Name | a9220271c0eb79e5_d93f411851d7c929.customdestinations-ms |
---|---|
Filepath | c:\users\test22\appdata\roaming\microsoft\windows\recent\customdestinations\d93f411851d7c929.customdestinations-ms |
Size | 7.8KB |
Processes | 2320 (powershell.exe) |
Type | data |
MD5 | b0c9ff441742f3847ea27da9dee7f2cd |
SHA1 | c42a1eb32ba953a0ce5d8635caabf71b5b281495 |
SHA256 | a9220271c0eb79e5750e0d0e62058ecac560e09cdf9e82ef61aeeabada5d48a4 |
CRC32 | 0BBCAB1A |
ssdeep | 96:RutuCOGCPDXBqvsqvJCwo+utuCOGCPDXBqvsEHyqvJCworSP7Hwxf2lUVul:UtvXoxtvbHnorrxQ |
Yara |
|
VirusTotal | Search for analysis |
Name | 87d57f6719a2b5e3_xxx.vbs |
---|---|
Filepath | C:\ProgramData\XXX\XXX.vbs |
Size | 1.1KB |
Processes | 2320 (powershell.exe) |
Type | ASCII text, with very long lines, with CRLF line terminators |
MD5 | f806512a9a21efbe1995a4eef80aa0c2 |
SHA1 | 714ef19035b097cce07f4bf9226e5c1e3bbc086b |
SHA256 | 87d57f6719a2b5e3a3d0ea5cddcf592770dc1accc4445cc1458de48fe1afe9a8 |
CRC32 | 2626597C |
ssdeep | 24:YMVQ6xV3cJeWB23LV7oTwg0AjDAnyBAE3AHAxUZAwA+iCADvBFNjhAFFt9ALF7nw:YGxsJDIZMZ00DH138XlQCoVh+t9a7nw |
Yara | None matched |
VirusTotal | Search for analysis |