Dropped Files | ZeroBOX
Name 289a16bc1c4cf87e_3c428b1a3e5f57d887ec4b864fac5dcc
Submit file
Filepath C:\Users\test22\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3C428B1A3E5F57D887EC4B864FAC5DCC
Size 252.0B
Processes 792 (iexplore.exe)
Type data
MD5 ac1e36a47e590bcacb00ce254c67d939
SHA1 3b65ef1e7b32a888a490285c9426e5e1bf2fa4bc
SHA256 289a16bc1c4cf87eef39acf16a5acf6f1212b13bd1516e363124280943d3bf5a
CRC32 7737DBA3
ssdeep 6:kK9vlhLD5bjcalgRAOAUSW0zeEpV1Ew1OXISMlcV/:hzLGtWOxSW0zeYrsMlU/
Yara None matched
VirusTotal Search for analysis
Name cb3ccbb76031e5e0_3c428b1a3e5f57d887ec4b864fac5dcc
Submit file
Filepath C:\Users\test22\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3C428B1A3E5F57D887EC4B864FAC5DCC
Size 914.0B
Processes 792 (iexplore.exe)
Type data
MD5 e4a68ac854ac5242460afd72481b2a44
SHA1 df3c24f9bfd666761b268073fe06d1cc8d4f82a4
SHA256 cb3ccbb76031e5e0138f8dd39a23f9de47ffc35e43c1144cea27d46a5ab1cb5f
CRC32 5017495B
ssdeep 24:c0oGlGm7qGlGd7SK1tcudP5M/C0VQYyL4R3fum:+JnJ17tcudRMq6QsF
Yara None matched
VirusTotal Search for analysis
Name bc995041c49af518_recoverystore.{f1a6d025-0aaf-11f0-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{F1A6D025-0AAF-11F0-AC50-94DE278C3274}.dat
Size 4.5KB
Processes 792 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 8df99082cba6a9c0568b78f07b281301
SHA1 3395ea6faecc491fab108df2d0e5d036f7b4718d
SHA256 bc995041c49af518ec799e449bbe658d40b2cadd6233a93db09dfc59fead891a
CRC32 2226C2B0
ssdeep 12:rlfF29/rEg5+IaCrI0F7+F2PxrEg5+IaCrI0F7ugQNlTqbaxg9BNlTqbaxg9:rqN5/1Px5/3QNlWxBNlWx
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 0231ecb6211b9ef2_{f1a6d026-0aaf-11f0-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{F1A6D026-0AAF-11F0-AC50-94DE278C3274}.dat
Size 7.5KB
Processes 792 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 9789fa11a603937f7f85524fbc827f26
SHA1 df132dfc5ae5b65979df741a8346b321e7a3e63f
SHA256 0231ecb6211b9ef271b33f59167f5c205c09c02040a1d9007575b765970a8699
CRC32 6D81D316
ssdeep 96:a8xD7GikXDzDvD7ODkDyDI5C2HCxCkH+d82oXDZh:aOGtXX7OwmR2i8UX3
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis