General

  • Target

    floss-v2.2.0-windows.zip

  • Size

    27.7MB

  • MD5

    4dd559bcf8712b02dab9e19929b682a1

  • SHA1

    5b4f8f32bf9ce947f957e2600bb821a04b64a723

  • SHA256

    edc206110a62bba4c27ff245d93e66d237c74c27f98ae05b9478151fbaed8aee

  • SHA512

    7a47179747bed8e7c0028b754e72954e8e5411619bedd1a628729836d6ba84b9107a6ee4747c4d69e52ba2cf87428a16e2118e7f25d62d974754d6c68b8faf17

  • SSDEEP

    786432:3TLIj0m6OVw58B1eKBI+tvZl+f1aoLhH5:j8oUVqQ1eK7hQIkJ5

Malware Config

Signatures

  • Bazar/Team9 Backdoor payload 1 IoCs
  • Bazarbackdoor family
  • Detects Pyinstaller 1 IoCs
  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • floss-v2.2.0-windows.zip
    .zip
  • floss.exe
    .exe windows x64

    ba5546933531fafa869b1f86a4e2a959


    Headers

    Imports

    Sections