General

  • Target

    905ea903cc9cccce0c3a3e4eaa699f66.bin

  • Size

    242KB

  • MD5

    b5bbaacdb00e351ca63c4cfb43cf8a35

  • SHA1

    70379267cb348de4542d762f67b2f49d5637dc53

  • SHA256

    e42af5bffa231ebbc62fea3befe73570c5f428a2c77f7fc33b72c31ef8b6245f

  • SHA512

    7a76d11db59008051ad783be5859d25b4e4b91253ff2511e828af1c55292b34875e51ad657e6bd5ce5fb759b689f9b4d0b8c06bd29f05fa794deca56c740a95b

  • SSDEEP

    6144:CyhOAA+G/1jTGtQ2Ua93ly8+7P6t+UPt1PUtdmbjot9b6yH:nhO+G/1jTGrbUTL6tvPtxJbJyH

Score
3/10

Malware Config

Signatures

  • Unsigned PE 2 IoCs

    Checks for missing Authenticode signature.

Files

  • 905ea903cc9cccce0c3a3e4eaa699f66.bin
    .zip

    Password: infected

  • de52002c9566018c61b816f862325c681c756758e693c9d40b70670caf22a2c4.rar
    .rar

    Password: infected

  • SMKT_COPY20240604.exe
    .exe windows:4 windows x86 arch:x86

    Password: infected

    f4639a0b3116c2cfc71144b88a929cfd


    Code Sign

    Headers

    Imports

    Sections

  • $PLUGINSDIR/System.dll
    .dll windows:4 windows x86 arch:x86

    Password: infected

    509a34b3a68a773e0afb4259e68f9f82


    Headers

    Imports

    Exports

    Sections

  • $PLUGINSDIR/nsExec.dll
    .dll windows:4 windows x86 arch:x86

    Password: infected

    68b7023f8923dd087549802f8fa631c3


    Headers

    Imports

    Exports

    Sections

  • Acrook17.Ram59
  • Begot.ami
  • Bove.ska
  • Disbosom.kli
  • bnderkonerne/Samplingsfrekvenser.sal
  • bnderkonerne/Throeing.non
  • bnderkonerne/jobbere.aml
  • bnderkonerne/widdling.txt