MB-60ff4dc97fd6178b8a3b8cf13b543f4ce3d0913c9d4d9e95606236e71c136f1e
high
📛 Threat Title
Unknown: 12052026_0620_Continental Global Synergy No2.lnk.zip
Description
File type: zip. Size: 1260 bytes. Tags: 104-207-135-174, 155-138-247-221, zip. Reporter: smica83. First seen: 2026-05-14 08:09:03.
Indicators of Compromise (4)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
domain
no2.lnk.zip
VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/no2.lnk.zip
UrlVoid 0 / 35
IOC database
- Type
- domain
- Value
no2.lnk.zip- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Extracted from Threat MB-60ff4dc97fd6178b8a3b8cf13b543f4ce3d0913c9d4d9e95606236e71c136f1e
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/no2.lnk.zip
hash_sha256
60ff4dc97fd6178b8a3b8cf13b543f4ce3d0913c9d4d9e95606236e71c136f1e
VT: VT base fetch failed: HTTPError: 429 Too Many Requests for files/60ff4dc97fd6178b8a3b8cf13b543f4ce3d0913c9d4d9e95606236e71c136f1e
1 feed
IOC database
- Type
- hash_sha256
- Value
60ff4dc97fd6178b8a3b8cf13b543f4ce3d0913c9d4d9e95606236e71c136f1e- First seen
- Last seen
- Attached to this threat
- Appears in
- 2 threats
- Description
- Unknown
Threat Hunt — feed corroboration
Listed by 1 threat-intel feed vendor: Abuse.ch. Open in Threat Hunt →
Details From VirusTotal
VirusTotal: VT base fetch failed: HTTPError: 429 Too Many Requests for files/60ff4dc97fd6178b8a3b8cf13b543f4ce3d0913c9d4d9e95606236e71c136f1e
hash_sha1
8b13bce2f87b74b2c1ef3dc05f452bb564e7ecae
VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/8b13bce2f87b74b2c1ef3dc05f452bb564e7ecae
2 feeds
IOC database
- Type
- hash_sha1
- Value
8b13bce2f87b74b2c1ef3dc05f452bb564e7ecae- First seen
- Last seen
- Attached to this threat
- Appears in
- 2 threats
Threat Hunt — feed corroboration
Listed by 2 threat-intel feed vendors: Abuse.ch, threatview.io. Open in Threat Hunt →
Details From VirusTotal
VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/8b13bce2f87b74b2c1ef3dc05f452bb564e7ecae
hash_md5
6766634c0dd506f157f80721d5199cc2
VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/6766634c0dd506f157f80721d5199cc2
2 feeds
IOC database
- Type
- hash_md5
- Value
6766634c0dd506f157f80721d5199cc2- First seen
- Last seen
- Attached to this threat
- Appears in
- 2 threats
Threat Hunt — feed corroboration
Listed by 2 threat-intel feed vendors: Abuse.ch, threatview.io. Open in Threat Hunt →
Details From VirusTotal
VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/files/6766634c0dd506f157f80721d5199cc2
References (1)
-
MalwareBazaar sample page
Abuse.ch
File type: zip. Size: 1260 bytes. Tags: zip. Reporter: smica83. First seen: 2026-05-14 08:09:03.
Remediations (10)
-
web:continental.aero
Access official technical publications from Continental Aerospace Technologies™—including manuals, service docs, and compliance information for aircraft engines.
-
web:github.com
The Intune Remediations collection is a set of script packages designed to detect and fix common support issues on user endpoints. Each script package includes a detection script, a remediation script, and metadata. By deploying these packages through Intune, you can proactively address issues before end-users even notice them, potentially reducing support calls.
-
web:intune.microsoft.com
Microsoft Intune admin center allows you to manage devices, apps, and users securely and efficiently.
-
web:play.geforcenow.com
Instantly play the most demanding PC games and seamlessly play across your devices.
-
web:start.clap.continental.com
Login to CLAP Start App by Continental AG for seamless access to services and information.
-
web:tcpglobal.com
Huge supplier of Automotive Paint, Auto Body Supplies, Airbrush Equipment, Car Detailing Supplies, Pinstripe Paint, Spray Guns & Safety Respirators at Wholesale Prices. Our items are factory direct and we carry a wide variety of Top Quality Brands.
-
web:undercodetesting.com
Introduction Malicious actors are increasingly leveraging LNK (shortcut) files to deliver malware, targeting both enterprises and individual Windows users. Palo Alto Networks Unit 42's analysis of 30,000 recent samples highlights the growing sophistication of these attacks.
-
web:windowsforum.com
A long‑used exploit vector involving Windows shortcut (.LNK) files (CVE‑2025‑9491) has been actively weaponized by threat actors and has prompted limited/micropatch style mitigations rather than a full, immediate remediation .
-
web:www.continental-tires.com
Download zip file. If download of the zip-file was blocked by fire-wall / virus scanner: Download the "alternate zip file". After successful download, change (rename) extension of the downloaded file from .zi1 to .zip Unzip the file "HHT-update-client__yyyy-mm-dd.zip" Use "conti" as password for unzipping if necessary.
-
web:www.instagram.com
0 likes, 0 comments - cgs.paint78 on February 5, 2025: "Dear Sir/Madam I would like to introduce Continental Global Synergy Ltd to you as your surest partner in making and Production of Quality Paint for Homes and Industrial Equipments.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.