s2
--:--:--UTC

Searching APEX

Starting…

  1. ○ Searching Threats, IOCs & Threat Intelligence locally
  2. ○ Querying external providers
  3. ○ Asking AI Forensic Validator
  4. ○ Creating new entry from validated hit

0s elapsed

MB-9d5dae158e928f5c8c49d92a462d932a7e39f7c76510ab11b666e4e2d5783ca0 high

📛 Threat Title

Unknown: МОНГОЛ УЛСЫН НЭГДСЭН ТӨСВИЙН 2027 ОНЫ ТӨСВИЙН ХҮРЭЭНИЙ МЭДЭГДЭЛ, 2028-2029 ОНЫ ТӨСВИЙН ТӨСӨӨЛЛИЙН ТУХАЙ.lnk

Category: Unknown Published: Source updated: First seen: Last updated: Source: Abuse.ch

Description

File type: lnk. Size: 1431 bytes. Tags: lnk. Reporter: smica83. First seen: 2026-09-25 08:24:27.

Indicators of Compromise (3)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

hash_sha256 9d5dae158e928f5c8c49d92a462d932a7e39f7c76510ab11b666e4e2d5783ca0 VT: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/files/9d5dae158e928f5c8c49d92a462d932a7e39f7c76510ab11b666e4e2d5783ca0

IOC database

Type
hash_sha256
Value
9d5dae158e928f5c8c49d92a462d932a7e39f7c76510ab11b666e4e2d5783ca0
First seen
Last seen
Attached to this threat
Appears in
1 threat
Description
Unknown

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/files/9d5dae158e928f5c8c49d92a462d932a7e39f7c76510ab11b666e4e2d5783ca0

hash_sha1 32d427420a47f3ad032f088f26f3c3d6bc33efca VT: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/files/32d427420a47f3ad032f088f26f3c3d6bc33efca

IOC database

Type
hash_sha1
Value
32d427420a47f3ad032f088f26f3c3d6bc33efca
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/files/32d427420a47f3ad032f088f26f3c3d6bc33efca

hash_md5 0dd946c9d4f5727c765526420d194425 VT 6 / 75

IOC database

Type
hash_md5
Value
0dd946c9d4f5727c765526420d194425
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Flagged by 6 of 75 VirusTotal vendors

VendorVerdictDetection
Google malicious Detected
Kaspersky malicious UDS:Trojan.WinLNK.Agent.gen
Sophos malicious Troj/LnkObf-T
TrendMicro malicious HEUR_LNKEXEC.A
TrendMicro-HouseCall malicious HEUR_LNKEXEC.A
ZoneAlarm malicious Troj/LnkObf-T

Details From VirusTotal

Basic Properties
MD50dd946c9d4f5727c765526420d194425
SHA-132d427420a47f3ad032f088f26f3c3d6bc33efca
SHA-2569d5dae158e928f5c8c49d92a462d932a7e39f7c76510ab11b666e4e2d5783ca0
VHash66a0101492d462ced224bcdee639ac7f
SSDEEP24:8A/BwKcMb+/eMgXIJUoLeDhiW8qzJ0zfMxsv7lgW8AW/hIu:8E+dMtXcFaEW8qazfxeW8AW
TLSHT1AC212C1476FA5714F2F39EB944BAF11189767867DDA6DB4D0008818E2935A00FD33F22
File typeWindows shortcut
File type taglnk
File extensionlnk
MagicMS Windows shortcut, Item id list present, Has Description string, Has Relative path, Has Working directory, Has command line arguments, Icon number=56, ctime=Thu Dec 31 23:59:59 1969, mtime=Thu Dec 31 23:59:59 1969, atime=Thu Dec 31 23:59:59 1969, length=0, window=hidenormalshowminimized
File size1.4 KB
History
First seen on VirusTotal2026-09-25 03:18 UTC
Last submission2026-09-25 03:18 UTC
Last analysis2026-09-25 11:38 UTC
Last modified on VirusTotal2026-09-25 13:39 UTC
Known Names
  • 3ovdj3.exe
  • МОНГОЛ УЛСЫН НЭГДСЭН ТӨСВИЙН 2027 ОНЫ ТӨСВИЙН ХҮРЭЭНИЙ МЭДЭГДЭЛ, 2028-2029 ОНЫ ТӨСВИЙН ТӨСӨӨЛЛИЙН ТУХАЙ.lnk
  • ?????? ????? ??????? ??????? 2027 ??? ??????? ???????? ????????, 2028-2029 ??? ??????? ?????????? ?????.lnk

References (1)

Remediations (10)

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.