transaction.pdf.lnk

First submission 2024-10-14 00:56:02

File details

File type: MS Windows shortcut, Item id list present, Has Working directory, Has command line arguments, Icon number=13, Archive, ctime=Sun Dec 31 23:10:04 1600, mtime=Sun Dec 31 23:10:04 1600, atime=Sun Dec 31 23:10:04 1600, length=0, window=hide
Mime type: application/octet-stream
File size: 1.77 KB (1817 bytes)
MD5: 22faf227b32edd871e2eee195361a36a
SHA1: cce9db447ddbdcac6fa37bde9ac052875c1137c5
SHA256: b1781a062bfca853a3b556afe982e1800bb1e30cde0771cf7c62ca272503c788

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

Virus Total: 17/77 VT report date: 2024-10-14 00:10:38
Malware Type 1 trojan
Threat Type 2 pantera winlnk

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://170.75.168.151:8080/transaction.pdf.lnk VirusTotal Report 170.75.168.151 VirusTotal Report 2024-10-14 00:56:02

Strings analysis - Possible IPs found 1

170.75.168.151