Dropped Files | ZeroBOX
Name fc3a22553b0b9c52_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 3028 (WINWORD.EXE)
Type data
MD5 4a1f4ab6408b7fdf10667af524456e21
SHA1 d967089a53ebfd34144d41b4163c08adf2401df7
SHA256 fc3a22553b0b9c52f3c622d5934a5b1793b2be06c92aa7cbb1b6c988ab4739fb
CRC32 13DE48BD
ssdeep 3:yW2lWRdvL7YMlbK7g7lxIt7mk/tyXhllFrll:y1lWnlxK7ghq7T/tyxdj
Yara None matched
VirusTotal Search for analysis
Name cc1a1a5a83a1bfec_~$tracted_at_0x25b50.rtf
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$tracted_at_0x25b50.rtf
Size 162.0B
Processes 3028 (WINWORD.EXE)
Type data
MD5 5bf3a5fd5f98861f72edfb94bef7faaf
SHA1 8b354afe0652550965566e5f911a597ea8a2cc4c
SHA256 cc1a1a5a83a1bfec84f09b7c1a8f0b5cb6bb30e6eb0b83b42ea41daa6faa53d6
CRC32 DE12A2BC
ssdeep 3:yW2lWRdvL7YMlbK7g7lxItOsXtyXhllFrll:y1lWnlxK7ghqOsXtyxdj
Yara None matched
VirusTotal Search for analysis
Name 3fc540b49cd9ac4c_~wrs{1abc280d-bc8f-4cf5-b222-e1930bd2b1f2}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{1ABC280D-BC8F-4CF5-B222-E1930BD2B1F2}.tmp
Size 66.0B
Processes 3028 (WINWORD.EXE)
Type data
MD5 21260bedd5d3ae04196bf7e94da73721
SHA1 44e70ddcd2df0c74114a65f22e26096920db5e9e
SHA256 3fc540b49cd9ac4cc21c090b8125a86d882e45ff8ffccf862f62071643379911
CRC32 62A60B07
ssdeep 3:qlAmPlQl1DRicRMwpFGwwf:e9Sl1XRMwp0/f
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{7acc491c-fce2-41ba-ad0d-c45c3b66af89}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{7ACC491C-FCE2-41BA-AD0D-C45C3B66AF89}.tmp
Size 1.0KB
Processes 3028 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis