General

  • Target

    67f175e8da6a4a4a521b457be91e35a9021059db411573070d0a2ae0c9b48355.img

  • Size

    1.4MB

  • MD5

    0b26858829fcb7c0b9d791fadcaf5981

  • SHA1

    9f16e0ac9851a9901a699bdb9f7115ebe42614d5

  • SHA256

    67f175e8da6a4a4a521b457be91e35a9021059db411573070d0a2ae0c9b48355

  • SHA512

    4cd1dee7424b4b80f2bf200cabb5abce3459e9377f620a5c215a7843861d1cb36e1017dae2626ba5cf08bac0101101612122a2a2c3cb12e10f5253b15e251bef

  • SSDEEP

    24576:+cIjUna3iVPF+zgyKKht6APjMtiVBsRXR:fbF50httQb

Score
3/10

Malware Config

Signatures

  • Unsigned PE 2 IoCs

    Checks for missing Authenticode signature.

  • NSIS installer 3 IoCs

Files

  • 67f175e8da6a4a4a521b457be91e35a9021059db411573070d0a2ae0c9b48355.img
    .iso
  • out.iso
    .iso
  • Jailkeeper.bat
    .exe windows:4 windows x86 arch:x86

    57e98d9a5a72c8d7ad8fb7a6a58b3daf


    Headers

    Imports

    Sections

  • $PLUGINSDIR/System.dll
    .dll windows:4 windows x86 arch:x86

    8c8a576201f68de1a3f26fc723b9f30f


    Headers

    Imports

    Exports

    Sections

  • Absorbable.sul
  • Aircraft.Bif
  • Jackhead/Randon17.vgr
  • Jackhead/keelhauls.scr
  • Jackhead/primaveksel.txt
  • Kontrasignatur/skohornet.ser
  • Kontrasignatur/temperatures.ref
  • Rentvistens.Afv