General

  • Target

    XClient (1).zip

  • Size

    40KB

  • MD5

    c124b1503bd3c0d9a44033501df264d3

  • SHA1

    ff2f7e99e97ef598e0ab02d6847cda26749f2a34

  • SHA256

    4284e1cef08f8eeb36b70e700d580f34294253d7e0692bdd687240bd534923bc

  • SHA512

    406d366857a26e41f3b528c8a63f6a825aa2247c0741655bd46131733ae1b4a442688804c5ffe231a2f50c4e85a56caa20f8b227268c0e6bcf9e99bfe3bc20d9

  • SSDEEP

    768:d40+jmP3ntHPr6c1gK51rELoMWiIjAh8rwAAXjtvsbUkmkz/v/VZJtvF7ILg0nBT:dCqP3tHT6TK51rlAXjtvsJ9RvlILguR/

Score
10/10

Malware Config

Signatures

  • Detect Xworm Payload 1 IoCs
  • Xworm family
  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • XClient (1).zip
    .zip

    Password: 123

  • XClient.exe
    .exe windows:4 windows x86 arch:x86

    Password: 123

    f34d5f2d4577ed6d9ceec516c1f5a744


    Headers

    Imports

    Sections