Dropped Files | ZeroBOX
Name de4541798c89c8e5_recoverystore.{ec0596d5-42d5-11ef-948e-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{EC0596D5-42D5-11EF-948E-94DE278C3274}.dat
Size 4.5KB
Processes 2612 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 041f6c07e825a2006ea32a6754d31bbc
SHA1 f32080249a32d66d4b6860638444e7d180816d9b
SHA256 de4541798c89c8e588f6ed5afd7428128d68182d291172ded0ea976a35f850bb
CRC32 830CA9B7
ssdeep 12:rlfF2MrEg5+IaCrI0F7+F2JDorEg5+IaCrI0F7ugQNlTqbaxHHzNlTqbaxHk:rqM5/1Bo5/3QNlW+TNlW+
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 64c8174a464acd84_{ec0596d6-42d5-11ef-948e-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{EC0596D6-42D5-11EF-948E-94DE278C3274}.dat
Size 4.5KB
Processes 2612 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 4956b9dd0cfe7af6fc8dbf2686a03dff
SHA1 d677eeb897b8e321fa9cc6863770f92b97d3c1a2
SHA256 64c8174a464acd843cd3c0308dab343d675dce672a767743cefa70ce2233d19a
CRC32 FE891968
ssdeep 12:rlxAFOrrEgm8GL7KF2WrEgm8GsD7qsbNl26abax1NldfRbaxAr7JGslMRWe:r1rG8RG8HbNlIoNlDxvJjl
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name f497b74ca1592fbf_honorofkings_app_android_9.4.1.5_r1897027_4101_rw[1].zip
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\HonorOfKings_App_Android_9.4.1.5_r1897027_4101_rw[1].zip
Size 128.0MB
Processes 2696 (None)
Type Zip archive data, at least v1.0 to extract
MD5 d44c029585fd26f8011a68ef247e3abf
SHA1 7c46e7a384e317854cafb7d768ea79fb4897f7bd
SHA256 5e129aad67d3843be7e9635ab4898bccc3806fa09a32fe28673610a5cc00e3f8
CRC32 36C22F12
ssdeep 3145728:yHoHYxxnsFJyI1ONBxM3IJhW6aDHxJLCjAi:yH7xnEyI1O7m3SxCLLs
Yara
  • zip_file_format - ZIP file format
  • ftp_command - ftp command
  • Generic_Malware_Zero - Generic Malware
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis