General

  • Target

    x64__installer___x32__.zip

  • Size

    26.6MB

  • MD5

    951895db4798737e96a7b22f0451ef01

  • SHA1

    2c9727632f4bfd3eda91b3fdd689ad53cfaae925

  • SHA256

    f548d1ad81af9ffb56e07ae96aef96702160d06a84db8802679686ef2b51d85e

  • SHA512

    82e6d3898bd5504e5f9aefbc2ea373468f217cff5d651db24c3ef84cae6ffb35d14700d11dab758661b114c8c4a674974efbb1bd31b4abf47af13591c88cb178

  • SSDEEP

    393216:q/eG13sFOO/XnV5ZN5JNCyvmgrfB6rX9wAH8owLrgY+HhHgSIrA/d0FuIxi:qxrO/9N52yvmcJ6rXTcvL8wA/CXxi

Score
3/10

Malware Config

Signatures

  • Unsigned PE 17 IoCs

    Checks for missing Authenticode signature.

Files

  • x64__installer___x32__.zip
    .zip

    Password: 2024

  • __x64___setup___x32__.zip
    .zip

    Password: 2024

  • AppxSip/AppxSip.dll
    .dll regsvr32 windows:10 windows x64 arch:x64

    Password: 2024

    e06fe0d53e5834d5eeea2d913edb0995


    Headers

    Imports

    Exports

    Sections

  • AppxSip/MSVidCtl.dll
    .dll regsvr32 windows:10 windows x64 arch:x64

    Password: 2024

    dd5e8a87d388e7f0e0dcb3f9ea5a64ef


    Headers

    Imports

    Exports

    Sections

  • AppxSip/deploymentcsps.dll
    .dll windows:10 windows x64 arch:x64

    Password: 2024

    2e29e86a1a3973521736ecbfb4f9b5b5


    Headers

    Imports

    Exports

    Sections

  • AppxSip/devenum.dll
    .dll regsvr32 windows:10 windows x64 arch:x64

    Password: 2024

    4c9079c33bef679868c8dc14bf0fe71a


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • SEMgrPS/SEMgrPS.dll
    .dll windows:10 windows x64 arch:x64

    Password: 2024

    7dcc2d309d96727b06e1bbb65b6597f9


    Headers

    Imports

    Exports

    Sections

  • SEMgrPS/SensorsApi.dll
    .dll regsvr32 windows:10 windows x64 arch:x64

    Password: 2024

    93f00183f6b2824f35a5ab3c1bf4de20


    Headers

    Imports

    Exports

    Sections

  • SEMgrPS/netprofmsvc.dll
    .dll windows:10 windows x64 arch:x64

    Password: 2024

    ad45623529f9b4402c7d26b5ea54d733


    Headers

    Imports

    Exports

    Sections

  • SEMgrPS/wcimage.dll
    .dll windows:10 windows x64 arch:x64

    f8fb756be0e3bc5854c867138bb76490


    Headers

    Imports

    Exports

    Sections

  • icu/iassam.dll
    .dll regsvr32 windows:10 windows x64 arch:x64

    b75a31238f03dd3c08927e10a3368e70


    Headers

    Imports

    Exports

    Sections

  • icu/icu.dll
    .dll windows:10 windows x64 arch:x64

    e932e3f0df205f2040dca6c08ecc3666


    Headers

    Imports

    Exports

    Sections

  • icu/mtxoci.dll
    .dll regsvr32 windows:10 windows x64 arch:x64

    d675dfd5bee6a2b7d70a36dfe19f5218


    Headers

    Imports

    Exports

    Sections

  • icu/oledlg.dll
    .dll windows:10 windows x64 arch:x64

    a5298af77eae9772ff5903c5760e539b


    Headers

    Imports

    Exports

    Sections

  • mscms/NPSM.dll
    .dll windows:10 windows x64 arch:x64

    4004c0a0bb2b5158cf0f1819716be35f


    Headers

    Imports

    Exports

    Sections

  • mscms/mscms.dll
    .dll windows:10 windows x64 arch:x64

    f725807fb7dee4b0001264abf003889b


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • mscms/msvcp120.dll
    .dll windows:6 windows x64 arch:x64

    8bbb502b9452fee14bc96b306e6136bf


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • mscms/scrrun.dll
    .dll regsvr32 windows:10 windows x64 arch:x64

    5684e53d4593797441fef52c573a45ba


    Headers

    Imports

    Exports

    Sections

  • netprofm/TapiSysprep.dll
    .dll windows:10 windows x64 arch:x64

    397bc475fccba616c4c1b87402a4b3b1


    Headers

    Imports

    Exports

    Sections

  • netprofm/netprofm.dll
    .dll regsvr32 windows:10 windows x64 arch:x64

    affb8b2ee176e881ad572d4ee006ac27


    Headers

    Imports

    Exports

    Sections

  • netprofm/rpcnsh.dll
    .dll windows:10 windows x64 arch:x64

    00ce5d3d7014818cc40866bdfd22be77


    Headers

    Imports

    Exports

    Sections

  • netprofm/socialapis.dll
    .dll windows:10 windows x64 arch:x64

    d9b95dc964953cd6b1c3f52ff54556e6


    Headers

    Imports

    Exports

    Sections

  • setup.msi
    .msi
  • password.jpg
    .jpg