General

  • Target

    a2f3350be7efe9ab219915259dbf99196ad00355bb8a4c86aff44d87c1255328

  • Size

    1.4MB

  • MD5

    454042c60f57ac048d36f5d66892d303

  • SHA1

    d49db9622907ecc19bdab186c2bb50f645ed6140

  • SHA256

    a2f3350be7efe9ab219915259dbf99196ad00355bb8a4c86aff44d87c1255328

  • SHA512

    56ef8ab66c5b5191e8417e1ffc426bb020f12d741e88f4d7419baad637aaedb94732b1cfc3a800929c14c9182d4fa0a875937bd7af441e8cf64261a9f91cc6d7

  • SSDEEP

    24576:ru6J3xO0c+JY5UZ+XCHkGso6Fa720W4njUprvVcC1f2o5RRfgdWYZ:Fo0c++OCokGs9Fa+rd1f26RNYZ

Score
10/10

Malware Config

Signatures

  • NetWire RAT payload 1 IoCs
  • Netwire family
  • AutoIT Executable 1 IoCs

    AutoIT scripts compiled to PE executables.

  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • a2f3350be7efe9ab219915259dbf99196ad00355bb8a4c86aff44d87c1255328
    .exe windows:5 windows x86 arch:x86

    eb97e4fc5518ac300a92a11673825e0b


    Headers

    Imports

    Sections