Dropped Files | ZeroBOX
Name 29828d8274d636c1_recoverystore.{bdaefb39-ba49-11ed-948e-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{BDAEFB39-BA49-11ED-948E-94DE278C3274}.dat
Size 4.5KB
Processes 2608 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 18c4ca31dcef20c9267b6f3d301d2960
SHA1 d923fea1bb5ddded9e543fcd965b78250f0e0a93
SHA256 29828d8274d636c1b065293827cb57ba216aec950d8949e887a22049db9623d7
CRC32 8D1F764E
ssdeep 12:rlfF2frEg5+IaCrI0F7+F2V7rEg5+IaCrI0F7ugQNlTqbaxtYs3CNlTqbaxtYsl:rqf5/1Z5/3QNlWIYs3CNlWIYsl
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name fbec69e6f8889ede_nicepage[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\nicepage[1].js
Size 236.3KB
Processes 2688 (iexplore.exe)
Type UTF-8 Unicode text, with very long lines
MD5 6624323a7fe93fd9c721362d27f2130d
SHA1 af7d2b58691ef52a56087e4db107595b2d89deb8
SHA256 fbec69e6f8889ede048c91a46ce7535f7006b400fb5ceaab105097f92bd2938f
CRC32 144FD7C5
ssdeep 3072:2S+X2XT0vt13+TEbYuGf0YBm4hk3YXIGnh0chJlBq0R6mEUU6NPwCs9:2UXT2Kts4m3YtLhRI6NW
Yara None matched
VirusTotal Search for analysis
Name 65513e92ac4845fb_auth[1].htm
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\auth[1].htm
Size 6.5KB
Processes 2688 (iexplore.exe)
Type HTML document, ASCII text, with very long lines
MD5 589e2f016cd825eee95246c61c7595d6
SHA1 90c48c347a27a5e5f141c80d11dd05b0645c3344
SHA256 65513e92ac4845fbc1697359fcc68c863d049366d866cc6318be3193671b35f9
CRC32 1F37D95D
ssdeep 192:mOsPUAU1FitC3Rz6yxX/zK5qEPUnUtGie:RsPtU7iucgX/zK5qku
Yara None matched
VirusTotal Search for analysis
Name f7f6a5894f1d19dd_jquery[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\jquery[1].js
Size 87.4KB
Processes 2688 (iexplore.exe)
Type ASCII text, with very long lines
MD5 dc5e7f18c8d36ac1d3d4753a87c98d0a
SHA1 c8e1c8b386dc5b7a9184c763c88d19a346eb3342
SHA256 f7f6a5894f1d19ddad6fa392b2ece2c5e578cbf7da4ea805b6885eb6985b6e3d
CRC32 3D1D8B85
ssdeep 1536:AjExXUqrnxDjoXEZxkMV4SYSt0zvDD6ip3h8cApwEjOPrBeU6QLiTFbc0QlQvakF:AYh8eip3huuf6IidlrvakdtQ47GK1
Yara None matched
VirusTotal Search for analysis
Name 23df05d376d330fb_auth[1].css
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\Auth[1].css
Size 1.1KB
Processes 2688 (iexplore.exe)
Type ASCII text
MD5 331fa13417d7037cdb25c6222b2d903f
SHA1 f41109e14078d7a46dba73945291ad61e02bec05
SHA256 23df05d376d330fb73f853ddbf1fb613c3dff830c1d408de9f85600fc3e551eb
CRC32 AA3E2CC2
ssdeep 24:n5RrgLzaES3fbGtmYtlg3FB7FfeYsKeMA3wywb:n5+Paat3E37teX3O
Yara None matched
VirusTotal Search for analysis
Name a937297ba441a101_nicepage[1].css
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\nicepage[1].css
Size 1.3MB
Processes 2688 (iexplore.exe)
Type ASCII text, with very long lines
MD5 262523f7246437e78483f65616f57dd7
SHA1 678eb3742cc417abd7ddd1752f7d8f9a825a765a
SHA256 a937297ba441a1019afcb1511b41c9515afa31eb0841fb33c2ddc9c1739b9025
CRC32 5767B0F5
ssdeep 12288:i5NgagN4k4qUeolwp+CCE48Bi6d5xO2Zm5Dz6P55XDXa2UKLW5I6caPcl:ji6d5xO21j
Yara None matched
VirusTotal Search for analysis
Name bb05df97e539eaf3_css[2].css
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\css[2].css
Size 5.0KB
Processes 2688 (iexplore.exe)
Type ASCII text
MD5 701e92baaed0e9c0f1d7601a11d9c2d9
SHA1 38a5353e7fb8980738434f9925550bad60000d38
SHA256 bb05df97e539eaf33b3a48224c1e9903b41d0d0925e9e062e7e3a4b3248f15e9
CRC32 653DBCDC
ssdeep 96:SYg1tBYOJYgEtBYOcYgXtBYO1YgxMtBYOdYgptBYOkYgwhtBYObO1tB/OEtBkOX/:HEExHWATY4XVstRAnv637N1lNJkNHPNQ
Yara None matched
VirusTotal Search for analysis
Name 5ae0bc788b44421a_{bdaefb3a-ba49-11ed-948e-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{BDAEFB3A-BA49-11ED-948E-94DE278C3274}.dat
Size 5.0KB
Processes 2608 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 b5a22940d92664789a75b0b570a63878
SHA1 9ae2ae93aac64adcc0427d80309082ae9e52cb93
SHA256 5ae0bc788b44421a620bf59655164a9db7aaab137b6b4d4eadd236d1bd1b8262
CRC32 124D6756
ssdeep 24:rh+xGqyqNlpokHwQsxVAlshrONlpoQHs7I5:rhOGj0okPsnA6rooQHs7g
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis