Dropped Files | ZeroBOX
Name 9863327de99bd116_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 2040 (WINWORD.EXE)
Type data
MD5 ba218b17eba871f0f9d80fd7f8a08aff
SHA1 4653f832464f2877df59ba21db7f116af4db7ea7
SHA256 9863327de99bd1165140be25ef413a10e6fd6c5220972ccbf8c64b82496824af
CRC32 E4A6F56A
ssdeep 3:yW2lWRdhayW6L7BqlJK7BXXl/OHItrUXlfZllll:y1lWgyWmkK7ll/O42zlll
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{31d35472-5cdc-4ae5-9630-1138e3515487}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{31D35472-5CDC-4AE5-9630-1138E3515487}.tmp
Size 1.0KB
Processes 2040 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name a0955a361f974077_~wrs{1786e930-ac7b-404f-a55a-16203f2e5367}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{1786E930-AC7B-404F-A55A-16203F2E5367}.tmp
Size 5.5KB
Processes 2040 (WINWORD.EXE)
Type data
MD5 bf22b9951e5d5e4d7868e26880805ce1
SHA1 2fbfba0305a4da7ac051bc2506832393399bd71d
SHA256 a0955a361f97407779eb31251adbf330efce338960368045cc607169621a4de1
CRC32 CBE09C33
ssdeep 96:Pajl5pFzUpPSvqlquLRO+DDEUYrOY8l/6+7nm5uuA:ParApKqlquLZDDlYSTl/BWuZ
Yara None matched
VirusTotal Search for analysis
Name 9d30c3dadffff385_~$.x8.x8.x0x0.doc
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$.x8.x8.x0x0.doc
Size 162.0B
Processes 2040 (WINWORD.EXE)
Type data
MD5 58087ab5d91d9bbec4f85f056ca2e197
SHA1 177de80476a1c200c23363e57132439f8b081f54
SHA256 9d30c3dadffff385c79320784ac8e97c363440607d09b3b13d660fd2a2d87807
CRC32 D83DFD65
ssdeep 3:yW2lWRdhayW6L7BqlJK7BXXl/OHItrUXlfDtn:y1lWgyWmkK7ll/O427tn
Yara None matched
VirusTotal Search for analysis