Managed XDR

c-programdata-microsof...inbox-toolbar-help.lnk — malware analysis report

File info

Filename
c-programdata-microsoft-windows-start-menu-programs-inbox-toolbar-help.lnk
File type
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Archive, ctime=Sun Oct 27 17:58:19 2024, mtime=Sun Oct 27 17:58:41 2024, atime=Tue Jan 14 06:05:06 2014, length=1380264, window=hide
File size
1.2 KB
First seen
Last seen

Environment

win7/x64 en

Hashes

SHA1
6ea8d36aa7825ea3b3adde3a6e1c486e2b2208e1
SHA256
f070fa894af5e9719312d87cd168a45ce50b466697addfd352ed5b8c0bccf8de
MD5
d3c8edec588f1c2e3dd5e3194e90e840

Signatures

Execution

T1204 suspicious_lnk: LNK file with suspicious content
T1059.001 url_cmdline: Cmdline of process contains URL
T1059.003 url_cmdline: Cmdline of process contains URL

Defense Evasion

T1027.002 unnamed_memory_regions: Code was executed in unnamed regions

Other

create_process_failed: Could not start the process
unexpected_exception: Unexpected exception
no_graphical_activity: No graphic activity
creates_suspended_process: Creates suspended process