Dropped Files | ZeroBOX
Name 6eadb53ecda59628_ibc2iz3o.txt
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Cookies\IBC2IZ3O.txt
Size 128.0B
Processes 2700 (iexplore.exe)
Type ASCII text
MD5 c11d7cb14ef072e18d5439fed09ced49
SHA1 b9a648ebd4eaab55913a8d111dffd5189c6a21f6
SHA256 6eadb53ecda596288d029f2a95a95ec04eccbc6aa713a5632f217e7a1a907ef8
CRC32 83334E8A
ssdeep 3:LDM8vUKprzxEAQDQkfGdhx9MmExKJ3uJcSMK6dV7gXRQLRviT6/:Lg+1XEAQcBbx760+SVvO4Rvj/
Yara None matched
VirusTotal Search for analysis
Name 1beb05868ce93bcc_IE9CompatViewList[1].xml
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTDTA402\IE9CompatViewList[1].xml
Size 141.8KB
Type XML 1.0 document, ASCII text, with CRLF line terminators
MD5 9b63e0fb3785ffa49686dd75e303d177
SHA1 e3992de5a1b8f58a11a52ad71f275ae413927eb4
SHA256 1beb05868ce93bcc8fafc46adccdda6d104f3c6f6c6ed454d8a6c0c208d9bd0e
CRC32 F778EDEF
ssdeep 3072:AoSMrEDL1FwhdFFaz6l8vHG+TbFPAzepobjyG7I1K1IB2+Tir8v1IG9aIedyPcFC:dSMrEDL1FwhdFFaz6l8vHG+TbFPAzepR
Yara None matched
VirusTotal Search for analysis
Name a43ae239865e2369_J75HH1Y0.txt
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Cookies\J75HH1Y0.txt
Size 89.0B
Processes 2700 (iexplore.exe)
Type ASCII text
MD5 f2db13d40d14fa17190b72d702e385b6
SHA1 fcb71c0cd502266b295e8bf1fbb2408e316df9e4
SHA256 a43ae239865e2369297e34bf7ed4be7b71150a144baee0be9bf21036976bdebe
CRC32 5A0C15C2
ssdeep 3:gxqKsajVT/xGmEwvInGTKvcXbXQVx7USkCRWXvWU2T6/:2vGz1nGRXbtSkCRQvj/
Yara None matched
VirusTotal Search for analysis
Name 49a73ce8c0530942_recoverystore.{20e6601f-ea3d-11ee-948e-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{20E6601F-EA3D-11EE-948E-94DE278C3274}.dat
Size 4.5KB
Processes 2620 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 439917eb64fae0d54dcb4e422aa818a1
SHA1 6302e2b9b7fdefd4def6dc3017c3e147fadc250c
SHA256 49a73ce8c0530942cd5b98cc21f381206cb3958a746b03ce95361532a8f5fa9d
CRC32 1370432A
ssdeep 12:rlfF2vjDOrEg5+IaCrI0F7+F2oDQrEg5+IaCrI0F7ugQNlTqbaxONlTqbax:rqrDO5/1oDQ5/3QNlWLNlW
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name ae05c79df1132d0e_gv19onqu.txt
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Cookies\GV19ONQU.txt
Size 193.0B
Processes 2700 (iexplore.exe)
Type ASCII text
MD5 ae9d7cdefe1e5db08e5b41f30a8a143e
SHA1 7734e47202aac7f6670ad7479db954c86f3869f8
SHA256 ae05c79df1132d0e13d9d9ec187320732c557f62c653ab87dbdc5a637a80a9eb
CRC32 6B12FD37
ssdeep 6:2vGz1nGRXbtSkCRQvj7WH0o610GRXbtSkCRQvj/:2vGz1nGRXbtSBRmy0o7GRXbtSBRm/
Yara None matched
VirusTotal Search for analysis
Name ffc79fd4aed20052_{20e66020-ea3d-11ee-948e-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{20E66020-EA3D-11EE-948E-94DE278C3274}.dat
Size 11.0KB
Processes 2620 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 fc04aa4a17aeb3e2a4b708088a105d56
SHA1 547cddb64d822362a8ecd53d119afaf6d95ffd3e
SHA256 ffc79fd4aed20052b4533103ec6d6682c392580a0ba669bac3b3ecb736c288bb
CRC32 E1CAE5C4
ssdeep 192:Mb/I+M/IfIGTb/IJzb/I/zb/Ixzb/IqJuf+zb/IF:AI+EIfbHIJnI/nIxnIinI
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis