Dropped Files | ZeroBOX
Name 2dfdc0acd65c9b0d_3a7ebc0cbb073a9d.customdestinations-ms
Submit file
Filepath c:\users\test22\appdata\roaming\microsoft\windows\recent\customdestinations\3a7ebc0cbb073a9d.customdestinations-ms
Size 6.8KB
Processes 2672 (powershell.exe)
Type data
MD5 03a93334bcfb84b1048465b5487d4f4e
SHA1 6109bf094ac75d98680ace3863233e5281ae3fd1
SHA256 2dfdc0acd65c9b0de5fa6d19052f34aaf266889344d081c3b1e06497b6b5e563
CRC32 C42861C3
ssdeep 48:QxsHlRdgpRedJ9wxsHlRdgpRyEHydJ9obuM4b3+SogZolxwUQlUVul:prdfzrdhEHGuj47HwxGlUVul
Yara None matched
VirusTotal Search for analysis
Name e2bb87dc99e2c2ad_Cabinet.pdf.lnk
Submit file
Filepath C:\Users\test22\AppData\Local\Temp\Cabinet.pdf.lnk
Size 5.0KB
Type MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has command line arguments, Icon number=13, Archive, ctime=Wed May 11 00:09:09 2022, mtime=Tue Jan 31 20:11:32 2023, atime=Wed May 11 00:09:09 2022, length=452608, window=hidenormalshowminimized
MD5 11926797c51a3317a8f749c3a48362d7
SHA1 ab4260a244e069737660482b3462da8e414ab346
SHA256 e2bb87dc99e2c2ad5418b22e82a1e2df3e670c1865f418d9450600d423b4f64f
CRC32 FA871C4E
ssdeep 48:8oZuaFklOrnHBOrzq9qnqZ7S7fC4jMupHL3/dd0Y9XuHQBqiYLq4:8oZXsOjHBOn2IVzCiM2Hb/EY1um3YLq
Yara
  • lnk_file_format - Microsoft Windows Shortcut File Format
  • Lnk_Format_Zero - LNK Format
  • Antivirus - Contains references to security software
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis