Sitting on the Lolbins, 3

August 22, 2019 in Anti-Forensics, Living off the land, LOLBins, Reusigned Binaries

Another friendly .exe from Intel – accurately called Delayed launcher (LaunchDelay.exe). And this is exactly what it does: it launches… with a delay.

This is how to use it:

LaunchDelay.exe notepad.exe 5

Sample: 775DBEC29C3558A61CCFFDBA6E319E4BCF2C5C2EA91C6F5AF04E88C699B7D7A8

Comments are closed.