General

  • Target

    Full_Setup_Downloaded_Here.zip

  • Size

    37.9MB

  • MD5

    8ead0f163701c1c225dcd6b055bd16a3

  • SHA1

    cd18e99b0be5561aeb7b709f40eb1978d5b9a229

  • SHA256

    71e9d4c711a188b0bc798b078eb8f052b11d479c9f4e4f1d746dccfefd4de984

  • SHA512

    4c200fa3b722266b1f88c3413b519234ac6878ac33b16b82e8f87c984c4c5ddb00051cd0d7b643b0102d40dbf725118a3966caa5b32782e3cf1245ce31f07989

  • SSDEEP

    786432:2jdM1/hVgjdM1/hVXjdM1/hVujdM1/hVMjdM1/hVGjdM1/hVJajdM1/hVb037UtM:AM15VCM15VhM15VYM15VWM15VwM15VJ4

Score
3/10

Malware Config

Signatures

  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • Full_Setup_Downloaded_Here.zip
    .zip
  • F0nts/84sys.fon
  • F0nts/8514sys.fon
  • F0nts/DL/Cr0atian.ini
  • F0nts/DL/Dani.ini
  • F0nts/DL/English.ini
  • F0nts/DL/Hebrew.ini
  • F0nts/DL/Hungarian.ini
  • F0nts/DL/Ind0nesian.ini
  • F0nts/DL/Japanese.ini
  • F0nts/DL/K0rean.ini
  • F0nts/DL/Kazakh.ini
  • F0nts/DL/Kurdish.ini
  • F0nts/DL/N0rwegian.ini
  • F0nts/DL/SimpChinese.ini
  • F0nts/DL/Sinhala.ini
  • F0nts/DL/Sl0vak.ini
  • F0nts/DL/Swedi.ini
  • F0nts/DL/Thai.ini
  • F0nts/DL/TradChinese.ini
  • F0nts/DL/Ukrainian.ini
  • F0nts/DL/UyghurLatin.ini
  • F0nts/DL/Uzbek.ini
  • F0nts/DL/Vietnamese.ini
  • F0nts/DL/Winzip.exe
    .exe windows:5 windows x64 arch:x64

    629fae0a56e3262e208711dda6ae6b1d


    Code Sign

    Headers

    Imports

    Sections

  • F0nts/LangZ/Cr0atian.ini
  • F0nts/LangZ/Dani.ini
  • F0nts/LangZ/English.ini
  • F0nts/LangZ/Hebrew.ini
  • F0nts/LangZ/Hungarian.ini
  • F0nts/LangZ/Ind0nesian.ini
  • F0nts/LangZ/Japanese.ini
  • F0nts/LangZ/K0rean.ini
  • F0nts/LangZ/Kazakh.ini
  • F0nts/LangZ/Kurdish.ini
  • F0nts/LangZ/N0rwegian.ini
  • F0nts/LangZ/SimpChinese.ini
  • F0nts/LangZ/Sinhala.ini
  • F0nts/LangZ/Sl0vak.ini
  • F0nts/LangZ/Swedi.ini
  • F0nts/LangZ/Thai.ini
  • F0nts/LangZ/TradChinese.ini
  • F0nts/LangZ/Ukrainian.ini
  • F0nts/LangZ/UyghurLatin.ini
  • F0nts/LangZ/Uzbek.ini
  • F0nts/LangZ/Vietnamese.ini
  • F0nts/LangZ/Winzip.exe
    .exe windows:5 windows x64 arch:x64

    629fae0a56e3262e208711dda6ae6b1d


    Code Sign

    Headers

    Imports

    Sections

  • F0nts/Nita/Cr0atian.ini
  • F0nts/Nita/Dani.ini
  • F0nts/Nita/English.ini
  • F0nts/Nita/Hebrew.ini
  • F0nts/Nita/Hungarian.ini
  • F0nts/Nita/Ind0nesian.ini
  • F0nts/Nita/Japanese.ini
  • F0nts/Nita/K0rean.ini
  • F0nts/Nita/Kazakh.ini
  • F0nts/Nita/Kurdish.ini
  • F0nts/Nita/N0rwegian.ini
  • F0nts/Nita/SimpChinese.ini
  • F0nts/Nita/Sinhala.ini
  • F0nts/Nita/Sl0vak.ini
  • F0nts/Nita/Swedi.ini
  • F0nts/Nita/Thai.ini
  • F0nts/Nita/TradChinese.ini
  • F0nts/Nita/Ukrainian.ini
  • F0nts/Nita/UyghurLatin.ini
  • F0nts/Nita/Uzbek.ini
  • F0nts/Nita/Vietnamese.ini
  • F0nts/Nita/Winzip.exe
    .exe windows:5 windows x64 arch:x64

    629fae0a56e3262e208711dda6ae6b1d


    Code Sign

    Headers

    Imports

    Sections

  • F0nts/Rupo/Cr0atian.ini
  • F0nts/Rupo/Dani.ini
  • F0nts/Rupo/English.ini
  • F0nts/Rupo/Hebrew.ini
  • F0nts/Rupo/Hungarian.ini
  • F0nts/Rupo/Ind0nesian.ini
  • F0nts/Rupo/Japanese.ini
  • F0nts/Rupo/K0rean.ini
  • F0nts/Rupo/Kazakh.ini
  • F0nts/Rupo/Kurdish.ini
  • F0nts/Rupo/N0rwegian.ini
  • F0nts/Rupo/SimpChinese.ini
  • F0nts/Rupo/Sinhala.ini
  • F0nts/Rupo/Sl0vak.ini
  • F0nts/Rupo/Swedi.ini
  • F0nts/Rupo/Thai.ini
  • F0nts/Rupo/TradChinese.ini
  • F0nts/Rupo/Ukrainian.ini
  • F0nts/Rupo/UyghurLatin.ini
  • F0nts/Rupo/Uzbek.ini
  • F0nts/Rupo/Vietnamese.ini
  • F0nts/Rupo/Winzip.exe
    .exe windows:5 windows x64 arch:x64

    629fae0a56e3262e208711dda6ae6b1d


    Code Sign

    Headers

    Imports

    Sections

  • F0nts/Tire/Cr0atian.ini
  • F0nts/Tire/Dani.ini
  • F0nts/Tire/English.ini
  • F0nts/Tire/Hebrew.ini
  • F0nts/Tire/Hungarian.ini
  • F0nts/Tire/Ind0nesian.ini
  • F0nts/Tire/Japanese.ini
  • F0nts/Tire/K0rean.ini
  • F0nts/Tire/Kazakh.ini
  • F0nts/Tire/Kurdish.ini
  • F0nts/Tire/N0rwegian.ini
  • F0nts/Tire/SimpChinese.ini
  • F0nts/Tire/Sinhala.ini
  • F0nts/Tire/Sl0vak.ini
  • F0nts/Tire/Swedi.ini
  • F0nts/Tire/Thai.ini
  • F0nts/Tire/TradChinese.ini
  • F0nts/Tire/Ukrainian.ini
  • F0nts/Tire/UyghurLatin.ini
  • F0nts/Tire/Uzbek.ini
  • F0nts/Tire/Vietnamese.ini
  • F0nts/Tire/Winzip.exe
    .exe windows:5 windows x64 arch:x64

    629fae0a56e3262e208711dda6ae6b1d


    Code Sign

    Headers

    Imports

    Sections

  • F0nts/d0sapp.fon
  • F0nts/error/Cr0atian.ini
  • F0nts/error/Dani.ini
  • F0nts/error/English.ini
  • F0nts/error/Hebrew.ini
  • F0nts/error/Hungarian.ini
  • F0nts/error/Ind0nesian.ini
  • F0nts/error/Japanese.ini
  • F0nts/error/K0rean.ini
  • F0nts/error/Kazakh.ini
  • F0nts/error/Kurdish.ini
  • F0nts/error/N0rwegian.ini
  • F0nts/error/SimpChinese.ini
  • F0nts/error/Sinhala.ini
  • F0nts/error/Sl0vak.ini
  • F0nts/error/Swedi.ini
  • F0nts/error/Thai.ini
  • F0nts/error/TradChinese.ini
  • F0nts/error/Ukrainian.ini
  • F0nts/error/UyghurLatin.ini
  • F0nts/error/Uzbek.ini
  • F0nts/error/Vietnamese.ini
  • F0nts/error/Winzip.exe
    .exe windows:5 windows x64 arch:x64

    629fae0a56e3262e208711dda6ae6b1d


    Code Sign

    Headers

    Imports

    Sections

  • F0nts/smalle.fon
  • F0nts/symb0l.ttf
  • F0nts/trebucbd.ttf
  • F0nts/trebucbi.ttf
  • F0nts/verdab.ttf
  • F0nts/verdana.ttf
  • F0nts/verdanab.ttf
  • LaNgz/Cr0atian.ini
  • LaNgz/Dani.ini
  • LaNgz/English.ini
  • LaNgz/Hebrew.ini
  • LaNgz/Hungarian.ini
  • LaNgz/Ind0nesian.ini
  • LaNgz/Japanese.ini
  • LaNgz/K0rean.ini
  • LaNgz/Kazakh.ini
  • LaNgz/Kurdish.ini
  • LaNgz/N0rwegian.ini
  • LaNgz/SimpChinese.ini
  • LaNgz/Sinhala.ini
  • LaNgz/Sl0vak.ini
  • LaNgz/Swedi.ini
  • LaNgz/Thai.ini
  • LaNgz/TradChinese.ini
  • LaNgz/Ukrainian.ini
  • LaNgz/UyghurLatin.ini
  • LaNgz/Uzbek.ini
  • LaNgz/Vietnamese.ini
  • LaNgz/Winzip.exe
    .exe windows:5 windows x64 arch:x64

    629fae0a56e3262e208711dda6ae6b1d


    Code Sign

    Headers

    Imports

    Sections

  • Setup.exe
    .exe windows:6 windows x86 arch:x86

    e9fa0dc321486a0834a2759b64589900


    Headers

    Imports

    Exports

    Sections