA256 af26bec295ef7aaea0221cc1779ef010c1198da987ac6b931954f85c1f9ca304
CRC32 844265C1
ssdeep 12:rl0YmGFlorEgmfh7KF1LWrEgmfh7qgONlTVbaxQM0AesWS/NlTVbaxQM0AesWS:rroGeaGnONlpBuRNlpBu
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 4257d2676377dfe0_a9b4lfin.txt
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Cookies\A9B4LFIN.txt
Size 74.0B
Processes 1776 (iexplore.exe)
Type ASCII text
MD5 93a1aaefdc1d2f82d80704df1ff39d7a
SHA1 13de7bec3e8df86d717cbc735ea1aa7b54174f9d
SHA256 4257d2676377dfe0179d9ff4e792b7eff92c0be3166043de052f209bbb6ce3c8
CRC32 032C5853
ssdeep 3:sWA6x7/02i4S9WUx4v9Stx4vX:saxz0tev9StevX
Yara
  • anti_vm_detect - Possibly employs anti-virtualization techniques
VirusTotal Search for analysis