A renamed to match a DLL that the legitimate executable expects to load. An encrypted payload (the actual malware).
: The shortcut runs the legitimate executable, which unknowingly loads the malicious DLL ( DLL Sideloading ). This DLL then decrypts and runs the final payload in memory to avoid detection by traditional antivirus. Associated Malware Families
: If you haven't opened the archive or the files within, delete it immediately and empty your recycle bin.
: A modular Remote Access Trojan (RAT) known for its use by various APT groups.
If you can tell me or if your antivirus flagged a specific threat , I can give you more targeted removal steps.
: If you have already executed a file from this archive, disconnect the device from the internet to prevent data exfiltration.