Dropped Files | ZeroBOX
Name a2ce3a0fa7d2a833_e0f5c59f9fa661f6f4c50b87fef3a15a
Submit file
Filepath C:\Users\test22\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\E0F5C59F9FA661F6F4C50B87FEF3A15A
Size 893.0B
Processes 2700 (iexplore.exe)
Type data
MD5 d4ae187b4574036c2d76b6df8a8c1a30
SHA1 b06f409fa14bab33cbaf4a37811b8740b624d9e5
SHA256 a2ce3a0fa7d2a833d1801e01ec48e35b70d84f3467cc9f8fab370386e13879c7
CRC32 1C31685D
ssdeep 24:hBntmDvKUQQDvKUr7C5fpqp8gPvXHmXvponXux:3ntmD5QQD5XC5RqHHXmXvp++x
Yara None matched
VirusTotal Search for analysis
Name c60c9a2c7ba76e09_recoverystore.{8240206d-2d76-11ef-948e-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{8240206D-2D76-11EF-948E-94DE278C3274}.dat
Size 4.5KB
Processes 2616 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 d2f647d8eb0e4a30378c990c5200f0f7
SHA1 c81af7ed6e82e2e09ff4cf51c7a159d31f1f0608
SHA256 c60c9a2c7ba76e093c47966e41863172e667b31935ca42f747776914b125e761
CRC32 8277612B
ssdeep 12:rlfF2SrEg5+IaCrI0F7+F28SUrEg5+IaCrI0F7ugQNlTqbaxo9XNlTqbaxo9:rqS5/18h5/3QNlWZNlW
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name b65a36ddd85def0f_smartphone-preview.min[1].css
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\smartphone-preview.min[1].css
Size 26.7KB
Processes 2700 (iexplore.exe)
Type ASCII text, with very long lines
MD5 2a6c8d1b72ebf378899a61a22a89920f
SHA1 6b40108a687b50554348f2592bf310fab66143dc
SHA256 b65a36ddd85def0f675ac5897c25598e43dcc39fc2a45aeaabd316f3dc943187
CRC32 0F2C5790
ssdeep 768:Mi+qa9A0gO9fU1ULfKpOhunpGPk7wzQhWdScjIbIwK+BIJK9yuPUtg/:a9A0gO9fU1ULfKpOhunpGPk7wzQhWdS/
Yara None matched
VirusTotal Search for analysis
Name 65ae2328ab9e48fb_bfak2i[1].htm
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\bfAK2I[1].htm
Size 1.6KB
Processes 2700 (iexplore.exe)
Type HTML document, ASCII text, with CRLF, LF line terminators
MD5 12dec78d031d4e022b462bf6373a6d21
SHA1 04e73cd29b1d1a133cd8af3f6ce4bf9fb0e262ab
SHA256 65ae2328ab9e48fb8f40b316767320d47be6e702f640744c937172f86ac881e3
CRC32 513385DE
ssdeep 24:hP48LWV8CV1bShKbdjCRt8Bo1i2k+DHf4AuNVvPLwZTNV4NxrluZk3OtE49MG:t4webSkbdW8Gk+TgAYUZcN7uZwRG
Yara None matched
VirusTotal Search for analysis
Name 398fd2f532dcc881_{8240206e-2d76-11ef-948e-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{8240206E-2D76-11EF-948E-94DE278C3274}.dat
Size 4.0KB
Processes 2616 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 ae53836816626bf3ecb5154591f7c2ee
SHA1 79bd99d0f80e61ad459eec9f7cdec0b0dd9559f9
SHA256 398fd2f532dcc8818bc97c2e390e11aa52f1e6a8e794d14e6c2d82cf9315dc97
CRC32 725B336C
ssdeep 12:rl0YmGFNYrEgmfN7KFOarEgmfN7qgONl08hbax5/CIwTjlUCRvNl08hbax5/CIw7:rfYGIGLONl0AIWdUCRvNl0AIWdUCR
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name ec8835e4783c5026_favicon[3].ico
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\favicon[3].ico
Size 32.2KB
Processes 2700 (iexplore.exe)
Type MS Windows icon resource - 4 icons, 64x64, 32 bits/pixel, 32x32, 32 bits/pixel
MD5 87eebd70b533b24b2c127e7d113c3b88
SHA1 f5e633f6c5d9ea1913fedf665e80d212490b0ef9
SHA256 ec8835e4783c5026b39d4bdcc14b454460e7500bc812f6d83d2654e94b49d49b
CRC32 F36D8EC7
ssdeep 384:gRG33NLusTTTTTTTTsTTTTTTTTTTTGVBzW:iW3dbTTTTTTTTsTTTTTTTTTTTOS
Yara
  • icon_file_format - icon file format
VirusTotal Search for analysis
Name 52c256a5ff2fec90_e0f5c59f9fa661f6f4c50b87fef3a15a
Submit file
Filepath C:\Users\test22\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\E0F5C59F9FA661F6F4C50B87FEF3A15A
Size 252.0B
Processes 2700 (iexplore.exe)
Type data
MD5 b195ec4191aef264a251267870dd32af
SHA1 4625a9a1f284d6bbea3f6b7d91259b9f933f31d1
SHA256 52c256a5ff2fec90ce31c75aa265bb2fea6a9fd155636acc479bec93ae21f5e6
CRC32 F45C17B8
ssdeep 3:kkFklCQ1fllXlE/E/KRkzllPlzRkwWBARLNDU+ZMlKlBkvclcMlVHblB8V7lnklc:kK61xliBAIdQZV7I7kc3
Yara None matched
VirusTotal Search for analysis
Name 6eb932953b738487_qrcg.min[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\qrcg.min[1].js
Size 102.1KB
Processes 2700 (iexplore.exe)
Type HTML document, UTF-8 Unicode text, with very long lines
MD5 9c2ecc475343904aeb4d1ecb68db9cc4
SHA1 e97552de5478407172fd8cab0344e78de227fb4b
SHA256 6eb932953b738487eca29aed318e8c108733343c83302e72576dc7a602e80664
CRC32 9BED2C45
ssdeep 1536:uMwURXB+A7zE1vyhLd3rmIawsAaJELDfjXpw131eAWkgvQwWADzSsnk9Syu:FXtk5EKIHsAhD+lAxn4XEeeszu
Yara None matched
VirusTotal Search for analysis