Dropped Files | ZeroBOX
Name 35b2b5fdef7bbb05_~$koob7.doc
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$koob7.doc
Size 162.0B
Processes 2560 (WINWORD.EXE)
Type data
MD5 af4989a0d3749c5d6803285c4c26ce15
SHA1 f050fee5e7c8dfa3ec85efd5757049521092baef
SHA256 35b2b5fdef7bbb0570c2942a59e60b210b6912ab45be317a9cb5b2e51b268b4a
CRC32 4DFEB21D
ssdeep 3:yW2lWRdvL7YMlbK7lhZ2nAke:y1lWnlxK7Rdk
Yara None matched
VirusTotal Search for analysis
Name a9127fb70fa6438a_~wrs{e8a7ede8-8c29-4445-85b4-f656c24827bd}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{E8A7EDE8-8C29-4445-85B4-F656C24827BD}.tmp
Size 24.5KB
Processes 2560 (WINWORD.EXE)
Type data
MD5 12c73ebb20b029be66aff40e306e1158
SHA1 8212d16ce2373757e802e98ba5869bf6ffe8c5bd
SHA256 a9127fb70fa6438a03e86437636716a94657aab6a33f3d3f9a1aa97b827a4126
CRC32 60BB8E9A
ssdeep 384:VgxuPmZ2HYZa5Q5VmIQXwvW5Kq2g0R96DobMqamOWJ:VgI2Q5Q6IQXwvW5Kq2g0R928NamOWJ
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{bfb6cb33-d795-45a3-83f9-e6d7f4190124}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{BFB6CB33-D795-45A3-83F9-E6D7F4190124}.tmp
Size 1.0KB
Processes 2560 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name 955e0f806c3c2589_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 2560 (WINWORD.EXE)
Type data
MD5 378a5abdaf971f65fafc6fe92c4e9cec
SHA1 ae5757b4504c5f29db4f3318cab2799a1b600e5c
SHA256 955e0f806c3c2589cc56dd5eeba708a1c0b0314656ab5cce18e99008f3aac25a
CRC32 6C42E2A1
ssdeep 3:yW2lWRdvL7YMlbK7lNnX:y1lWnlxK7
Yara None matched
VirusTotal Search for analysis