Dropped Files | ZeroBOX
Name 44e8aa0601fffe82_590aee7bdd69b59b.customdestinations-ms
Submit file
Filepath c:\users\test22\appdata\roaming\microsoft\windows\recent\customdestinations\590aee7bdd69b59b.customdestinations-ms
Size 7.8KB
Processes 3048 (powershell.exe)
Type data
MD5 ee6cfd78f72f03663db2a7df0c696dd7
SHA1 56126e81a5f6577f8e24a890185d0c9eb600fa02
SHA256 44e8aa0601fffe82c494bbc7d7280aa3bc5e90effe2aee2d716d5716e1d6b568
CRC32 F27137C4
ssdeep 96:EtuCcBGCPDXBqvsqvJCwoRtuCcBGCPDXBqvsEHyqvJCworu4tDHXyGlUVul:EtCgXoRtCgbHnorBTyY
Yara
  • Antivirus - Contains references to security software
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name f23b3f8153da3bc4_1[1].htm
Submit file
Filepath C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\1[1].htm
Size 17.8KB
Processes 2884 (mshta.exe)
Type HTML document, ASCII text, with very long lines
MD5 2b86cc9776d43c7916f5044a092c866d
SHA1 f4e6590166fbd4214c0fabdaddf4e2835b824cfb
SHA256 f23b3f8153da3bc45267a5e653f3fb6936ce0b25c95f1105f0f10160fe2d2d43
CRC32 F54A76A4
ssdeep 384:iAtG0zQpsoz7Ah0EkPmheFtfuwv5BhkVpK0mdnHgkPmhebhx5wihhOGxsWeV9Hed:BtG0gXa0dP0eFt20ZopKfhP0eNU4Yh2d
Yara
  • Antivirus - Contains references to security software
VirusTotal Search for analysis