General

  • Target

    df8a640b27ba57ed68bd74d105225fb2

  • Size

    1.4MB

  • MD5

    df8a640b27ba57ed68bd74d105225fb2

  • SHA1

    0acb4fd31f72087c30cfca2e7e02567fd3793881

  • SHA256

    63be92fd1c59c06bf508be25efd2d490143f86dea412f507738111da7e516ddb

  • SHA512

    6c0f2bc513d808a1d35ed8458843e452e7fd58f925b25b502c48c83c4cd50e5a415f6636e263ea42c8a4f0be6a3e3e812fdbe080d01db58f62ea9110ee198308

  • SSDEEP

    24576:wg41CI4yDlcBuTWT93Y15QmX9uTPGhPKFp3GAeTWqCQi364Iqhl+PPrA/hkGhdHT:94v4UcB3I8mX9sPGhPOGAyWd64Iqh08h

Score
3/10

Malware Config

Signatures

  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • df8a640b27ba57ed68bd74d105225fb2
    .exe windows:5 windows x86 arch:x86

    0ebb3c09b06b1666d307952e824c8697


    Headers

    Imports

    Sections

  • .data
  • .rsrc/1033/AVI/3001
  • .rsrc/1033/DIALOG/2001
  • .rsrc/1033/DIALOG/2002
  • .rsrc/1033/DIALOG/2003
  • .rsrc/1033/DIALOG/2004
  • .rsrc/1033/DIALOG/2005
  • .rsrc/1033/DIALOG/2006
  • .rsrc/1033/GROUP_ICON/3000
  • .rsrc/1033/ICON/1
    .png
  • .rsrc/1033/ICON/2.ico
  • .rsrc/1033/ICON/3.ico
  • .rsrc/1033/ICON/4.ico
  • .rsrc/1033/ICON/5.ico
  • .rsrc/1033/ICON/6.ico
  • .rsrc/1033/ICON/7.ico
  • .rsrc/1033/ICON/8.ico
  • .rsrc/1033/ICON/9.ico
  • .rsrc/1033/MANIFEST/1
    .xml
  • .rsrc/1033/RCDATA/ADMQCMD
  • .rsrc/1033/RCDATA/CABINET
    .cab
  • Chiedergli.ppt
  • Ricordate.ppt
  • Sfaldavano.ppt
  • Tenue.ppt
  • .rsrc/1033/RCDATA/EXTRACTOPT
  • .rsrc/1033/RCDATA/FILESIZES
  • .rsrc/1033/RCDATA/FINISHMSG
  • .rsrc/1033/RCDATA/LICENSE
  • .rsrc/1033/RCDATA/PACKINSTSPACE
  • .rsrc/1033/RCDATA/POSTRUNPROGRAM
  • .rsrc/1033/RCDATA/REBOOT
  • .rsrc/1033/RCDATA/RUNPROGRAM
  • .rsrc/1033/RCDATA/SHOWWINDOW
  • .rsrc/1033/RCDATA/TITLE
  • .rsrc/1033/RCDATA/UPROMPT
  • .rsrc/1033/RCDATA/USRQCMD
  • .rsrc/1033/string.txt
  • .rsrc/1033/version.txt
  • .rsrc/1049/string.txt
  • .text
  • CERTIFICATE