Resubmissions

27-06-2024 10:22

240627-mee3jsyeqj 10

27-06-2024 10:18

240627-mcbmcayejj 3

General

  • Target

    0abbf3b2ab85a653e249c8d9e84cb5d6a254f19f.iso.tar.gz

  • Size

    600KB

  • MD5

    3998fe1949dc66a20ab6d152480f291b

  • SHA1

    3afad53f51a8d4775a87a7fa5f9cf7662673ee00

  • SHA256

    c704ff6e66d4cb482ffd311662801623feec535ab93efdc3a722f28ea61781c6

  • SHA512

    87d0666c8137aef1c4a87d2e07cd03937d53dd7c3afa8b0e3f1d6b0a3750eafd0ce209611588e8611cd486688f1d9067fca393ed581fb4e5df3dca436e33ebec

  • SSDEEP

    12288:1WzRSpeJlwoKqarUDZQqiQ8VXgZTbpFbTN/lXLbX:0zRPQlDUVQPNVETlFbTN/lXL7

Score
3/10

Malware Config

Signatures

  • Unsigned PE 2 IoCs

    Checks for missing Authenticode signature.

  • NSIS installer 2 IoCs

Files

  • 0abbf3b2ab85a653e249c8d9e84cb5d6a254f19f.iso.tar.gz
    .zip

    Password: infected_te_report

  • 0abbf3b2ab85a653e249c8d9e84cb5d6a254f19f.iso
    .iso

    Password: infected_te_report

  • Fisses242.bat
    .exe windows:4 windows x86 arch:x86

    Password: infected_te_report

    57e98d9a5a72c8d7ad8fb7a6a58b3daf


    Headers

    Imports

    Sections

  • $PLUGINSDIR/System.dll
    .dll windows:4 windows x86 arch:x86

    Password: infected_te_report

    8c8a576201f68de1a3f26fc723b9f30f


    Headers

    Imports

    Exports

    Sections

  • Absorbable.sul
  • Lanthanotus.Skr
  • Pushes.Mdr
  • Randon17.vgr
  • keelhauls.scr
  • primaveksel.txt
  • skohornet.ser
  • temperatures.ref