A renamed to match a DLL that the legitimate executable expects to load. An encrypted payload (the actual malware).

: The shortcut runs the legitimate executable, which unknowingly loads the malicious DLL ( DLL Sideloading ). This DLL then decrypts and runs the final payload in memory to avoid detection by traditional antivirus. Associated Malware Families

: If you haven't opened the archive or the files within, delete it immediately and empty your recycle bin.

: A modular Remote Access Trojan (RAT) known for its use by various APT groups.

If you can tell me or if your antivirus flagged a specific threat , I can give you more targeted removal steps.

: If you have already executed a file from this archive, disconnect the device from the internet to prevent data exfiltration.