General

  • Target

    UTN RFP_24-0676·pdf.exe

  • Size

    648KB

  • MD5

    46d344ac5d61310c1cd684df5c0fce60

  • SHA1

    8c880aea409374355474de41f8d9541c4100679c

  • SHA256

    99a956bbed42d1b5d3a07068d0ceee00a3259f34c94cfa182e68483b5fd7ccce

  • SHA512

    f7de4725eab0e5d31fb838dc26a798a4a8d180cdee10a6d27a0414b903c9bd355ba847439efed22688c33636261229becab77ad4f326f962224a968eaa852241

  • SSDEEP

    12288:zsB4GODGRIKcMmUKzj8SSQbkox3tO8dgDWSeeIh:I4GODqIKdmUKzj8LwWKS7E

Score
3/10

Malware Config

Signatures

  • Unsigned PE 5 IoCs

    Checks for missing Authenticode signature.

  • NSIS installer 2 IoCs

Files

  • UTN RFP_24-0676·pdf.exe
    .exe windows:4 windows x86 arch:x86

    e160ef8e55bb9d162da4e266afd9eef3


    Headers

    Imports

    Sections

  • $PLUGINSDIR/AdvSplash.dll
    .dll windows:4 windows x86 arch:x86

    2e8d5524d09b794f343fa9e2df0a1d87


    Headers

    Imports

    Exports

    Sections

  • $PLUGINSDIR/BgImage.dll
    .dll windows:4 windows x86 arch:x86

    bdcecc8b26871abb93996c6c18e09c94


    Headers

    Imports

    Exports

    Sections

  • $PLUGINSDIR/UserInfo.dll
    .dll windows:4 windows x86 arch:x86

    cce05dea98cbac3a9d486b233588f528


    Headers

    Imports

    Exports

    Sections

  • $PLUGINSDIR/nsExec.dll
    .dll windows:4 windows x86 arch:x86

    6b7d154c806f1e47db325229c300c6df


    Headers

    Imports

    Exports

    Sections

  • Avisomraadet.Ena72
  • Bantingize.cha
  • Efterbyrd.per
  • Spaend/jomfruelige.fak
  • Spaend/prveudtagningsfrekvenser.blo
  • Spaend/voguishness.cha
  • antologis.flb
  • attraktioner.txt
  • bloknings.fle
  • cassie.dat
  • unfortify.Fil