General

  • Target

    NTS_eTaxInvoice·pdf.exe

  • Size

    489KB

  • MD5

    fa45fc9a0330174313e4e08e31d22181

  • SHA1

    ceb0106d1e8709456e8be6f842badbebde62b567

  • SHA256

    3b3d77d803a17ea29440f2a306de9cc86b25d9212c84f10752fa524751bf039c

  • SHA512

    5939798d1adc2e30f4b53f8e1a2ebe670f2a34b42a6551b24fa0f86f632aeda13dea009489602d4189581cb4bae442d9aecccc3a7020886e560fc07142a61d5b

  • SSDEEP

    12288:/qgow9mQ72+RS2x0mcNasY75T3vCVvMWBFbwLkM:x9mg5Sc7kvhFbwT

Score
3/10

Malware Config

Signatures

  • Unsigned PE 3 IoCs

    Checks for missing Authenticode signature.

  • NSIS installer 2 IoCs

Files

  • NTS_eTaxInvoice·pdf.exe
    .exe windows:4 windows x86 arch:x86

    b40f29cd171eb54c01b1dd2683c9c26b


    Code Sign

    Headers

    Imports

    Sections

  • $PLUGINSDIR/Banner.dll
    .dll windows:4 windows x86 arch:x86

    f81377f1c55b7962f1e18d52fc7eb628


    Headers

    Imports

    Exports

    Sections

  • $PLUGINSDIR/BgImage.dll
    .dll windows:4 windows x86 arch:x86

    bdcecc8b26871abb93996c6c18e09c94


    Headers

    Imports

    Exports

    Sections

  • $PLUGINSDIR/nsDialogs.dll
    .dll windows:4 windows x86 arch:x86

    38e7b5c3ee58b43a91f9679e94aabd09


    Headers

    Imports

    Exports

    Sections

  • Aspalathus205.Sno
  • Deserving.Ino
  • Duelighedsprvens.txt
  • Plejebrns.tri
  • Riccia.til
  • Standardbiblioteket/spaltningsprocessernes.kro
  • Standardbiblioteket/underprioriterer.sar
  • centralizations.tra
  • flintiest.fje
  • frigorimeter.dec
  • skonnertrigget.sun