Dropped Files | ZeroBOX
Name 7f58c13ebd9eb224_~wrs{cf8fd8f2-ae3e-44c2-a248-b0dc28c3a780}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{CF8FD8F2-AE3E-44C2-A248-B0DC28C3A780}.tmp
Size 10.0B
Processes 2644 (WINWORD.EXE)
Type data
MD5 d9897980ca715889a1cfd53dcef18ebd
SHA1 62a5b84030c194ba2370a6acaa2a933949c2478e
SHA256 7f58c13ebd9eb2240e98ec8d3a75804d6ac58e341ddf556df07ba9a28f7e3cf0
CRC32 9DFE1271
ssdeep 3:DlXlAeln:DLl
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{b945009c-aa03-4017-a280-ce7561412a2a}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{B945009C-AA03-4017-A280-CE7561412A2A}.tmp
Size 1.0KB
Processes 2644 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name ef3ef6aef9efe0cb_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 2644 (WINWORD.EXE)
Type data
MD5 c6a2a68e89c7198f72c22fc748aa2cc3
SHA1 50ecf3d074b65b239f277e59ea56aca10e13f596
SHA256 ef3ef6aef9efe0cb46faa3fda0c9444360c0bada8b84239bef44534b7a4d2022
CRC32 3DD6D1C2
ssdeep 3:yW2lWRdvL7YMlbK7ljn/l:y1lWnlxK7
Yara None matched
VirusTotal Search for analysis
Name c6e1db4487d37dcc_~$tracted_at_0x21b16.rtf
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$tracted_at_0x21b16.rtf
Size 162.0B
Processes 2644 (WINWORD.EXE)
Type data
MD5 05e050cdf2cb0082f9f9650a9c974d8a
SHA1 6ae07a0dcb99e7ca21f9a9342cd6cc1041267019
SHA256 c6e1db4487d37dcc25dd5ba3c6090f95e168a59a54d6d8bb9e2face4ac18cd63
CRC32 3CC63516
ssdeep 3:yW2lWRdvL7YMlbK7lhZ1Vtb/l:y1lWnlxK7R13
Yara None matched
VirusTotal Search for analysis