Dropped Files | ZeroBOX
Name db0b8be4e98758c6_zxwocp9e7mm[1].png
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\ZXwOcP9E7mM[1].png
Size 13.3KB
Processes 2780 (iexplore.exe)
Type PNG image data, 301 x 1208, 8-bit colormap, non-interlaced
MD5 7c62e63d62777b5e3538eb60d53228ac
SHA1 272cfde754d30564dfb5195964a05f724dfef761
SHA256 db0b8be4e98758c69a9623a8a5d13930c7edcb02c3bc07f3f58294b221f9e7f9
CRC32 CCEE42C9
ssdeep 192:Ll//bfHjtLCAq9qy3v3QAg46lc5uCS/x6iRI70Bz9pS2ZI0P3KTsv3bixzibl431:LhbfH8Tf/a+uJvRIANZIFTsvOuO
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name e6782fb84b96e367_7p6df3m9.txt
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Cookies\7P6DF3M9.txt
Size 178.0B
Processes 2780 (iexplore.exe)
Type ASCII text
MD5 5eb450e0f3085404623120f149ecd732
SHA1 50cba66dd29894bcb8989e5a05a2785e6dfe411d
SHA256 e6782fb84b96e367ec5b767a9ee111561235e8ee4bb417cc595a52e6a4931933
CRC32 B4D4F4C9
ssdeep 3:Bjy4mUEhSXbUqUZUXCdFTUrovicO0NviKhSXbUqUZUXCdFTUrv:Bhm1SXbUvZf/T6o5SXbUvZf/T6v
Yara None matched
VirusTotal Search for analysis
Name e3b0c44298fc1c14_3802211850064154[1].htm
Empty file or file not found
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\3802211850064154[1].htm
Size 0.0B
Processes 2780 (iexplore.exe)
Type empty
MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
CRC32 00000000
ssdeep 3::
Yara None matched
VirusTotal Search for analysis
Name 88ae5454a7c32c63_favicon[6].png
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTDTA402\favicon[6].png
Size 5.3KB
Processes 2780 (iexplore.exe)
Type MS Windows icon resource - 2 icons, 16x16, 32 bits/pixel, 32x32, 32 bits/pixel
MD5 3e764f0f737767b30a692fab1de3ce49
SHA1 58fa0755a8ee455819769ee0e77c23829bf488dd
SHA256 88ae5454a7c32c630703440849d35c58f570d8eecc23c071dbe68d63ce6a40d7
CRC32 CE6F0971
ssdeep 24:Es5ed8vZa+/kffJTyN5J5iXSvjDxatgFFjiZq1MJUikeVgl2fwFfBaTzh4mpCbak:2fq3OqXAzh4jaJV9HxG8Q
Yara
  • icon_file_format - icon file format
VirusTotal Search for analysis
Name 5bc9729871dab1d0_recoverystore.{62dc90fb-3def-11ef-948e-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{62DC90FB-3DEF-11EF-948E-94DE278C3274}.dat
Size 4.5KB
Processes 2696 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 b60265351d7fb92e25b829ed53598368
SHA1 298bda8fdeba4c8492ed58f03937d404b5274688
SHA256 5bc9729871dab1d00fc1496f50ddb8b1b0aeea2834d7908ded3216261ba0090d
CRC32 285BA6EE
ssdeep 12:rlfF2frEg5+IaCrI0F7+F2WtOrEg5+IaCrI0F7ugQNlTqbax4CqONlTqbax4Cqm:rqf5/1WtO5/3QNlWHCqONlWHCqm
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 8400be9c11edde8f_{62dc90fc-3def-11ef-948e-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{62DC90FC-3DEF-11EF-948E-94DE278C3274}.dat
Size 7.0KB
Processes 2696 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 3cedaee1cbdffd21aaecf71520ca5c16
SHA1 1103301ba03c559879862546e49e135880e66a6e
SHA256 8400be9c11edde8feffe0f14e341755d0072151d54491aa8aec4329d814a4f7b
CRC32 CC75CACD
ssdeep 48:rlzG7OUVTrk0vhslRMlWlXslRMl3zslRMlWibslRMlW6aCEslRMlWNAwLoqvhslD:983kYawMlcwdYwMiwwMknwMnLouawMl
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 548f2d6f4d0d820c_hsts-pixel[1].gif
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\hsts-pixel[1].gif
Size 43.0B
Processes 2780 (iexplore.exe)
Type GIF image data, version 89a, 1 x 1
MD5 df3e567d6f16d040326c7a0ea29a4f41
SHA1 ea7df583983133b62712b5e73bffbcd45cc53736
SHA256 548f2d6f4d0d820c6c5ffbeffcbd7f0e73193e2932eefe542accc84762deec87
CRC32 AB68BD76
ssdeep 3:CU9yltxlHh/:m/
Yara None matched
VirusTotal Search for analysis
Name e0ff2e0f45b6ac64_k97pj8-or6s[1].png
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\k97pj8-or6s[1].png
Size 809.0B
Processes 2780 (iexplore.exe)
Type PNG image data, 77 x 16, 8-bit gray+alpha, non-interlaced
MD5 65f2f1eb5798b53c504ed8de3d90c958
SHA1 2ee3007e36e6babdf0448cd51b6ac2f7aa31814c
SHA256 e0ff2e0f45b6ac64540fe750795196238188e4e3a5ae9138318dd555b23a2eae
CRC32 F5C28033
ssdeep 24:3gx5d5wCKQJ6voWa9nXL/Z03VwDd0Tmt2pGppfSaY3s:Qx5cfQB7RSlKt/76aY3s
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name 6cc2f3304f6bcb96_login[1].htm
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\login[1].htm
Size 9.6KB
Processes 2780 (iexplore.exe)
Type XML 1.0 document, UTF-8 Unicode text, with very long lines
MD5 f7c4c5f60ab68a7ad5884ca365b6c59d
SHA1 b6cf743a3f1b81785c597b88d2b11e685f7e27ce
SHA256 6cc2f3304f6bcb96e4759e7b588742fddd31e7ac26f55c79b0f398ff5c35726f
CRC32 8A9A84FC
ssdeep 192:HCE4Nlv9erAMNO8orSGIJGYry/y8nVbKy2EmfdWQd8:iPTv9eMqGIJG1VM8
Yara None matched
VirusTotal Search for analysis