Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
z___Desktop___.lnk

Overview

General Information

Sample Name:z___Desktop___.lnk
Analysis ID:796586
MD5:9af17609ac27044d1c1cd25916b855cc
SHA1:827e35ff6956a8b7b4e7f4f36844acad912da76d
SHA256:aee7021ddb18891a3af1226f0e4138e1374e405fc7956a8c2a8118c0c5a7398d
Tags:lnk
Errors
  • No process behavior to analyse as no analysis process or sample was found

Detection

Score:0
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

No high impact signatures.

Classification

No configs have been found
No yara matches
No Sigma rule has matched
No Snort rule has matched

Click to jump to signature section

Show All Signature Results

There are no malicious signatures, click here to show all signatures.

Source: z___Desktop___.lnkLNK file: ..\Desktop
Source: classification engineClassification label: unknown0.winLNK@0/0@0/0
No Mitre Att&ck techniques found

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
z___Desktop___.lnk0%ReversingLabs
z___Desktop___.lnk0%VirustotalBrowse
No Antivirus matches
No Antivirus matches
No Antivirus matches
No Antivirus matches
No contacted domains info
No contacted IP infos
Joe Sandbox Version:36.0.0 Rainbow Opal
Analysis ID:796586
Start date and time:2023-02-02 00:28:34 +01:00
Joe Sandbox Product:CloudBasic
Overall analysis duration:0h 2m 18s
Hypervisor based Inspection enabled:false
Report type:full
Cookbook file name:default.jbs
Analysis system description:Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 104, IE 11, Adobe Reader DC 19, Java 8 Update 211
Number of analysed new started processes analysed:0
Number of new started drivers analysed:0
Number of existing processes analysed:0
Number of existing drivers analysed:0
Number of injected processes analysed:0
Technologies:
  • EGA enabled
  • HDC enabled
  • AMSI enabled
Analysis Mode:default
Analysis stop reason:Timeout
Sample file name:z___Desktop___.lnk
Detection:UNKNOWN
Classification:unknown0.winLNK@0/0@0/0
Cookbook Comments:
  • Found application associated with file extension: .lnk
  • Stop behavior analysis, all processes terminated
  • No process behavior to analyse as no analysis process or sample was found
No simulations
No context
No context
No context
No context
No context
No created / dropped files found
File type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Read-Only, Directory, ctime=Tue Oct 8 07:41:12 2013, mtime=Wed Mar 11 01:45:54 2015, atime=Wed Mar 11 02:13:22 2015, length=40960, window=hide
Entropy (8bit):4.469872682170529
TrID:
  • Windows Shortcut (20020/1) 100.00%
File name:z___Desktop___.lnk
File size:438
MD5:9af17609ac27044d1c1cd25916b855cc
SHA1:827e35ff6956a8b7b4e7f4f36844acad912da76d
SHA256:aee7021ddb18891a3af1226f0e4138e1374e405fc7956a8c2a8118c0c5a7398d
SHA512:ce80dc6279b7e9b31ea47cc4be19e60974e6959c7dadd3dbcf5db9206433f3d56957e2ecc0065602a27998fd5c5da01e554044b0dc4cb37ee65b7320c86b39b9
SSDEEP:6:4xtQlkuC+TColjeljtjOdWNAWclQRnINcXWS0GV9BhulUP0WzrN+IqMs+IqMjl:8bT+TC4je5tMOXdVhulUP0IOcYl
TLSH:EEF068426176AB11C3384732C3F68247E13878539D99F7089021931648E8A15C0FF608
File Content Preview:L..................F........y..$....C..~.[.....T.[..............................J...............3.......I...........0.......System.C:\Users\ThuD\Desktop........\.D.e.s.k.t.o.p.........=...1SPS0.%..G.....`....!................D.e.s.k.t.o.p.......Y...1SPS.j
Icon Hash:00b29a8a8e898d0d

General

Relative Path:..\Desktop
Command Line Argument:
Icon location:
Report size exceeds maximum size, go to the download page of this report and download PCAP to see all network behavior.
No statistics
No system behavior
No disassembly