{"id":"b5a82328f57ded256ffc44f58da1541d","title":"Task Scheduler Persistence — Task Scheduler Persistence · 木马/恶意软件 · PE64","md5":"b5a82328f57ded256ffc44f58da1541d","sha256":"54fa7e1901aebe02bf8935769ed66f6bbb750f2adfc1a2283eec2372bcef32be","family":"Task Scheduler Persistence","apt":null,"verdict":null,"sample_type":"木马/恶意软件","lang":"C++","file_format":"PE64","compiler":"MSVC","published_at":"2026-08-09T16:00:00.000Z","summary":"该样本为 PE64 Windows 恶意软件，内嵌完整的 Windows 计划任务 XML 配置。使用 LogonTrigger 在用户登录时触发执行，伪装为 Microsoft Contoso AppPlatform Runtime。计划任务配置包含 Exec/Command 执行恶意载荷。","url":"https://zseceye.com/report/b5a82328f57ded256ffc44f58da1541d","json_url":"https://zseceye.com/report/b5a82328f57ded256ffc44f58da1541d.json","html_url":"https://zseceye.com/report/b5a82328f57ded256ffc44f58da1541d","hash_urls":{"md5":"https://zseceye.com/hash/b5a82328f57ded256ffc44f58da1541d","sha256":"https://zseceye.com/hash/54fa7e1901aebe02bf8935769ed66f6bbb750f2adfc1a2283eec2372bcef32be"},"search_urls":{"md5":"https://zseceye.com/?q=b5a82328f57ded256ffc44f58da1541d","sha256":"https://zseceye.com/?q=54fa7e1901aebe02bf8935769ed66f6bbb750f2adfc1a2283eec2372bcef32be"},"sample_download_url":"https://zseceye.com/report/b5a82328f57ded256ffc44f58da1541d/sample","sample_filename":"54fa7e1901aebe02.zip","iocs":[],"ips":[]}