General

  • Target

    4.exe

  • Size

    849KB

  • MD5

    1e6cb04df9502e8cb007a482c663bc9d

  • SHA1

    f53cf395db96bca467de325491ac09cfb8d388fc

  • SHA256

    a7afb33b403ad33bf2421901d5ed9aad4e7ee362f343a86f313897713f595625

  • SHA512

    8c962d165a951644c0c5bf52b95159185a49657facd1f6b3c443fe3dc2af11ab6af8c3e511a37e2581e2cf3e27b7671b0bc5b7762a3fb38b3a273afee6790e57

  • SSDEEP

    12288:hcIjd3nQIQsk3na+QidVt1+DXuY4Dc25c2YDX8Y/RN4Yx6m:hcIjUna3imz4DTg5vl

Score
3/10

Malware Config

Signatures

  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

  • NSIS installer 2 IoCs

Files

  • 4.exe
    .exe windows:4 windows x86 arch:x86

    57e98d9a5a72c8d7ad8fb7a6a58b3daf


    Code Sign

    Headers

    Imports

    Sections

  • $PLUGINSDIR/System.dll
    .dll windows:4 windows x86 arch:x86

    8c8a576201f68de1a3f26fc723b9f30f


    Headers

    Imports

    Exports

    Sections

  • Absorbable.sul
  • Forklelsens89.Mar
  • Randon17.vgr
  • Tambreet.Pse
  • keelhauls.scr
  • primaveksel.txt
  • skohornet.ser
  • temperatures.ref