Summary | ZeroBOX

XMYFCPT9speAh98pdf.lnk

GIF Format Lnk Format
Category Machine Started Completed
FILE s1_win7_x6401 Sept. 18, 2023, 11:28 a.m. Sept. 18, 2023, 11:30 a.m.
Size 1.1KB
Type MS Windows shortcut, Item id list present, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Sun Dec 31 15:32:08 1600, mtime=Sun Dec 31 15:32:08 1600, atime=Sun Dec 31 15:32:08 1600, length=0, window=hidenormalshowminimized
MD5 6d164ac8281441a98190607ceff43264
SHA256 149dc877de7fe63d793d487b91c9325cfd99a0d17916d364054fbba5db375123
CRC32 F8C305AC
ssdeep 24:8D4OAiKDqaAPHxkQgjaxoAzicEu7O40u85nITfC4ZkaClc:8/AiBng3dFITfP2asc
Yara
  • lnk_file_format - Microsoft Windows Shortcut File Format
  • Lnk_Format_Zero - LNK Format

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

Time & API Arguments Status Return Repeated

WriteConsoleW

buffer: Access is denied.
console_handle: 0x0000000b
1 1 0
Time & API Arguments Status Return Repeated

GetDiskFreeSpaceW

number_of_free_clusters: 3252689
sectors_per_cluster: 8
bytes_per_sector: 512
root_path: \\?\Volume{c2d901c4-0706-11e8-912e-806e6f6e6963}\
total_number_of_clusters: 8362495
1 1 0
file C:\Users\test22\AppData\Local\Temp\XMYFCPT9speAh98pdf.lnk
Sangfor Trojan.Generic-LNK.Save.20ccc2be
Symantec CL.Downloader!gen20
ESET-NOD32 LNK/Agent.AAP
Avast Other:Malware-gen [Trj]
Cynet Malicious (score: 99)
Kaspersky HEUR:Trojan.WinLNK.Agent.gen
F-Secure Malware.VBS/Runner.VPUW
Sophos Troj/Lnk-CO
Avira VBS/Runner.VPUW
Microsoft Trojan:Win32/Phonzy.B!ml
ZoneAlarm HEUR:Trojan.WinLNK.Agent.gen
Google Detected
ALYac Trojan.Agent.LNK.Gen
Ikarus Win32.Outbreak
AVG Other:Malware-gen [Trj]