General

  • Target

    RX7劫持远程控制.zip

  • Size

    14.1MB

  • MD5

    e4fdacf80aac030ca8c13921d58d9258

  • SHA1

    5bcc4c05171da69e9cfb647904e744269cbc197e

  • SHA256

    8eebed272994240553654294949b8390a7009fb3a3ca66dc071d87f64209d986

  • SHA512

    7fbe13097d6bc84d8d5c4020ac57e7ad4be5f702e741fe40e81dfcd39b02426dfad5d971e055a9facd4ef1dde2358f27868eb5e6302462b09164a2e998a47d1b

  • SSDEEP

    196608:p37i71DuF7IdEdCQty+9r5XwFvpXoC5bq6x/3AT1SUK+4gt7rMur2VmLxgW:pLixDwdCir5cpXrQK3Ax54aQhW

Score
3/10

Malware Config

Signatures

  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • RX7劫持远程控制.zip
    .zip
  • RX7??????/QQwry.dat
  • RX7??????/RX7????.ini
  • RX7??????/RX7??????.exe
    .exe windows:5 windows x86 arch:x86

    130312efe8892496180179ce46d20b79


    Headers

    Imports

    Sections