Resubmissions

22-06-2024 13:26

240622-qp2k3szdjg 10

22-06-2024 13:22

240622-qmnw7szcle 10

General

  • Target

    381333799197cdf21b4d12d9ce83587673c52b336547a5425bbd9c69bba00d5f.zip

  • Size

    134KB

  • MD5

    ef0bde59ac1b1fbac9cd1fe0c9041313

  • SHA1

    c8fe5de409be59a5c01fb5a6529d50476a64f73c

  • SHA256

    9effd1d916479ebfecd12f3650088aae8883eb4929835c26fe2dd3c5b7351f04

  • SHA512

    135867d3ea58b3f86f3f33712cf1c0a44278bbff732d587a1eff379c574d392d632ce1de8304c42a6747fa6b82e23c00192027eb78d6c139c7fd57bb29e70cc6

  • SSDEEP

    3072:3hvqWgry/5LNmrPCC+2HWnZda8ZTo2l+48DG3lSODKl6JsV:RCWgryhg+CTHkZc0TKXDGVSOrJsV

Score
10/10

Malware Config

Extracted

Family

cryptbot

C2

unic16m.top

unic16e.top

Signatures

  • Cryptbot family
  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • 381333799197cdf21b4d12d9ce83587673c52b336547a5425bbd9c69bba00d5f.zip
    .zip

    Password: infected

  • 381333799197cdf21b4d12d9ce83587673c52b336547a5425bbd9c69bba00d5f.exe
    .exe windows:6 windows x86 arch:x86

    Password: infected

    5e83a2a4f8bd496b2fc660065aba6076


    Headers

    Imports

    Sections