Name | 2dfdc0acd65c9b0d_3a7ebc0cbb073a9d.customdestinations-ms |
---|---|
Filepath | c:\users\test22\appdata\roaming\microsoft\windows\recent\customdestinations\3a7ebc0cbb073a9d.customdestinations-ms |
Size | 6.8KB |
Processes | 2672 (powershell.exe) |
Type | data |
MD5 | 03a93334bcfb84b1048465b5487d4f4e |
SHA1 | 6109bf094ac75d98680ace3863233e5281ae3fd1 |
SHA256 | 2dfdc0acd65c9b0de5fa6d19052f34aaf266889344d081c3b1e06497b6b5e563 |
CRC32 | C42861C3 |
ssdeep | 48:QxsHlRdgpRedJ9wxsHlRdgpRyEHydJ9obuM4b3+SogZolxwUQlUVul:prdfzrdhEHGuj47HwxGlUVul |
Yara | None matched |
VirusTotal | Search for analysis |
Name | e2bb87dc99e2c2ad_Cabinet.pdf.lnk |
---|---|
Filepath | C:\Users\test22\AppData\Local\Temp\Cabinet.pdf.lnk |
Size | 5.0KB |
Type | MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has command line arguments, Icon number=13, Archive, ctime=Wed May 11 00:09:09 2022, mtime=Tue Jan 31 20:11:32 2023, atime=Wed May 11 00:09:09 2022, length=452608, window=hidenormalshowminimized |
MD5 | 11926797c51a3317a8f749c3a48362d7 |
SHA1 | ab4260a244e069737660482b3462da8e414ab346 |
SHA256 | e2bb87dc99e2c2ad5418b22e82a1e2df3e670c1865f418d9450600d423b4f64f |
CRC32 | FA871C4E |
ssdeep | 48:8oZuaFklOrnHBOrzq9qnqZ7S7fC4jMupHL3/dd0Y9XuHQBqiYLq4:8oZXsOjHBOn2IVzCiM2Hb/EY1um3YLq |
Yara |
|
VirusTotal | Search for analysis |