Dropped Files | ZeroBOX
Name 3cacf3155efd86bb_{17b4868e-2b76-11ee-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{17B4868E-2B76-11EE-AC50-94DE278C3274}.dat
Size 7.0KB
Processes 3068 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 18f65843607b85ca0d81a33f81c3497e
SHA1 bceb055d542d118b1a0e184968477250374f3568
SHA256 3cacf3155efd86bb5c0dd5ccaa6cb0fde671e7e484e534d22bb7a0f73286b60b
CRC32 7062C8CB
ssdeep 48:rLG1I/UVWhPRai0wJz+5eHvykhPRai0lAccz+5ccz+3ccz+znE+4z3/sa4Jz+Cv5:X8qaipN+eHvaisAcICcIgcIqn1I8N5h
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name ac85c1bc31a4331b_recoverystore.{17b4868d-2b76-11ee-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{17B4868D-2B76-11EE-AC50-94DE278C3274}.dat
Size 4.5KB
Processes 3068 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 49732156ae5491ccb59efb33d5c4f450
SHA1 ce832437bccc0dbe1ee6cc086656a6f7e7e4346d
SHA256 ac85c1bc31a4331bf9557c7274d7056c9c541002d4c6e3253a9789acbc023083
CRC32 F91A9E28
ssdeep 12:rlfF2kZrEg5+IaCrI0F7+F2grEg5+IaCrI0F7ugQNlTqbaxDPXINlTqbaxDP3z:rqkZ5/1g5/3QNlW4PXINlW4P3z
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 0ed5b0823e71e0e3_590aee7bdd69b59b.customDestinations-ms~RF1de46d7.TMP
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\590aee7bdd69b59b.customDestinations-ms~RF1de46d7.TMP
Size 7.8KB
Processes 1728 (powershell.exe) 3044 (powershell.exe)
Type data
MD5 f4a8a3e56bca0190031a365f104571cf
SHA1 7a4eac7016b8feca961f757cfe05bfeb4b76c10f
SHA256 0ed5b0823e71e0e3262a8a73ff269499135b20c9c5aa71e34b57a9f43218ed41
CRC32 E95A2C69
ssdeep 96:QtuC6GCPDXBqvsqvJCwoFtuC6GCPDXBqvsEHyqvJCworQStDHXyWlUVul:QtbXoFtbbHnorFTyo
Yara
  • Antivirus - Contains references to security software
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis