Dropped Files | ZeroBOX
Name 6d1ea7c1771db730_recoverystore.{97ed6129-1bc7-11f0-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{97ED6129-1BC7-11F0-AC50-94DE278C3274}.dat
Size 4.5KB
Processes 1636 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 629acf8e7d14da03532dabcbe3c72e20
SHA1 d7904f6954244a98a96d73eeaf9770828c5a912e
SHA256 6d1ea7c1771db730b1bcc26c4e1cc5aead98439a844206f272c958377ef82b29
CRC32 D6E4E685
ssdeep 12:rlfF2BHrEg5+IaCrI0F7+F2nsxrEg5+IaCrI0F7ugQNlTqbaxuZcqINlTqbaxuZ0:rqN5/1ns5/3QNlWaNlW
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name 27eefe45768e0cb4_{97ed612a-1bc7-11f0-ac50-94de278c3274}.dat
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{97ED612A-1BC7-11F0-AC50-94DE278C3274}.dat
Size 7.0KB
Processes 1636 (iexplore.exe)
Type Composite Document File V2 Document, Cannot read section info
MD5 a1624e82ebe2ac72ef75c26a57213add
SHA1 1346cd4d44a66f2a108254cbe8712639d58a4942
SHA256 27eefe45768e0cb4b56a0216241f8ff3225fba56fe8c092bc7356b2c6adaf8e8
CRC32 81091AAE
ssdeep 96:hiNeR8WvQNYDtYDF1TvQNYDdONeXONepONex5eQwMH:hiN+ffah1rfQNrN9NA
Yara
  • Microsoft_Office_File_Zero - Microsoft Office File
VirusTotal Search for analysis
Name d49bc68640804fc2_gtm[1].js
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\gtm[1].js
Size 307.0KB
Processes 2104 (iexplore.exe)
Type ASCII text, with very long lines
MD5 213dd0f2448be31ce5080d0613015c47
SHA1 0a48fb22c511b31a179307f69e49d9562bf1f211
SHA256 d49bc68640804fc2e931e4059abf385e2f6c0d7dac5e631309c02d6301cffe1e
CRC32 2CA45EC9
ssdeep 3072:KH1MRZSRKO6cgH0UGV1RWsYO/ci8Jk2c4SUW5BOTDuolwhcpTv9FmR/:4EKKjcnci8S1iTiolwhcpLmp
Yara None matched
VirusTotal Search for analysis
Name 80b702a8c7e1ffbd_avatar[1]
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\avatar[1]
Size 16.5KB
Processes 2104 (iexplore.exe)
Type PNG image data, 145 x 145, 8-bit/color RGBA, non-interlaced
MD5 7d683f57befaf3d20cb422de0481e8be
SHA1 b3c8319409dd6a7f481f0e04600fc517549809be
SHA256 80b702a8c7e1ffbdee6775074104daa3a04e0dbd1cea7518629e49c7b19eac3f
CRC32 9FFD2B5A
ssdeep 384:FzUwx0zCmNbYsNOcJ9UrervZ/1+silLNCwuX6HTYWwkz:FzzrmNbYss69HrvZ/gVCPU0Bkz
Yara
  • PNG_Format_Zero - PNG Format
VirusTotal Search for analysis
Name cb3ccbb76031e5e0_3c428b1a3e5f57d887ec4b864fac5dcc
Submit file
Filepath C:\Users\test22\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3C428B1A3E5F57D887EC4B864FAC5DCC
Size 914.0B
Processes 2104 (iexplore.exe) 1636 (iexplore.exe)
Type data
MD5 e4a68ac854ac5242460afd72481b2a44
SHA1 df3c24f9bfd666761b268073fe06d1cc8d4f82a4
SHA256 cb3ccbb76031e5e0138f8dd39a23f9de47ffc35e43c1144cea27d46a5ab1cb5f
CRC32 5017495B
ssdeep 24:c0oGlGm7qGlGd7SK1tcudP5M/C0VQYyL4R3fum:+JnJ17tcudRMq6QsF
Yara None matched
VirusTotal Search for analysis
Name efa17ad744736c2b_3c428b1a3e5f57d887ec4b864fac5dcc
Submit file
Filepath C:\Users\test22\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3C428B1A3E5F57D887EC4B864FAC5DCC
Size 252.0B
Processes 2104 (iexplore.exe) 1636 (iexplore.exe)
Type data
MD5 9ff27b9645ca4223b858badeb1f682ab
SHA1 7e5d676a858512b3ca0c74e4a2159b60d465a7ef
SHA256 efa17ad744736c2b6179f9c72f59faf65dc1b0e162ad16b27b37ce7d65550de7
CRC32 5808BAA6
ssdeep 6:kKlSLDl0bjcalgRAOAUSW0zeEpV1Ew1OXISMlcV/:dSLVtWOxSW0zeYrsMlU/
Yara None matched
VirusTotal Search for analysis
Name fd84f88b497040d4_fluhrq6tzzclqej-vdg-iuiadsna[1].woff
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BYECVYBT\flUhRq6tzZclQEJ-Vdg-IuiaDsNa[1].woff
Size 161.0KB
Processes 2104 (iexplore.exe)
Type Web Open Font Format, TrueType, length 164912, version 1.1
MD5 3e1afe59fa075c9e04c436606b77f640
SHA1 e4bb7c1e40d3febee58df963db276b2bf68c117b
SHA256 fd84f88b497040d4f7d5e8c9f8635aef8d3e706c0fa52e2b6facf14eee87e522
CRC32 B0BE9D96
ssdeep 3072:9jUw8wUxYQjHKuw6dNYHVGeBMoJa0gPC2OHli9HsGrdty9TE4ZmAau/5ePy:JpUGGHKuw63A7E0g62MkmTRm9Jy
Yara None matched
VirusTotal Search for analysis