Dropped Files | ZeroBOX
Name 5b62add268657224_~wrs{c4e2f51f-dac9-49fc-b9d5-108c335c54a4}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{C4E2F51F-DAC9-49FC-B9D5-108C335C54A4}.tmp
Size 20.5KB
Processes 2064 (WINWORD.EXE)
Type data
MD5 27c03d1f8c3e54960826b746b942011a
SHA1 2eb15cc91b20a25e0f5b54db6c6ff4b041d9dcfa
SHA256 5b62add268657224964daf5bc177fc272741f5a8214db0765339794dd8bb7733
CRC32 F41EED42
ssdeep 384:BgxuPmZ2HYZa5Q5VmIQXwvW5Kq2g0apD5GcN1wD:BgI2Q5Q6IQXwvW5Kq2g0qD5V6D
Yara None matched
VirusTotal Search for analysis
Name 099432c096d39872_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 2064 (WINWORD.EXE)
Type data
MD5 9d93ad1c9e62aa2a0a265d283eee1c43
SHA1 80ce111ff42b7846bb539a90a6c4577c5a9d8caf
SHA256 099432c096d39872213d83397105de6b272ca7f0c555ff33191ec9f824549605
CRC32 0E55AA17
ssdeep 3:yW2lWRdy4loW6L702l7TK7aNEHItvuEN//:y1lWDoWmACTK7azvuMX
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{be4cde31-8279-41d0-b946-07cb50716005}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{BE4CDE31-8279-41D0-B946-07CB50716005}.tmp
Size 1.0KB
Processes 2064 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name f33bdb5763af3ddd_~$lertzx.doc
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$lertzx.doc
Size 162.0B
Processes 2064 (WINWORD.EXE)
Type data
MD5 1a6968c459457017b22efa9eafb24294
SHA1 0f1068031ad3d7b509f37b829e35c386b57053d9
SHA256 f33bdb5763af3dddf544a407e13a5c837ba844629cc8284d1123b7083af75d4e
CRC32 0F62A130
ssdeep 3:yW2lWRdy4loW6L702l7TK7aNEHItvuaS/l:y1lWDoWmACTK7azvuXt
Yara None matched
VirusTotal Search for analysis