Name | decd98b1c5b023bd_tmp1653.tmp |
---|---|
Filepath | C:\Users\test22\AppData\Local\Temp\tmp1653.tmp |
Size | 1.5KB |
Processes | 2584 (vbc.exe) |
Type | XML 1.0 document, ASCII text |
MD5 | edae9cf6447939b4bc070b91da01839a |
SHA1 | 72454e901b4da3f781a787333fadef1cfe6dd50d |
SHA256 | decd98b1c5b023bd2b5e7798f9326a02862965b3b68fe423f9ba8869fa5e432e |
CRC32 | 48BF9FED |
ssdeep | 24:2di4+S2qhH/1ny1mEUnrKMhEMOFGpwOzNgU3ODOiIQRvh7hwrgXuNtSxvn:cgefAYrFdOFzOzN33ODOiDdKrsuTWv |
Yara | None matched |
VirusTotal | Search for analysis |
Name | a9220271c0eb79e5_d93f411851d7c929.customDestinations-ms~RF196edb4.TMP |
---|---|
Filepath | C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\d93f411851d7c929.customDestinations-ms~RF196edb4.TMP |
Size | 7.8KB |
Type | data |
MD5 | b0c9ff441742f3847ea27da9dee7f2cd |
SHA1 | c42a1eb32ba953a0ce5d8635caabf71b5b281495 |
SHA256 | a9220271c0eb79e5750e0d0e62058ecac560e09cdf9e82ef61aeeabada5d48a4 |
CRC32 | 0BBCAB1A |
ssdeep | 96:RutuCOGCPDXBqvsqvJCwo+utuCOGCPDXBqvsEHyqvJCworSP7Hwxf2lUVul:UtvXoxtvbHnorrxQ |
Yara |
|
VirusTotal | Search for analysis |
Name | 7f740adf9e3ea99d_d93f411851d7c929.customdestinations-ms |
---|---|
Filepath | c:\users\test22\appdata\roaming\microsoft\windows\recent\customdestinations\d93f411851d7c929.customdestinations-ms |
Size | 7.8KB |
Processes | 3060 (powershell.exe) |
Type | data |
MD5 | be70dd0db23c176eaeccf916989732e3 |
SHA1 | 253faabb09f3e55d7a0fa97be10524ba3e9f12b1 |
SHA256 | 7f740adf9e3ea99db852bbf0424f1a0e1da42dd3fbe69daec54416f0769e5446 |
CRC32 | EC26ADA4 |
ssdeep | 96:ctuCeGCPDXBqvsqvJCwo5tuCeGCPDXBqvsEHyqvJCworS/7Hwxf2lUVul:ctvXo5tvbHnorDxQ |
Yara |
|
VirusTotal | Search for analysis |