Dropped Files | ZeroBOX
Name a9220271c0eb79e5_d93f411851d7c929.customDestinations-ms~RF194a1e0.TMP
Submit file
Filepath C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\d93f411851d7c929.customDestinations-ms~RF194a1e0.TMP
Size 7.8KB
Type data
MD5 b0c9ff441742f3847ea27da9dee7f2cd
SHA1 c42a1eb32ba953a0ce5d8635caabf71b5b281495
SHA256 a9220271c0eb79e5750e0d0e62058ecac560e09cdf9e82ef61aeeabada5d48a4
CRC32 0BBCAB1A
ssdeep 96:RutuCOGCPDXBqvsqvJCwo+utuCOGCPDXBqvsEHyqvJCworSP7Hwxf2lUVul:UtvXoxtvbHnorrxQ
Yara
  • Antivirus - Contains references to security software
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis
Name 3069d99ab572231c_tbtnds.dat
Submit file
Filepath C:\Users\test22\tbtnds.dat
Size 4.0KB
Processes 1684 (sysvplervcs.exe)
Type data
MD5 b212df1dfbf03f226cb3a2a7153c97a4
SHA1 ef15cebd343a8cf4df0ad6fb97b2586db7d250d2
SHA256 3069d99ab572231cd0b0f1e0eea8428d6dcb026e92bc14d054fd7b7910894802
CRC32 8878279A
ssdeep 96:OA56J43CQ/T+EkMP9KZyB2xHNh+RAN4Fj24+ar7h6lw9JplpDCUl7FbX:OA5W43LKyLB2xHv+ygjHJ6l+lZCUl7FL
Yara None matched
VirusTotal Search for analysis
Name a1725d70060e522a_d93f411851d7c929.customdestinations-ms
Submit file
Filepath c:\users\test22\appdata\roaming\microsoft\windows\recent\customdestinations\d93f411851d7c929.customdestinations-ms
Size 7.8KB
Processes 2280 (powershell.exe)
Type data
MD5 6b56271f59df767cf58551715a83c564
SHA1 77e61395fc5c4282335df774e1afec12f7296d6e
SHA256 a1725d70060e522acac7296fce084a2fd148448bc599a6dd7386d723c894dc87
CRC32 C079913D
ssdeep 96:ctuCeGCPDXBqvsqvJCwo5tuCeGCPDXBqvsEHyqvJCwork7HwxilUVul:ctvXo5tvbHnor/xE
Yara
  • Antivirus - Contains references to security software
  • Generic_Malware_Zero - Generic Malware
VirusTotal Search for analysis