Dropped Files | ZeroBOX
Name 73fec4bd90960a45_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 808 (WINWORD.EXE)
Type data
MD5 fad6b0ffd3c10bb8e06291ca57806e03
SHA1 13ffa59c8a390623b4eaaeed3f2cd378191a2019
SHA256 73fec4bd90960a45906ea2de4fa9b6af90c2f622cf46da7831ac74d6579a92ee
CRC32 A8284BA0
ssdeep 3:yW2lWRdAXW6L7PlZJK7ZilcItOs/T2Elt:y1lW0XWmblXK7krOMvlt
Yara None matched
VirusTotal Search for analysis
Name b8537cfacf4c73f6_~wrs{1786e930-ac7b-404f-a55a-16203f2e5367}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{1786E930-AC7B-404F-A55A-16203F2E5367}.tmp
Size 15.0KB
Processes 808 (WINWORD.EXE)
Type data
MD5 1cf6199305a3be8dfb421780bb48f4e9
SHA1 b821ec70e27c237f3b9c470d8f73b5bb85a7121a
SHA256 b8537cfacf4c73f60b4bc19a8292de80b855a80452e09fad3f550b112217918e
CRC32 FFDED5BD
ssdeep 384:4/nfkzqs0oSCfHaQuQ4HjsOqy6yqTmQERqwnHHmjaps1z7UQyD0J4fCUfuZ:4E2s0SfHabQby6yumQERhnmjapUp7oC3
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{31d3562f-5cdc-4ae5-9630-1138e3515487}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{31D3562F-5CDC-4AE5-9630-1138E3515487}.tmp
Size 1.0KB
Processes 808 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name abc1533a4ffa62c8_~$xx.x.x.doc
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$xx.x.x.doc
Size 162.0B
Processes 808 (WINWORD.EXE)
Type data
MD5 ea6f70345aa7ad4e04d6c0a96762149d
SHA1 7f25647bfe45752536af318bee3a3723323dcdf8
SHA256 abc1533a4ffa62c866888cfcc7e945f55f4786d1b11e35c9d09e118be04b6e4c
CRC32 696B37DF
ssdeep 3:yW2lWRdAXW6L7PlZJK7ZilcItOs/Tgnlt:y1lW0XWmblXK7krOMult
Yara None matched
VirusTotal Search for analysis