General

  • Target

    e8a6b73fb39b8c33d43ffd219621e09e5e985823dbc394e30ecd401b36e46396

  • Size

    1.3MB

  • MD5

    091bcbb2d79d44f073f29f14f3e417a6

  • SHA1

    3aadc17c200159857e5dc4ef187bf51350405837

  • SHA256

    e8a6b73fb39b8c33d43ffd219621e09e5e985823dbc394e30ecd401b36e46396

  • SHA512

    d403a2afa2ead28cf31cee37002c4be05189b7dbb0df37aed26a988e79c12502c20a3edf10bbee2a014b2b35f1a3c38e7ea7d40eca8d52bd6df06520915009ce

  • SSDEEP

    24576:Ku6J33O0c+JY5UZ+XC0kGso6Fa720W4njUprvVcC1f2o5RRfgUWYh:8u0c++OCvkGs9Fa+rd1f26RaYh

Score
10/10

Malware Config

Signatures

  • NetWire RAT payload 1 IoCs
  • Netwire family
  • AutoIT Executable 1 IoCs

    AutoIT scripts compiled to PE executables.

  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • e8a6b73fb39b8c33d43ffd219621e09e5e985823dbc394e30ecd401b36e46396
    .exe windows:5 windows x86 arch:x86

    eb97e4fc5518ac300a92a11673825e0b


    Headers

    Imports

    Sections