Resubmissions

29-06-2024 03:36

240629-d54zxstbmq 10

28-06-2024 13:39

240628-qygbhasdle 10

28-06-2024 13:29

240628-qq9yvavdjm 3

General

  • Target

    YuQu Loader.rar (USE ONLY IF NOT WORKING).zip

  • Size

    117.4MB

  • MD5

    3ea9457e45cbb04a30aa8ae12ab71891

  • SHA1

    26259b9ec0d8d32a003ec64060672aaf27beae85

  • SHA256

    6d69b17bda1ff9f48b17c493291a93d5f98d0ae2395d326cdbae41c96d3ccd87

  • SHA512

    f60abc13879eb2d488b4885c36d77e96f398f55c5f181006e5c9a4e8bb1686f5c584c99fcf57482fe521d81fb9b46e5ec5ec6f1e1acaa24500585d54fa674aa1

  • SSDEEP

    3145728:2hJPhl2pXF40X0xnav4as6dpfp9M3cOPyc:2DPLcmMLs6np9MJ

Score
3/10

Malware Config

Signatures

  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • YuQu Loader.rar (USE ONLY IF NOT WORKING).zip
    .zip
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/AcXtrnal.dll
    .dll windows:6 windows x64 arch:x64

    d5e684c2960f27fa0d1818bb9f6d8d03


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/IA2Marshal.dll
    .dll regsvr32 windows:6 windows x86 arch:x86

    1b927de6c53cd665cff68d0a78ca0cc6


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-core-localization-l1-2-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-core-processthreads-l1-1-1.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-core-synch-l1-2-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-core-timezone-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-crt-conio-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-crt-convert-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-crt-environment-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-crt-filesystem-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-crt-heap-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-crt-locale-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-crt-math-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-crt-multibyte-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-crt-private-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-crt-process-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-crt-runtime-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-crt-stdio-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-crt-string-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-crt-time-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/api-ms-win-crt-utility-l1-1-0.dll
    .dll windows:10 windows x86 arch:x86


    Code Sign

    Headers

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/application.ini
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/breakpadinjector.dll
    .dll windows:6 windows x86 arch:x86

    4f2f2d47884b8828285b4cc439c27dad


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/crashreporter.exe
    .exe windows:6 windows x86 arch:x86

    73c539da4fe06e0fe45dd512301deb54


    Code Sign

    Headers

    Imports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/crashreporter.ini
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/d3dcompiler_47.dll
    .dll windows:10 windows x86 arch:x86

    0f31485cd3d6d36b416b744fa9701f28


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/default-browser-agent.exe
    .exe windows:6 windows x86 arch:x86

    8144943822eb4a57b5e397524cd49a7b


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/defaultagent.ini
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/defaultagent_localized.ini
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/dependentlibs.list
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/freebl3.dll
    .dll windows:6 windows x86 arch:x86

    3d2071c523682b80f8e0be60537dab9e


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/ipcclientcerts.dll
    .dll windows:6 windows x86 arch:x86

    8d1ec71d97c0abe4edd97b3c1e3bf937


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/lgpllibs.dll
    .dll windows:6 windows x86 arch:x86

    9e8bf5bbbeb672a6b4372f8b4333198c


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/libEGL.dll
    .dll windows:6 windows x86 arch:x86

    e8203db740cd263fa864018590ff59ab


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/libGLESv2.dll
    .dll windows:6 windows x86 arch:x86

    4e8382bfe61a3c6bc00eca6bd4fc14a5


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/mozwer.dll
    .dll windows:6 windows x86 arch:x86

    a9b59ee3bd7c3dc91561deb095d3d5c8


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/msvcp140.dll
    .dll windows:6 windows x86 arch:x86

    6dbd7763e94344402d4206b7bab40e1f


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/nss3.dll
    .dll windows:6 windows x86 arch:x86

    91b2deacd206ef373baa926022d03ae2


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/nssckbi.dll
    .dll windows:6 windows x86 arch:x86

    50117973ac2c9408e2e047a3f815fc08


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/osclientcerts.dll
    .dll windows:6 windows x86 arch:x86

    decddcd2766a73b6ae6cdf25c32847ee


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/pingsender.exe
    .exe windows:6 windows x86 arch:x86

    e1ad751163b6c4f5deb32857802374c8


    Code Sign

    Headers

    Imports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/platform.ini
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/plugin-container.exe
    .exe windows:6 windows x86 arch:x86

    7a578b96d501ea93c9d63f9b8dcbfef7


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/plugin-container.exe.sig
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/precomplete
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/qipcap.dll
    .dll windows:6 windows x86 arch:x86

    5b31b900921240852c302205e35ded31


    Code Sign

    Headers

    Imports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/removed-files
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/softokn3.dll
    .dll windows:6 windows x86 arch:x86

    32ef7516974ac0c43943c0635266c6fd


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/x164.dll
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/x264.dll
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/x364.dll
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/x6124.txt
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/Debug/x64.dll
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/YuQu Loader.exe
    .exe windows:6 windows x86 arch:x86

    9d5b9d61589b83a7f2c3d41f757e8ae0


    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/com/COMSupport.dll
    .dll windows:6 windows x64 arch:x64

    a62ef67c837ebd0090dda32d7e5f05ae


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/com/ColorManagment.dll
    .dll windows:6 windows x64 arch:x64

    e4cf9c253e5f5874540da7a629d56ee7


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/com/cpr.dll
    .dll windows:6 windows x64 arch:x64

    a0616db0455c88096b2e68b6527c0373


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/data/DecoderMgr.dll
    .dll windows:6 windows x64 arch:x64

    cc1849893f079ae74afee604480eea7e


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/data/DemuxMgr.dll
    .dll windows:6 windows x64 arch:x64

    87f26c1d93fef1a2d2d9006670d61dca


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/data/alibabacloud-oss-cpp-sdk.dll
    .dll windows:6 windows x64 arch:x64

    7d8de00ef9bfbb837180b559954998f6


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/data/cpr.dll
    .dll windows:6 windows x64 arch:x64

    a0616db0455c88096b2e68b6527c0373


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/data/dav2mp4.dll
    .dll windows:6 windows x64 arch:x64

    0ed2116f15f1cff585ce21874977bc27


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/data/lekeystore.jks
    .dll windows:6 windows x64 arch:x64

    a62ef67c837ebd0090dda32d7e5f05ae


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/data/net/FCore.dll
    .dll windows:6 windows x64 arch:x64

    2233eafd2c128f77f07586cd08e95de5


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/data/net/FFAdvancedColorAdjust.dll
    .dll windows:6 windows x64 arch:x64

    05d1f0c4b2dcdf246ec7cdfa8230af96


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/data/net/FFCore.dll
    .dll windows:6 windows x64 arch:x64

    ab1eafc5f5ed48b70c48af688e8e4e2f


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/data/net/FFEffectWidgets.dll
    .dll windows:6 windows x64 arch:x64

    f9eecce3c4af55cc40f51f896ac9557a


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/data/net/cef_100_percent.pak
    .js
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/data/net/cef_200_percent.pak
    .js
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/data/net/cloud-disk.dll
    .dll windows:6 windows x64 arch:x64

    5d0416515448d6a21b447d7b9219d903


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/x32.dll
    .dll windows:6 windows x64 arch:x64

    0f8ba489987e9caa288c632b4b5c3786


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/x64.dll
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/x86.dll
  • YuQu Loader.rar (USE ONLY IF NOT WORKING)/YuQu Loader/xNet.dll
    .dll windows:6 windows x64 arch:x64

    ef98e964cdf77bbe8cde3c189b89321e


    Code Sign

    Headers

    Imports

    Exports

    Sections