Dropped Files | ZeroBOX
Name 48f6d57c29498267_recoverystore.{849598a5-2a8b-11ee-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{849598A5-2A8B-11EE-AC50-94DE278C3274}.dat
Size 4.5KB
Processes 3060 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 fb5c5dc60fc2d56c5c6485f4f2167cbe
SHA1 c13a78e8c5938c0d4f1b768febadaa1e363ae61b
SHA256 48f6d57c2949826756f3df017eb46e453f70338ff2adb89f75389af361db6881
CRC32 BC4CFEFB
ssdeep 12:rlfF2tHrEg5+IaCrI0F7+F2LJxrEg5+IaCrI0F7ugQNlTqbaxotNlTqbaxo:rqtH5/1tx5/3QNlWJNlW
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 9ec287850d47739e_{849598a6-2a8b-11ee-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{849598A6-2A8B-11EE-AC50-94DE278C3274}.dat
Size 7.0KB
Processes 3060 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 016abde2c8fddc25d6dbc8cbe41927ff
SHA1 76c63218161cb212e0b4ff48f2f32d73a94d41be
SHA256 9ec287850d47739e3caa94c2032cdc53b232f706a40f8dd218e4e4dbf20b9667
CRC32 05F3CB2E
ssdeep 48:rHGr0/UXhPRLdg55NDz+DVex8EvykhPRLdgDz+Dxz+Dfz+DrEbQ366SptMOJsDzb:RCG5vXiVeDvGXiFibirN3mSXi+h
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 0ed5b0823e71e0e3_590aee7bdd69b59b.customDestinations-ms~RF7019a1.TMP
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\590aee7bdd69b59b.customDestinations-ms~RF7019a1.TMP
Size 7.8KB
Processes 756 (powershell.exe) 612 (powershell.exe)
Type data
MD5 f4a8a3e56bca0190031a365f104571cf
SHA1 7a4eac7016b8feca961f757cfe05bfeb4b76c10f
SHA256 0ed5b0823e71e0e3262a8a73ff269499135b20c9c5aa71e34b57a9f43218ed41
CRC32 E95A2C69
ssdeep 96:QtuC6GCPDXBqvsqvJCwoFtuC6GCPDXBqvsEHyqvJCworQStDHXyWlUVul:QtbXoFtbbHnorFTyo
Yara
  • Antivirus - Contains references to security software
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis