General

  • Target

    3cc72e9e37f345ef803e18eec5b5e77cc260d8b0aabd934030eb6e47b6e2206d

  • Size

    1.4MB

  • MD5

    99b20d88b4431a38c6faa951b45f4269

  • SHA1

    e2ac95c352b96eae7064a3f7eb56725c52391930

  • SHA256

    3cc72e9e37f345ef803e18eec5b5e77cc260d8b0aabd934030eb6e47b6e2206d

  • SHA512

    27a76810a651dd97d37f58d22f296945f0353e0f9a0fd103e60b1d828f0ecd7a209ac09b3eece8550614e0110e1e57424f6447adab4d783531ab461efd1ed4f7

  • SSDEEP

    24576:ru6J3xO0c+JY5UZ+XCHkGso6Fa720W4njUprvVcC1f2o5RRfgdWYa:Fo0c++OCokGs9Fa+rd1f26RNYa

Score
10/10

Malware Config

Signatures

  • NetWire RAT payload 1 IoCs
  • Netwire family
  • AutoIT Executable 1 IoCs

    AutoIT scripts compiled to PE executables.

  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • 3cc72e9e37f345ef803e18eec5b5e77cc260d8b0aabd934030eb6e47b6e2206d
    .exe windows:5 windows x86 arch:x86

    eb97e4fc5518ac300a92a11673825e0b


    Headers

    Imports

    Sections