General

  • Target

    4x(24-06-27).rar

  • Size

    30.6MB

  • MD5

    d968f62a6d7bb3187c25b1eb53e0dae8

  • SHA1

    3e1c59a45a923b15b7f32f5a1cc246be07b58c08

  • SHA256

    a47ef1b22b4797187294ec207237a8195273dab7d4543d46d5d23dafe520f853

  • SHA512

    b9711c7b8a2fa7fb6257d13738662e3ab381693aa642a68f28f7a705b18e520cfb74d8e88ab04bfa8dd87d45f97bd86366ec5e3f33cb799b1cec833be6d5fe18

  • SSDEEP

    786432:B72Jh0QWV3emCsQFEebPIGRl6XdXdf2zL:B72Jh0CTqaRSXpUL

Score
3/10

Malware Config

Signatures

  • Unsigned PE 4 IoCs

    Checks for missing Authenticode signature.

Files

  • 4x(24-06-27).rar
    .rar
  • 2024po.exe.vir
    .exe windows:4 windows x86 arch:x86

    f34d5f2d4577ed6d9ceec516c1f5a744


    Headers

    Imports

    Sections

  • Timo.exe.vir
    .exe windows:6 windows x64 arch:x64

    cbd03d548e96d66a238682ac4c7fe152


    Headers

    Imports

    Sections

  • [D]2024年移动合作方人员出入管理门禁安装程序.exe.vir
    .exe windows:6 windows x64 arch:x64

    c110cb8d12060febe265ec48153846e2


    Headers

    Imports

    Sections

  • 点击此处安装语言包.exe.vir
    .exe windows:6 windows x86 arch:x86

    7ecca5b83f5c154d3e2fae824099d2c4


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • 票925452362131助手.exe.vir
    .exe windows:6 windows x64 arch:x64

    e0f22ad3c983aa9c9ce4afda13b27307


    Code Sign

    Headers

    Imports

    Sections

  • 考勤异常信息统计结果查询工具.exe.vir
    .exe windows:6 windows x64 arch:x64

    f0ea7b7844bbc5bfa9bb32efdcea957c


    Headers

    Imports

    Sections