Dropped Files | ZeroBOX
Name 62c8e13eb1fef81d_javadeployreg.log
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\JavaDeployReg.log
Size 23.0KB
Processes 1844 (iexplore.exe)
Type ASCII text, with CRLF line terminators
MD5 90b2fb5533784abc8306a97432792abd
SHA1 c0203a55fb25d27804acd1bad3abe8620f9cc4ad
SHA256 62c8e13eb1fef81d81f320795d7b8738d9d645c8b0bedbfdbd1a0464c7d24763
CRC32 BF1AAAC7
ssdeep 384:oO2NyexTlaL733333Dz0gRS6P9EmcgK2zsno+nIXAMURoDfTPu7ejKxxxxxjBXX7:X2NdSL733333Dz9d9TcgK2zsno+nIXAn
Yara None matched
VirusTotal Search for analysis
Name 9f36517ded7beacb_sophia.json
Submit file
Filepath C:\Users\test22\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Reader\SOPHIA.json
Size 138.0B
Processes 3036 (AcroRd32.exe)
Type ASCII text, with no line terminators
MD5 e0bdc95011041c446156ab16cf44c0bf
SHA1 dee169c7dcba25913dbb15fb62d3a534111da183
SHA256 9f36517ded7beacbf808e91ba85dd9dd7e3ca29207f2886c27669e79de9d411e
CRC32 542A0EEF
ssdeep 3:YEH5chxs2H7GxvBxs2HOx9xJvDTHWeiXx6K3Aon/GzNLV6n:YEcZqxvHZOvGeIln/2Nsn
Yara None matched
VirusTotal Search for analysis
Name f91dbb7c64b4582f_CrashpadMetrics.pma
Submit file
Filepath C:\Users\test22\AppData\Local\Google\Chrome\User Data\CrashpadMetrics.pma
Size 1.0MB
Type data
MD5 03c4f648043a88675a920425d824e1b3
SHA1 b98ce64ab5f7a187d19deb8f24ca4ab5d9720a6d
SHA256 f91dbb7c64b4582f529c968c480d2dce1c8727390482f31e4355a27bb3d9b450
CRC32 C0582FA7
ssdeep 12:bHi0pXhVMMBKEKSCemJKlkQITagigpCbEyIXuYJ0IppPK6BsyW1inPiz:bTpROMMBS+Mkv/igpFzeYWIX1BtXP
Yara None matched
VirusTotal Search for analysis
Name 81ff65efc4487853_testing
Submit file
Filepath C:\Users\test22\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Reader\Files\TESTING
Size 4.0B
Processes 3036 (AcroRd32.exe)
Type data
MD5 dc84b0d741e5beae8070013addcc8c28
SHA1 802f4a6a20cbf157aaf6c4e07e4301578d5936a2
SHA256 81ff65efc4487853bdb4625559e69ab44f19e0f5efbd6d5b2af5e3ab267c8e06
CRC32 FF41D9ED
ssdeep 3:e:e
Yara None matched
VirusTotal Search for analysis
Name 766105e18986eb29_RecoveryStore.{8476AFA3-D994-11ED-AC50-94DE278C3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{8476AFA3-D994-11ED-AC50-94DE278C3274}.dat
Size 5.0KB
Processes 1652 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 7f81470cf2b51794c6a73fd876d41a4e
SHA1 293224e36ba3fab067078e8b99bd0afae7224507
SHA256 766105e18986eb29555407b73b782f1a0c216e5a9c58a05922c791a79da4bfab
CRC32 A575B576
ssdeep 12:rlfF2oWrEg5+IaCrI0CI7eF2FcTrEgmZ+IaCrI0CIc8GmRVOeMiqI771NlTqbaxa:rqoW5/fFcTG5/k85jBM+NlWzgNlW
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 0e3dc4ccd259716b_settings.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad\settings.dat
Size 40.0B
Processes 3004 (chrome.exe) 2476 (chrome.exe) 2120 (chrome.exe) 3232 (chrome.exe)
Type data
MD5 62325aa04f35880232330f344df8018c
SHA1 58fe9532ee8d96e8d12448408cf3ccf9d0542543
SHA256 0e3dc4ccd259716b24376fddb4ee07a6c227f8bcb2532a7dd75bb36a4290e7cc
CRC32 6F0BEA7C
ssdeep 3:FkXJRYcTUM:+wcTb
Yara None matched
VirusTotal Search for analysis
Name 534eb1463c6334db_{8476AFA4-D994-11ED-AC50-94DE278C3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{8476AFA4-D994-11ED-AC50-94DE278C3274}.dat
Size 4.5KB
Processes 1652 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 377186ec111fe5851744016fbbd679a4
SHA1 05462cf202989d55cef27ed65ec17ff949093c5b
SHA256 534eb1463c6334db5b4fb55715a4c619c56830fb44cd12c461d328ef49b2ff76
CRC32 1038B621
ssdeep 12:rlxAFtrEgmfl7KFS4WrEgmfS7qwbbNls8JbaxofN45QEslNlugbaxofN45QEsAH6:ryGL4WGKbbNls47NBlNlH7NBC6
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name d060ad21ae6e04cb_CrashpadMetrics.pma
Submit file
Filepath C:\Users\test22\AppData\Local\Google\Chrome\User Data\CrashpadMetrics.pma
Size 1.0MB
Type data
MD5 9543068b6751e1f3e11f91d72ee78d95
SHA1 b1008dfd703aafa529c36c9e68aebfa6237105f8
SHA256 d060ad21ae6e04cb58668caa52adfca573e018102cc07554d2ed3eae11ab7785
CRC32 23255A84
ssdeep 12:bHikaXhVMMBKEKSCemJKlkQITagigpCbUlQpYJ0X:bWROMMBS+Mkv/igp1lYYW
Yara None matched
VirusTotal Search for analysis
Name fce39977132fc607_{92ab23f0-d994-11ed-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Last Active\{92AB23F0-D994-11ED-AC50-94DE278C3274}.dat
Size 4.5KB
Processes 1652 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 47e8b3dc965db1c24e32944644fb6cdf
SHA1 5001f4caf644bff7e49ef203d92ee98e6a20971a
SHA256 fce39977132fc6078dcee851d7f2fcfc18454cf417bfc0d6fb3bde23692b6d66
CRC32 E8E5C907
ssdeep 12:rlxAFcrEgm8GL7KF2dWrEg5L89p6qsuNl26abax1NlugbaxofN45QEsAH45Q2:r7G8GdWy9wuNlIoNlH7NBC6
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 844c2f84fcf109c4_index.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012021102520211026\index.dat
Size 32.0KB
Type Internet Explorer cache file version Ver 5.2
MD5 a0703701b47161a7f51e07b24e71a2e5
SHA1 4dda8aa56c07fe107d4180f6838fb2b8ee52506b
SHA256 844c2f84fcf109c4f7c691777b0da0126552114365e089ce48359c4531a75abb
CRC32 60583F7E
ssdeep 12:qj/XrW3riVW1hUa41dT3riVFhUv2fF3MtkBbWUa4u3g20TG5Q7UaBgSR:qj/bwiEwaWiGv2ikpam20TgQQae
Yara None matched
VirusTotal Search for analysis
Name 01c4aa93ae772cc3_debug.log
Submit file
Filepath C:\Program Files (x86)\Google\Chrome\Application\debug.log
Size 990.0B
Processes 1968 (chrome.exe) 3024 (chrome.exe) 1596 (chrome.exe) 3376 (chrome.exe)
Type ASCII text
MD5 3500e380f5aefb8e43d29cc0a6fb3629
SHA1 cf245eaf4f3004ac3ca7226e08812bdff17c7dab
SHA256 01c4aa93ae772cc34033c77e90b25b7ae99debbcc61040119d1f7a2b54372f61
CRC32 3869DBAD
ssdeep 24:OkvDaXLG6w3IXXLG6w3IHGBIBBjZGj1MXjjjXE:KLGbIHLGbIHGaBBjQj16jjjXE
Yara None matched
VirusTotal Search for analysis
Name a99553f7a590df3d_recoverystore.{fb31cdce-df10-11eb-a327-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Last Active\RecoveryStore.{FB31CDCE-DF10-11EB-A327-94DE278C3274}.dat
Size 3.5KB
Processes 1652 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 95a5d3bb50d91ab26985a0bca22ab1b8
SHA1 bf2c9b5a284a240e4a18d88f2411f6f17a79690b
SHA256 a99553f7a590df3d3e54affe85de6012aa17a8b0ba83cedc647e45abf00a85c5
CRC32 889D4503
ssdeep 12:rl0YmGF2DrEg5+IaCrI0F7+F2IWrEg5+IaCrI0F7ugQNlTqbaxAEGH:rID5/1IW5/3QNlW/EY
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 89b99e2af798547c_{2E567F3A-3557-11EC-8BFE-94DE278C3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Last Active\{2E567F3A-3557-11EC-8BFE-94DE278C3274}.dat
Size 80.0KB
Type Composite Document File V2 Document, Cannot read section info
MD5 1837182d61ae8facddcc3e6f35eacf50
SHA1 74f0bb05c0a58d656dc7c2fe561d7e9c3834b4b5
SHA256 89b99e2af798547cddf157494c0a4dff4ddca3e6bb449b532070a27ca89410f7
CRC32 C568DB37
ssdeep 1536:XBvdJaBoQHrMXx7TUtCYm7jUuqzgSB3Q:XBveBocuF4CtjmB3Q
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis