Name | f80ef9a650a29ec7_ooo.bat |
---|---|
Filepath | C:\Users\test22\AppData\Local\Temp\ooo.bat |
Size | 2.8KB |
Type | DOS batch file, ASCII text |
MD5 | 3db5b638d5142dca0d922543ce1099c0 |
SHA1 | 9de0d46ea97d9b6a7b679b87b91dbe8924abcc6b |
SHA256 | f80ef9a650a29ec7007d53effd82d76f18557fa8036814f47c4876ce1820964c |
CRC32 | AE9F5416 |
ssdeep | 12:HMH+TEo+s8JGXuLawn+s8JGXuBQIyxH+TE2H+TQhH2h32bH+Tks8vss8v55Hs8vo:seTBXu+gXuBQHxeTPeTTyeTFu |
Yara | None matched |
VirusTotal | Search for analysis |
Name | a9b1dc8eaa5fcd00_d93f411851d7c929.customDestinations-ms~RF226800a.TMP |
---|---|
Filepath | C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\d93f411851d7c929.customDestinations-ms~RF226800a.TMP |
Size | 7.8KB |
Processes | 2260 (powershell.exe) 2408 (powershell.exe) |
Type | data |
MD5 | c1d8708bab1e838a2deda26d58bb8d42 |
SHA1 | 95d39e75a804752961c139bb6c0b67f84f685035 |
SHA256 | a9b1dc8eaa5fcd0034694cf9742ae915a5932142a1477c3ab6fada45d98750b2 |
CRC32 | E71AF2A2 |
ssdeep | 96:QtuC6GCPDXBqvsqvJCwoFtuC6GCPDXBqvsEHyqvJCworFS7HwxWlUVul:QtbXoFtbbHnor/xo |
Yara |
|
VirusTotal | Search for analysis |