Active Malware Remediation Malicious LNK [Shortcut] Worms

Jay from Sophos Support goes over the proper steps to take when dealing with a Shortcut LNK worm infection.

Skip ahead to these sections:

0:00 Overview
0:25 Identification
1:04 Investigation
1:51 Remediation
4:01 Additional Information

Resources:



Sophos MTR self help guide document: https://docs.sophos.com/central/MTR/selfhelp/en-us/central/MTR/concepts/ActiveMalware.html

Sophos Sample Submission:
https://support.sophos.com/support/s/filesubmission?language=en_US

Sophos Source of Infection (SOI) tool:
https://support.sophos.com/support/s/article/KB-000033931?language=en_US

Microsoft AutoRuns Download:
https://docs.microsoft.com/en-us/sysinternals/downloads/autoruns

How to Investigate Shortcut [LNK] Malware:
https://support.sophos.com/support/s/article/KB-000039206?language=en_US

Embed