Dropped Files | ZeroBOX
Name 82124b29c97b8f26_~$obizx.doc
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$obizx.doc
Size 162.0B
Processes 3036 (WINWORD.EXE)
Type data
MD5 1405e7c6abc949aed2b1101f1209ff5b
SHA1 6498702188ee116cb1951b8fe428d1176fd68838
SHA256 82124b29c97b8f2647f34f5d8ef144e91675f4f6cbeca6772476729060a8f51c
CRC32 F8D02208
ssdeep 3:yW2lWRdvL7YMlbK7g7lxIt50iSjlVtYsXtyXhn:y1lWnlxK7ghqqFYsXtyxn
Yara None matched
VirusTotal Search for analysis
Name d250d3a9f7e2e5ce_~wrs{66311943-eb3a-49b2-ada8-b8ca5439d0fc}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{66311943-EB3A-49B2-ADA8-B8CA5439D0FC}.tmp
Size 20.0KB
Processes 3036 (WINWORD.EXE)
Type data
MD5 bb6d4d1c9b80d963bafa85fbfa313733
SHA1 6afb838b84dcbe6db3278c80663104f719d599d4
SHA256 d250d3a9f7e2e5ce1f2e06ec72e32f5c06c979bad0d628b2ac44c7c5e48c6f81
CRC32 60038D8C
ssdeep 384:4gxuPmZ2HYZa5Q5VmIQXwvW5Kq2g0ypoigS:4gI2Q5Q6IQXwvW5Kq2g0ypoC
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{9f29a9db-a0e7-4110-99c7-572ab6617f1a}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{9F29A9DB-A0E7-4110-99C7-572AB6617F1A}.tmp
Size 1.0KB
Processes 3036 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name d516a371b6fc0a52_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 3036 (WINWORD.EXE)
Type data
MD5 56a4532b2fc2cf6fd4ec62a29758d231
SHA1 60f68bd8ac5b3f7290daa236bebd5f9c0f1510fd
SHA256 d516a371b6fc0a5270a1323f271bc2a36bc34f9cf06c783a642020c0da8948c3
CRC32 E93E4529
ssdeep 3:yW2lWRdvL7YMlbK7g7lxIt50iSjlVtNmk/tyXhn:y1lWnlxK7ghqqFNT/tyxn
Yara None matched
VirusTotal Search for analysis