General

  • Target

    76532391a65407a6758aac0ecd1556d648bec998270fc9de4aac52340fa4746c

  • Size

    414KB

  • MD5

    60a1e2c43014a7b6bdcbdca81c246482

  • SHA1

    d3677f8b6f072a83c3c9858dc58d7ef9062772c5

  • SHA256

    76532391a65407a6758aac0ecd1556d648bec998270fc9de4aac52340fa4746c

  • SHA512

    7772ceb33a3179d9cad1b795156fa94dba2e6bef580f860dd663ecc8dfe010b78b863ea793e50f490d79ef02e6b2b9245e72dda67792956993fa145924c8c1cf

  • SSDEEP

    12288:HDU5dlz/7Qcm54QVK6p61cQIlQPBnpqS21N5wRxt:jUZQx54QM6pV7cpqSy4h

Score
3/10

Malware Config

Signatures

  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

  • NSIS installer 2 IoCs

Files

  • 76532391a65407a6758aac0ecd1556d648bec998270fc9de4aac52340fa4746c
    .zip
  • contract copy amended JUNE 2024_PDF.exe
    .exe windows:4 windows x86 arch:x86

    e160ef8e55bb9d162da4e266afd9eef3


    Code Sign

    Headers

    Imports

    Sections

  • $PLUGINSDIR/System.dll
    .dll windows:4 windows x86 arch:x86

    8c8a576201f68de1a3f26fc723b9f30f


    Headers

    Imports

    Exports

    Sections

  • Skrigeballonernes207/Bef.sem
  • Springdansen/Fedterier.lli
  • Springdansen/Indkomstafhngiges.fif
  • Springdansen/Struktureres.txt
  • Springdansen/Yardage.tja
  • Springdansen/airway.Oms
  • Springdansen/frondescing.nov
  • Springdansen/monomark.dod