Resubmissions

29-06-2024 14:38

240629-rzv2qasepl 10

29-06-2024 14:34

240629-rxnvmazblg 10

General

  • Target

    __x64___setup___x32__.zip

  • Size

    35.4MB

  • MD5

    ff654bc32dcbba43b22e006634fc0ef4

  • SHA1

    354df22ee1aa755a09309684c33426e4da3c8745

  • SHA256

    f4f4dd8a1fca44d6d7c78da7dc5741b91250eabf8faae79604c786672ea2efb8

  • SHA512

    1f558e4e6a2672fd1e5b132685fe7089445e18319769778ea8b778a99c28dc70fecad502c035e102f02989661c8a530973c97af98078a1fe531e65241bbb037c

  • SSDEEP

    786432:rukfK17+84cIE5kS+oofbNtocqM4kwEwwCQgZp3i6HE+8tDWU:rukfK17+8kECSaxWcqMDzgXPQtDWU

Score
3/10

Malware Config

Signatures

  • Unsigned PE 17 IoCs

    Checks for missing Authenticode signature.

Files

  • __x64___setup___x32__.zip
    .zip
  • __x64___setup___x32__/SettingMonitor/SessEnv.dll
    .dll windows:10 windows x64 arch:x64

    c252150e2ab272715077e6f59b74980d


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/SettingMonitor/SettingMonitor.dll
    .dll windows:10 windows x64 arch:x64

    4d80d07630c7e6d5d9d8f47c9eb385d7


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/SettingMonitor/pnrpsvc.dll
    .dll windows:10 windows x64 arch:x64

    37f774d87f855a0f404a69308f3151da


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/SettingMonitor/uudf.dll
    .dll windows:10 windows x64 arch:x64

    b38628cfe74c2369b1284d127e70c2cb


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/SettingSync/SettingSync.dll
    .dll windows:10 windows x64 arch:x64

    7b47ecf8ca02907cd93bfb196ed60609


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/SettingSync/rasmontr.dll
    .dll windows:10 windows x64 arch:x64

    18970be6d7b652fcb1413c038f894c24


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/SettingSync/schannel.dll
    .dll windows:10 windows x64 arch:x64

    f9a7e6d2b3de9b36a6c1af314faffb97


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/SettingSync/sppcommdlg.dll
    .dll windows:10 windows x64 arch:x64

    9e7a74f359a4f7d11d4fce9a42612bae


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/dab/dab.dll
    .dll windows:10 windows x64 arch:x64

    9aec5c4aa0eee59fdd831e6d45f17768


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/dab/diagperf.dll
    .dll regsvr32 windows:10 windows x64 arch:x64

    b306282d5919c33c601b0599c6b8ce39


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/dab/fcon.dll
    .dll windows:10 windows x64 arch:x64

    e49a29f9efd90448f49e5fd8823a3bef


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/dab/hal.dll
    .dll windows:10 windows x64 arch:x64


    Code Sign

    Headers

    Exports

    Sections

  • __x64___setup___x32__/mscms/NPSM.dll
    .dll windows:10 windows x64 arch:x64

    4004c0a0bb2b5158cf0f1819716be35f


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/mscms/mscms.dll
    .dll windows:10 windows x64 arch:x64

    f725807fb7dee4b0001264abf003889b


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/mscms/msvcp120.dll
    .dll windows:6 windows x64 arch:x64

    8bbb502b9452fee14bc96b306e6136bf


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/mscms/scrrun.dll
    .dll regsvr32 windows:10 windows x64 arch:x64

    5684e53d4593797441fef52c573a45ba


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/setup.msi
    .msi
  • __x64___setup___x32__/vmrdvcore/mssph.dll
    .dll regsvr32 windows:10 windows x64 arch:x64

    5dfbf61ae94045240f766cbfaff03ede


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/vmrdvcore/perfctrs.dll
    .dll windows:10 windows x64 arch:x64

    2405ad06873b3990210b1b04a23682fd


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/vmrdvcore/tapisrv.dll
    .dll windows:10 windows x64 arch:x64

    6aba8903eb7e4be23e07d9607806e424


    Headers

    Imports

    Exports

    Sections

  • __x64___setup___x32__/vmrdvcore/vmrdvcore.dll
    .dll windows:10 windows x64 arch:x64

    055a22c998dd9328accc6de5710f416b


    Headers

    Imports

    Exports

    Sections