Name | a9220271c0eb79e5_d93f411851d7c929.customDestinations-ms~RF194a1e0.TMP |
---|---|
Filepath | C:\Users\test22\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\d93f411851d7c929.customDestinations-ms~RF194a1e0.TMP |
Size | 7.8KB |
Type | data |
MD5 | b0c9ff441742f3847ea27da9dee7f2cd |
SHA1 | c42a1eb32ba953a0ce5d8635caabf71b5b281495 |
SHA256 | a9220271c0eb79e5750e0d0e62058ecac560e09cdf9e82ef61aeeabada5d48a4 |
CRC32 | 0BBCAB1A |
ssdeep | 96:RutuCOGCPDXBqvsqvJCwo+utuCOGCPDXBqvsEHyqvJCworSP7Hwxf2lUVul:UtvXoxtvbHnorrxQ |
Yara |
|
VirusTotal | Search for analysis |
Name | 3069d99ab572231c_tbtnds.dat |
---|---|
Filepath | C:\Users\test22\tbtnds.dat |
Size | 4.0KB |
Processes | 1684 (sysvplervcs.exe) |
Type | data |
MD5 | b212df1dfbf03f226cb3a2a7153c97a4 |
SHA1 | ef15cebd343a8cf4df0ad6fb97b2586db7d250d2 |
SHA256 | 3069d99ab572231cd0b0f1e0eea8428d6dcb026e92bc14d054fd7b7910894802 |
CRC32 | 8878279A |
ssdeep | 96:OA56J43CQ/T+EkMP9KZyB2xHNh+RAN4Fj24+ar7h6lw9JplpDCUl7FbX:OA5W43LKyLB2xHv+ygjHJ6l+lZCUl7FL |
Yara | None matched |
VirusTotal | Search for analysis |
Name | a1725d70060e522a_d93f411851d7c929.customdestinations-ms |
---|---|
Filepath | c:\users\test22\appdata\roaming\microsoft\windows\recent\customdestinations\d93f411851d7c929.customdestinations-ms |
Size | 7.8KB |
Processes | 2280 (powershell.exe) |
Type | data |
MD5 | 6b56271f59df767cf58551715a83c564 |
SHA1 | 77e61395fc5c4282335df774e1afec12f7296d6e |
SHA256 | a1725d70060e522acac7296fce084a2fd148448bc599a6dd7386d723c894dc87 |
CRC32 | C079913D |
ssdeep | 96:ctuCeGCPDXBqvsqvJCwo5tuCeGCPDXBqvsEHyqvJCwork7HwxilUVul:ctvXo5tvbHnor/xE |
Yara |
|
VirusTotal | Search for analysis |