General

  • Target

    60903dabe59fa30c5f54bdfd2871d2bbac1f08f6ba770734a83019c2f4339b34

  • Size

    1.3MB

  • MD5

    4d36ed6bc426be35591b28a4c6634691

  • SHA1

    86fc550a80a861a51d65ad5aa269cf92450a5af1

  • SHA256

    60903dabe59fa30c5f54bdfd2871d2bbac1f08f6ba770734a83019c2f4339b34

  • SHA512

    86957e4c9211c86092bfcf7a62daec68d055e9cdf0f9b0b9fae08f3d9011cf73e09b6e3f0fdf83185b09231388b726c2716343ae0657735c7b9aa574699315ed

  • SSDEEP

    24576:Ku6J33O0c+JY5UZ+XC0kGso6Fa720W4njUprvVcC1f2o5RRfgUWYu:8u0c++OCvkGs9Fa+rd1f26RaYu

Score
10/10

Malware Config

Signatures

  • NetWire RAT payload 1 IoCs
  • Netwire family
  • AutoIT Executable 1 IoCs

    AutoIT scripts compiled to PE executables.

  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • 60903dabe59fa30c5f54bdfd2871d2bbac1f08f6ba770734a83019c2f4339b34
    .exe windows:5 windows x86 arch:x86

    eb97e4fc5518ac300a92a11673825e0b


    Headers

    Imports

    Sections