Dropped Files | ZeroBOX
Name 831747a6f1e76d0d_c72070df.emf
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.MSO\C72070DF.emf
Size 2.8KB
Processes 3004 (EXCEL.EXE)
Type Windows Enhanced Metafile (EMF) image data version 0x10000
MD5 f6eb4adb47cb825d6ab82f64b9f2b3b9
SHA1 c254cc35b91cbb08b4e646e45231a9a16f553aa2
SHA256 831747a6f1e76d0d49ad8d9160368876d45b713219855c53d681cf8e7adc1545
CRC32 EBB3C746
ssdeep 24:YRZ9He20l5HOZ1dA17rsiIvkaDkCQAF29IhDjaVJUl7IcFAtmNVMVaDpHnRG:IZ9+HFOFC4iI8uwIFeDUxIYvPMVa7G
Yara None matched
VirusTotal Search for analysis
Name 992ef287b6705d7c_msforms.exd
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\Excel8.0\MSForms.exd
Size 220.6KB
Processes 3004 (EXCEL.EXE)
Type data
MD5 a27079b6c48daadd49ea9062372f74f0
SHA1 d1ee2c440c8a48c340d9d4d54e33bca4db5f106d
SHA256 992ef287b6705d7c5dec9b952a6e8a510704375e0cacd7f6c2c3fb4eebf00cc9
CRC32 B222D392
ssdeep 1536:c2ULgQNSk8SCtKBX0Gpb2vxQHnVMOkOX0mRO/NIAIQK7viKAJYsA0ppDCLTfMRsi:c5BNSk8DtKBrpb2vx1Opprf/ng
Yara None matched
VirusTotal Search for analysis
Name 380a2c3696be2e09_f659554.emf
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.MSO\F659554.emf
Size 2.8KB
Processes 3004 (EXCEL.EXE)
Type Windows Enhanced Metafile (EMF) image data version 0x10000
MD5 231aed5477dcb8ad44aa9f44662ca6ea
SHA1 4f42c4a95d020a5976aa55f2c7fc146a7cb18dd6
SHA256 380a2c3696be2e09d3318af9a963cb28b61fc9e577a42b03b4fe94ecd19e8703
CRC32 D53395D9
ssdeep 24:Y8Nl0prqjMwx6A13LXbqD1wWt0Dy3tXtdxdzD9GuNJUlkHOnTW5ymDT:DKwx6MvaiDy3tXtdxd/PrUad
Yara None matched
VirusTotal Search for analysis