Suspicious 80% Download

cmd_system64_minimized.lnk

LNK runs cmd.exe minimized

Identifies execution artefacts in shortcut (LNK) files.LNK runs minimized without activation
SHA-25650511077882628f78039d77ec1565b73b5f2670f9fec7c436b22b9106ea33696
MaleculeO(C)Th

Evidence

Identifies execution artefacts in shortcut (LNK) files. 0x121–0x181
0x12118005200320000000000000000000000..R.2...........
0x131636d642e657865003c0008000400efbecmd.exe.<.......
0x14100000000000000002a00000000000000........*.......
0x15100000000000000000000000000000000................
0x161000063006d0064002e00650078006500..c.m.d...e.x.e.
0x17100001600000014030000010000a02553..............%S
0x181797374 yst

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.