Dropped Files | ZeroBOX
Name 4826c0d860af884d_~wrs{7adcf0ea-6539-46e0-8674-a9c912ac3903}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{7ADCF0EA-6539-46E0-8674-A9C912AC3903}.tmp
Size 1.0KB
Processes 2628 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name 360f87ad520cf0f1_~wrs{279f828e-7e43-4b34-b240-45d5ec5c0bdc}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{279F828E-7E43-4B34-B240-45D5EC5C0BDC}.tmp
Size 32.0KB
Processes 2628 (WINWORD.EXE)
Type data
MD5 5e5f8be6603517e2c60058d30c9ca94f
SHA1 0d0a7ea896414ec751ec4ca5eaa5594e4094549e
SHA256 360f87ad520cf0f1dd1daa4c5648eedc2564d39723e6d882e8d08e11713b3d1c
CRC32 EEE4996A
ssdeep 768:CgI2Q5Q6IQXwvW5Kq2g03vByeLOcO/LKPLnfQblqI:hSyemTByFfKL1I
Yara None matched
VirusTotal Search for analysis
Name 422caae351658d40_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 2628 (WINWORD.EXE)
Type data
MD5 57cea407a82308d1f44975acd1543e12
SHA1 cdb98f6830d2a4fd8037c2b9f43e0fddab6052c7
SHA256 422caae351658d40b64dab654bc64bd4e5ec0b9e2352f3d7f078e97aafae1673
CRC32 45DAD677
ssdeep 3:yW2lWRdvL7YMlbK7ldt:y1lWnlxK7
Yara None matched
VirusTotal Search for analysis
Name 51481530b310afe5_~$llionzx.doc
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$llionzx.doc
Size 162.0B
Processes 2628 (WINWORD.EXE)
Type data
MD5 2337b10b100a0635d35f3649bfde0427
SHA1 ba6814e3b2052ca31e64029f31d9fd767502a626
SHA256 51481530b310afe5d872fdd2330885c2d473cb6c91bc8943ecd2b1d00cc8f67d
CRC32 A630F7CA
ssdeep 3:yW2lWRdvL7YMlbK7lhZpnNWiqnlZr/t:y1lWnlxK7RpnEicl
Yara None matched
VirusTotal Search for analysis