General

  • Target

    152e9dea419cfef125729d2fef0d8b9bc101a3694dcfff399723b64fec40383f.dll

  • Size

    47.1MB

  • MD5

    2bb66a61ff28e36b4c1279df4b99a30a

  • SHA1

    ac8b92cd93f05299d3f02ae315a583727449273f

  • SHA256

    152e9dea419cfef125729d2fef0d8b9bc101a3694dcfff399723b64fec40383f

  • SHA512

    d05299a84a67c4ee429bac0cf7120a427fa2bf7b5ad7978e4c83537b3a596702f9f41803b2850688ea8cb8f9cbb57763a0fda91218a9598ee1f25e8967a355a7

  • SSDEEP

    393216:4S16MST1mNXXBbBkHQAgLm3eYXcR4Gx8j7p17dSfqAUiNavFFLCrfsonAc+:4SgKHBb7yBcipAUP9MdAc

Malware Config

Signatures

  • M00nD3v Logger payload 1 IoCs

    Detects M00nD3v Logger payload in memory.

  • M00nd3v_logger family
  • HTTP links in PDF interactive object 1 IoCs

    Detects HTTP links in interactive objects within PDF files.

  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • 152e9dea419cfef125729d2fef0d8b9bc101a3694dcfff399723b64fec40383f.dll
    .dll windows:10 windows x64 arch:x64


    Headers

    Sections