Dropped Files | ZeroBOX
Name ed73557ae34f18ad_msedge.lnk
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\msedge.lnk
Size 621.0B
Processes 800 (msedge.exe)
Type MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Archive, ctime=Wed Aug 14 17:16:01 2024, mtime=Wed Aug 14 17:16:01 2024, atime=Wed Aug 14 17:16:01 2024, length=277504, window=hide
MD5 65853adb59212c850c9e41a57bb97817
SHA1 7d0ae02ab5b5aaddd45a997867dc162638336dd9
SHA256 ed73557ae34f18ad429277fc73eed873af9c77112af2444bf24b9297da3ec99c
CRC32 85253201
ssdeep 12:8SHB8IXoPCbs0ei/nW7jA+A+gbI+EgAuP:8SugFBPWPAJ/EHuP
Yara
  • lnk_file_format - Microsoft Windows Shortcut File Format
  • Lnk_Format_Zero - LNK Format
VirusTotal Search for analysis
Name 97b1441bd0a45918_msedge.exe
Submit file
Filepath C:\ProgramData\msedge.exe
Size 271.0KB
Processes 800 (msedge.exe)
Type PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 c2ec3c7d003e11d0db8aab918df1e47a
SHA1 9c1c3421a1d0207bec271b9cd38a48cb0a1fb285
SHA256 97b1441bd0a459186311604d3cf3fc2b212dff334f4640d9171189080698c940
CRC32 D3CBB3EC
ssdeep 3072:H0ZLbt+Bq3ngeMJFNn7Zs+9snU64LXm7ved5W9dxOJdXRUGKXs+S++7KFSbxeY+g:Ic44V9EU6P7ved5AOJd2GqStKEbxI
Yara
  • PE_Header_Zero - PE File Signature
  • Is_DotNET_EXE - (no description)
  • IsPE32 - (no description)
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check
VirusTotal Search for analysis
Name 3a255c0024916f19_590aee7bdd69b59b.customDestinations-ms~RF1152dd3.TMP
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\590aee7bdd69b59b.customDestinations-ms~RF1152dd3.TMP
Size 7.8KB
Processes 2440 (powershell.exe) 2632 (powershell.exe)
Type data
MD5 6fd29def73b2779e0ae71c4eecd304f7
SHA1 4ba660e4db856e04eb93a01c59ee764259ec55e7
SHA256 3a255c0024916f19c5b3f5d4aa5cde453cc5d90b0784a15f0456e57e71a764b6
CRC32 1F966CD8
ssdeep 96:ctuCeGCPDXBqvsqvJCwo5tuCeGCPDXBqvsEHyqvJCworDPtDHXyf2lUVul:ctvXo5tvbHnorxTyQ
Yara
  • Antivirus - Contains references to security software
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis