Dropped Files | ZeroBOX
Name d5da2f5dcc862e4d_~wrs{9989781a-ad0c-41c5-a96b-dea8a6b43e8a}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{9989781A-AD0C-41C5-A96B-DEA8A6B43E8A}.tmp
Size 42.0B
Processes 3036 (WINWORD.EXE)
Type data
MD5 08ec78afcc9f691eadb1cec3a74224a4
SHA1 57d013445cbdf0437b76c586d31ac365244f7d4c
SHA256 d5da2f5dcc862e4d640edc9634ca287b021edcdb02ae505e42ad5deb7ca67194
CRC32 F8D303DA
ssdeep 3:blQRflWuXhJFlWl:SyGq
Yara None matched
VirusTotal Search for analysis
Name fc3a22553b0b9c52_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 3036 (WINWORD.EXE)
Type data
MD5 4a1f4ab6408b7fdf10667af524456e21
SHA1 d967089a53ebfd34144d41b4163c08adf2401df7
SHA256 fc3a22553b0b9c52f3c622d5934a5b1793b2be06c92aa7cbb1b6c988ab4739fb
CRC32 13DE48BD
ssdeep 3:yW2lWRdvL7YMlbK7g7lxIt7mk/tyXhllFrll:y1lWnlxK7ghq7T/tyxdj
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{29cc6ee8-b43d-47fc-a52c-acb10075752e}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{29CC6EE8-B43D-47FC-A52C-ACB10075752E}.tmp
Size 1.0KB
Processes 3036 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name 524f58ec08aaa75c_~$tracted_at_0x22cf4.rtf
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$tracted_at_0x22cf4.rtf
Size 162.0B
Processes 3036 (WINWORD.EXE)
Type data
MD5 51d86d156581f9e454b61893c1b9f921
SHA1 8c41ce13ccde29f224f66efa132ee629ca691515
SHA256 524f58ec08aaa75cd53356b0c283a325ba4e41502b38af440cd285eada5dec04
CRC32 2626E811
ssdeep 3:yW2lWRdvL7YMlbK7g7lxItbsuXhllFrll:y1lWnlxK7ghqbNxdj
Yara None matched
VirusTotal Search for analysis