General

  • Target

    __x64___setup___x32__.zip

  • Size

    50.4MB

  • MD5

    61b5a940e741c3afea944d62b18e6cf1

  • SHA1

    2cb1a18746080175ad7a27147173ca4552a076a6

  • SHA256

    6ccb191f7b79cb8967de32761ebb54d141f5bba36cb3bd1f4ea71933c7b46494

  • SHA512

    b2f6aca2fbb00a5eff0f8ca6e62552a12c52532273e30b5d5a5ed537d5dd96907d8d0671b74f15bb2204035205508386830213d237e23223b159c547d805e02d

  • SSDEEP

    1572864:tBY23MKU4Obq/3JI8sXlU3tBHI3Wxrpf+SqHg:tyMhObU/sutBoGxr1+/A

Score
3/10

Malware Config

Signatures

  • Unsigned PE 16 IoCs

    Checks for missing Authenticode signature.

Files

  • __x64___setup___x32__.zip
    .zip
  • TapiSysprep/rpcnsh.dll
  • __x64___setup___x32__/TapiSysprep/TapiSysprep.dll
    .dll windows:10 windows x64 arch:x64

    397bc475fccba616c4c1b87402a4b3b1


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/TapiSysprep/netprofm.dll
    .dll regsvr32 windows:10 windows x64 arch:x64

    affb8b2ee176e881ad572d4ee006ac27


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/TapiSysprep/rpcnsh.dll
    .dll windows:10 windows x64 arch:x64

    00ce5d3d7014818cc40866bdfd22be77


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/TapiSysprep/socialapis.dll
    .dll windows:10 windows x64 arch:x64

    d9b95dc964953cd6b1c3f52ff54556e6


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/acledit/BluetoothApis.dll
    .dll windows:10 windows x64 arch:x64

    80b20b2e5999a4d3296c31be629bac1e


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/acledit/DevDispItemProvider.dll
    .dll windows:10 windows x64 arch:x64

    8089ba1b3f1c44442ae3f651df4db9c4


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/acledit/acledit.dll
    .dll windows:10 windows x64 arch:x64

    02f6fc922b46bf9b846109dcfb249d30


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/acledit/printui.dll
    .dll regsvr32 windows:10 windows x64 arch:x64

    944df35c81b605bbf59d0853a44df336


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/dsreg/dcntel.dll
    .dll windows:10 windows x64 arch:x64

    297a2ad90ecd0a9d6f27b16387dae5ef


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/dsreg/dsound.dll
    .dll windows:10 windows x64 arch:x64

    7257aa932ac77b1d2e29b45383b4e0a6


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/dsreg/dsreg.dll
    .dll windows:10 windows x64 arch:x64

    1cac4312a6dde042a044bb0a45c42d48


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/dsreg/sensrsvc.dll
    .dll windows:10 windows x64 arch:x64

    7980291b053dc0ce2145ce6b777cd2ca


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/pcwum/AppxSip.dll
    .dll regsvr32 windows:10 windows x64 arch:x64

    e06fe0d53e5834d5eeea2d913edb0995


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/pcwum/asferror.dll
    .dll windows:10 windows x64 arch:x64


    Headers

    Sections

  • __x64___setup___x32__/pcwum/pcwum.dll
    .dll windows:10 windows x64 arch:x64


    Code Sign

    Headers

    Exports

    Sections

  • __x64___setup___x32__/pcwum/pdhui.dll
    .dll windows:10 windows x64 arch:x64

    aede04ec0542987e57567a203b6b82c7


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/setup.msi
    .msi
  • __x64___setup___x32__/wcimage/SEMgrPS.dll
    .dll windows:10 windows x64 arch:x64

    7dcc2d309d96727b06e1bbb65b6597f9


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/wcimage/SensorsApi.dll
    .dll regsvr32 windows:10 windows x64 arch:x64

    93f00183f6b2824f35a5ab3c1bf4de20


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/wcimage/netprofmsvc.dll
    .dll windows:10 windows x64 arch:x64

    ad45623529f9b4402c7d26b5ea54d733


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/wcimage/wcimage.dll
    .dll windows:10 windows x64 arch:x64

    f8fb756be0e3bc5854c867138bb76490


    Headers

    Imports

    Exports

    Sections