foto.lnk
Classification: Malicious
foto.lnk is a malicious file sample. Linked to Metamorfo malware. Reported by 1 threat source, last seen 2021-10-08. Detected by 24 antivirus engines.
Detection summary
- 24 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: METAMORFO (S0455)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Generic.Malware | Abuse.ch | 2021-10-08 04:44:09 | 2021-10-08 04:44:09 | malicious-activity | |
| Metamorfo | Abuse.ch | 2021-10-08 04:44:09 | 2021-10-08 04:44:09 | malicious-activity | S0455 Metamorfo |
Sample information
- Filenames
- foto.lnk
- File type
- application/octet-stream
- MD5
d978623b66ea6e319225b1df1039429f- SHA-1
2c6236f4928107256437d8d81ed577d4ab9dbbb3- SHA-256
d3345dab00110836e562eabf33e57e1c597227a71a05558cba4cf6f52f8a6985- First indexed
- 2021-10-08 05:15:04
- Last updated
- 2026-07-28 00:47:20
Antivirus detections
| Engine | Detection |
|---|---|
| McAfee | LNK/Downloader!D978623B66EA |
| ESET-NOD32 | LNK/TrojanDownloader.Agent.AIY |
| Kaspersky | Trojan.Multi.GenAutorunLnkFile.a |
| Sophos | Troj/DownLnk-BF |
| McAfee-GW-Edition | Artemis!D978623B66EA |
| Fortinet | LNK/DownLnk.BF!tr |
| AVG | Other:Malware-gen [Trj] |
| Avast | Other:Malware-gen [Trj] |
| BitDefender | Trojan.GenericKD.37747043 |
| Cyren | LNK/Downldr.gen |
| DrWeb | LNK.Downloader.214 |
| Emsisoft | Trojan.GenericKD.37747043 (B) |
| FireEye | Trojan.GenericKD.37747043 |
| GData | Trojan.GenericKD.37747043 |
| Ikarus | Trojan-Downloader.LNK.Agent |
| MAX | malware (ai score=87) |
| McAfee-GW-Edition | LNK/Downloader!D978623B66EA |
| MicroWorld-eScan | Trojan.GenericKD.37747043 |
| Microsoft | Trojan:Win32/Winlnk.RV!MTB |
| Symantec | Trojan.Gen.NPE |
| TrendMicro | TROJ_FRS.0NA103J921 |
| TrendMicro-HouseCall | TROJ_FRS.0NA103J921 |
| Zillya | Downloader.Agent.Script.5865 |
| ZoneAlarm | Trojan.Multi.GenAutorunLnkFile.a |