Dropped Files | ZeroBOX
Name 762e70c93329d759_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 184 (WINWORD.EXE)
Type data
MD5 568155d7bca074de03fcdfec337e4889
SHA1 c3194b710b47584bb25a4b553625760180928ab0
SHA256 762e70c93329d75953b21b78150bc123e1fb10d0a1c831960ffe5a52018d8266
CRC32 ECAC3542
ssdeep 3:yW2lWRdRilvW6L7aAK7lStKFItHl/9t:y1lW81WmRK7ItKWHl/f
Yara None matched
VirusTotal Search for analysis
Name 9692be1aa3fe559e_~wrs{b6a424cd-5825-4470-9fad-b9a3d194b318}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{B6A424CD-5825-4470-9FAD-B9A3D194B318}.tmp
Size 13.0KB
Processes 184 (WINWORD.EXE)
Type data
MD5 76c88dae6ae8db35e684476f9bc37a65
SHA1 e1a20956116cca11083933e0937c2019944e75c3
SHA256 9692be1aa3fe559ec9cfade7ffdf6f6fbaf0296ea72da5d47d31cbf008f017c3
CRC32 8630B1EF
ssdeep 384:4MhlizguBKwqnTck3NvUgCKx/DV5qSN8++yE:DhlizgkSTcmN7RqSPhE
Yara None matched
VirusTotal Search for analysis
Name 7b20faa44475bbb6_~$mlhisotorycleaner.doc
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$MLHisotoryCleaner.dOC
Size 162.0B
Processes 184 (WINWORD.EXE)
Type data
MD5 fbd0ce581c8e7750fc406aaf670a8594
SHA1 d2350a6cba5257da39a8248909f68e74bae52231
SHA256 7b20faa44475bbb63e6e63b3de481887a08cbc648f77b3ec3f484040b68e2d74
CRC32 F7EF6D70
ssdeep 3:yW2lWRdRilvW6L7aAK7lStKFItHlhXzl/n:y1lW81WmRK7ItKWHlhXzt
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{be4cde10-8279-41d0-b946-07cb50716005}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{BE4CDE10-8279-41D0-B946-07CB50716005}.tmp
Size 1.0KB
Processes 184 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis