Active Malware Remediation Malicious LNK [Shortcut] Worms
Jay from Sophos Support goes over the proper steps to take when dealing with a Shortcut LNK worm infection.
Skip ahead to these sections:
0:00 Overview
0:25 Identification
1:04 Investigation
1:51 Remediation
4:01 Additional Information
Resources:
Sophos MTR self help guide document: https://docs.sophos.com/central/MTR/selfhelp/en-us/central/MTR/concepts/ActiveMalware.html
Sophos Sample Submission:
https://support.sophos.com/support/s/filesubmission?language=en_US
Sophos Source of Infection (SOI) tool:
https://support.sophos.com/support/s/article/KB-000033931?language=en_US
Microsoft AutoRuns Download:
https://docs.microsoft.com/en-us/sysinternals/downloads/autoruns
How to Investigate Shortcut [LNK] Malware:
https://support.sophos.com/support/s/article/KB-000039206?language=en_US