Dropped Files | ZeroBOX
Name 9fb3fc96e040eb1e_~wrs{ec374643-c04b-47ac-881d-2f6fdd0f20b6}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{EC374643-C04B-47AC-881D-2F6FDD0F20B6}.tmp
Size 1.5KB
Processes 2552 (WINWORD.EXE)
Type data
MD5 9e019c07d150d87f6e8f3f587b7e6773
SHA1 80d5381deb12d5c661a2e066ce8889e735fd7cd5
SHA256 9fb3fc96e040eb1e37d27a10f4305094a0acd72655f5dce473e4967aca149f02
CRC32 D783C48D
ssdeep 12:1fOCl4o8bHCodc+5v0XtOa8lVR8bORTOhe4Y:TWoUio3v0tOrUOVOha
Yara None matched
VirusTotal Search for analysis
Name 45972b9f60e50111_~$liz natal.docx
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\~$liz natal.docx
Size 162.0B
Processes 2552 (WINWORD.EXE)
Type data
MD5 32933af4f267a5ac7967aebc51d4ddb5
SHA1 267f39cd2ca23ebe716cfcf75d3c1299234460c6
SHA256 45972b9f60e50111f06ff0d615b1b0cc7fd0d1f5d06c400067a5b05d8d125da1
CRC32 6CD7625D
ssdeep 3:yW2lWRdvL7YMlbK7lhZ/1nX:y1lWnlxK7Rtn
Yara None matched
VirusTotal Search for analysis
Name 4826c0d860af884d_~wrs{bfb6cb33-d795-45a3-83f9-e6d7f4190124}.tmp
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{BFB6CB33-D795-45A3-83F9-E6D7F4190124}.tmp
Size 1.0KB
Processes 2552 (WINWORD.EXE)
Type data
MD5 5d4d94ee7e06bbb0af9584119797b23a
SHA1 dbb111419c704f116efa8e72471dd83e86e49677
SHA256 4826c0d860af884d3343ca6460b0006a7a2ce7dbccc4d743208585d997cc5fd1
CRC32 23C03491
ssdeep 3:ol3lYdn:4Wn
Yara None matched
VirusTotal Search for analysis
Name 955e0f806c3c2589_~$normal.dotm
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Templates\~$Normal.dotm
Size 162.0B
Processes 2552 (WINWORD.EXE)
Type data
MD5 378a5abdaf971f65fafc6fe92c4e9cec
SHA1 ae5757b4504c5f29db4f3318cab2799a1b600e5c
SHA256 955e0f806c3c2589cc56dd5eeba708a1c0b0314656ab5cce18e99008f3aac25a
CRC32 6C42E2A1
ssdeep 3:yW2lWRdvL7YMlbK7lNnX:y1lWnlxK7
Yara None matched
VirusTotal Search for analysis