INVOICE%20340138551.pdf.lnk

First submission 2024-10-16 00:48:02

File details

File type: MS Windows shortcut, Item id list present, Points to a file or directory, Has Description string, Has Relative path, Has command line arguments, Icon number=13, Archive, ctime=Sat Sep 15 06:11:58 2018, mtime=Sat Sep 15 06:11:58 2018, atime=Sat Sep 15 06:11:58 2018, length=40960, window=hidenormalshowminimized
Mime type: application/octet-stream
File size: 2.02 KB (2068 bytes)
MD5: 0b519e6f069c8c31d60817f1d8c07284
SHA1: 556b2938cbaa26532bfd326c302d9624a9d91dc3
SHA256: 58ebd61d6bfc742f24755ab67e8a3e0c5012740d5276c569395adc39db87df10

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 10/77 VT report date: 2024-10-16 00:29:52
Malware Type 2 downloader trojan

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://147.45.50.57/Downloads/INVOICE%20340138551.pdf.lnk VirusTotal Report 147.45.50.57 VirusTotal Report 2024-10-16 00:48:02

Strings analysis - Possible URLs found 1

https://www.eahealth.org/misc/ui/Invoice_340138551<C:\Program