Dropped Files | ZeroBOX
Name ac0ef483dd6ec288_fsf-ctbl.fsf
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\FSF-CTBL.FSF
Size 114.0B
Processes 3060 (WINWORD.EXE)
Type data
MD5 b18c238ab708325bc8abcad106555c7a
SHA1 2914366c6c05c52d155ae2232014a97d97f34982
SHA256 ac0ef483dd6ec2886c6196e4b7005d7e124b5ed951dab6cdceed36c7f377428e
CRC32 219C1CFD
ssdeep 3:yVlgsRlzHNlglS8WIlph+dz8acQ3+lzYxZEmf276:yPblzHQIWYp8acQqcxt22
Yara None matched
VirusTotal Search for analysis
Name 849c3f74e13ecf01_~$460.docx
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$460.docx
Size 162.0B
Processes 3060 (WINWORD.EXE)
Type data
MD5 61a17b7bf6750114cc3e8991a20dbb24
SHA1 93782263187eaca872aaac1390126c55bb746c1d
SHA256 849c3f74e13ecf01f3935896346001903ccea334e62ea7d5320d1eb4c8ac6f2f
CRC32 CF6CC10D
ssdeep 3:yW2lWRdvL7YMlbK7g7lxIt50iSjlVtYsl7Xhn:y1lWnlxK7ghqqFYsJxn
Yara None matched
VirusTotal Search for analysis
Name c055bb2a14d36da4_fsd-cnry.fsd
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\FSD-CNRY.FSD
Size 128.0KB
Processes 3060 (WINWORD.EXE)
Type data
MD5 621489ca0fc93b4a6e086e9ce67f61e8
SHA1 19dfba330097a71d6515e05563d9b26245ee82f8
SHA256 c055bb2a14d36da4b01d3605130ba1d9ad680ab1a221fe7a2c11d18d307bc121
CRC32 AF3D6909
ssdeep 96:K70iDYb1ZxfrnRvmIwyU33wBRGhMABEst6ust69H:3iDEJfrnRvmIi3ABRGhMABV6/6p
Yara None matched
VirusTotal Search for analysis
Name 53c7e9eceecd496a_fsf-{0e1eee64-e8c6-4e2a-9759-63cf07fd8988}.fsf
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\LocalCacheFileEditManager\FSF-{0E1EEE64-E8C6-4E2A-9759-63CF07FD8988}.FSF
Size 114.0B
Processes 3060 (WINWORD.EXE)
Type data
MD5 7a4ebf599af5587dcdf99e61388fd6f3
SHA1 d0df687afcd042cdacaf0b1db66800db44b3ea5c
SHA256 53c7e9eceecd496a04dccba87a361fdfb7331b3597882d0c38715ec50af9644d
CRC32 AB151FF6
ssdeep 3:yVlgsRlzv6ljBochY/XnqIlhlSPWGOmFl276:yPblzv6lucqqIlzSPIu22
Yara None matched
VirusTotal Search for analysis
Name 4c4888a167db19af_fsd-cnry.fsd
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\LocalCacheFileEditManager\FSD-CNRY.FSD
Size 128.0KB
Processes 3060 (WINWORD.EXE)
Type data
MD5 7b4b4977798f1213b168dbb92f4650d2
SHA1 8f0ae26a5d7b2f5ccd11b30e0a71a08dc44d3459
SHA256 4c4888a167db19af3eb58e1db9359f72bdee11de22df32de4fd5c74bfdf468d1
CRC32 C5503F9F
ssdeep 48:I3MYkwBsAc5cpA8u2ADAmKfGouSut2I60+6UCnrnT5zuNyiADNyiAwH:KLsL5HdjUmK+FSutN60+6UCrnFzBMwH
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{c78621db-b8db-4f41-b6b8-96d55630718a}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{C78621DB-B8DB-4F41-B6B8-96D55630718A}.tmp
Size 1.0KB
Processes 3060 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name 5f0edb6afb9e9efe_~wrs{f20cefbd-21c8-415e-9e21-11fbdf0b538e}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{F20CEFBD-21C8-415E-9E21-11FBDF0B538E}.tmp
Size 8.5KB
Processes 3060 (WINWORD.EXE)
Type data
MD5 4c2cd4fe59ed4a77cbd93fa97bfdc419
SHA1 0875a584638aea1bb87707ea1981e84be5acd60a
SHA256 5f0edb6afb9e9efe25226f5132ae2f85f156b9df56233090a07cd4c730c6bad9
CRC32 17DD7291
ssdeep 96:GqPezZBztuPy9oTbYjuuqS8Fv99apEzCWvz6n:GieDZIymPYi1S8B99CeCW+n
Yara None matched
VirusTotal Search for analysis
Name 2a05e9722670303b_fsd-{c3ef7a02-e73d-4f5d-86bf-b27bdc075d21}.fsd
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\LocalCacheFileEditManager\FSD-{C3EF7A02-E73D-4F5D-86BF-B27BDC075D21}.FSD
Size 128.0KB
Processes 3060 (WINWORD.EXE)
Type data
MD5 6a5175a14a92cca35d8dd64b7bdd7968
SHA1 0c12424dcb2aa75601ab47895f7bd0b5838f2258
SHA256 2a05e9722670303b69be9175b7dcbf46ef169519fe24c4a545789f49805672b2
CRC32 E38D946D
ssdeep 48:I32kHrBU+JzyuY7Nx2EtBY5Mcn2tOtWSbHsgaXBTaXBC:KjZM6MckNSbHsgaxTaxC
Yara None matched
VirusTotal Search for analysis
Name 3e6ed6443fa93d7c_fsd-{192e7387-6d58-45ca-ae52-24d41061be98}.fsd
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Office\14.0\OfficeFileCache\FSD-{192E7387-6D58-45CA-AE52-24D41061BE98}.FSD
Size 128.0KB
Processes 3060 (WINWORD.EXE)
Type data
MD5 dc0462e5fc4f0adcd1cc427767b4b0c3
SHA1 22f4b7239e9863b4d8154f08ce3f01047a9e2c23
SHA256 3e6ed6443fa93d7c6b7a098147f8da95d9827517143d0df692401f4efdf9aa95
CRC32 B2783CD8
ssdeep 96:KxayyraO5vpOSbn6dWrf7ioGiboNcWCITgs8VS6lQzNLZQzNL:zrfvVnFrjGhCEgb
Yara None matched
VirusTotal Search for analysis
Name d516a371b6fc0a52_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 3060 (WINWORD.EXE)
Type data
MD5 56a4532b2fc2cf6fd4ec62a29758d231
SHA1 60f68bd8ac5b3f7290daa236bebd5f9c0f1510fd
SHA256 d516a371b6fc0a5270a1323f271bc2a36bc34f9cf06c783a642020c0da8948c3
CRC32 E93E4529
ssdeep 3:yW2lWRdvL7YMlbK7g7lxIt50iSjlVtNmk/tyXhn:y1lWnlxK7ghqqFNT/tyxn
Yara None matched
VirusTotal Search for analysis