Dropped Files | ZeroBOX
Name 65c4e358d5f73e4e_firstrun.log
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\outlook logging\firstrun.log
Size 143.0B
Processes 2660 (OUTLOOK.EXE)
Type diff output, ASCII text, with CRLF line terminators
MD5 c03b9d7c410ec7aed94be8b205579ead
SHA1 feba9e86669fee608b022bf50da63e053f128749
SHA256 65c4e358d5f73e4ec9cdbd09cdebbd6ccd91ad3a51b26473bf581ce90bd0b5c5
CRC32 BDD57C03
ssdeep 3:YD2FjWWCqBnQR9wIN1QyJ/RgAItX1QkgMXWgAIQrgvXKQO9sen:YD5s2R96yJeHSkgMGgTyQO5n
Yara None matched
VirusTotal Search for analysis
Name 9485ab945b7f0687_frmcache.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\FORMS\FRMCACHE.DAT
Size 240.1KB
Processes 2660 (OUTLOOK.EXE)
Type data
MD5 6f0ed254f74ec85c246181b736744f13
SHA1 baf28ab7193d04eb255825b0b6df8e4c0ba0e643
SHA256 9485ab945b7f06876d24489ebaa7aae26a8ce69864c933736b22cb5e7774f91d
CRC32 D9AA5288
ssdeep 3072:GdwgquYgGmiGu2RqoQkrt0FvYrexqFnNI:ADami2UiexqFnm
Yara None matched
VirusTotal Search for analysis
Name 5f747df61b29d297_msout12.pip
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Office\MSOut12.pip
Size 1.7KB
Processes 2660 (OUTLOOK.EXE)
Type data
MD5 848241f69e83e3ba06fc92835fb7ae22
SHA1 df58a10ef25a0ccfed4a1854ca29387966fc773c
SHA256 5f747df61b29d29784ef9c21cb57f5ce1b7cb4eb9227a1e3ab89b1eed269d12e
CRC32 D6AADFA7
ssdeep 48:MegmU9S1Y5lI2RXbclxLj2xaIK0tTDdGkgiU:MD9uY5NRLczj2AIEUU
Yara None matched
VirusTotal Search for analysis
Name 1c65565978c56081_mapisvc.inf
Submit file
Filepath C:\Program Files (x86)\Common Files\System\MSMAPI\1042\MAPISVC.INF
Size 558.0B
Processes 2660 (OUTLOOK.EXE)
Type ASCII text, with CRLF line terminators
MD5 9eb30c474d25ba91c08d10d49c528b60
SHA1 a90953adfea2e4129205f3d74d647c39e26c77b1
SHA256 1c65565978c56081df2d2cfa69936c2a7deb2be6f3145e0bc330c3977d840587
CRC32 F68A890C
ssdeep 12:n6neGnezQMyFqH52gHqF2gH0t9Dzxx4bRQctBAVk3J6:n6Z5MyF22B2R9Q1QcId
Yara None matched
VirusTotal Search for analysis