General

  • Target

    archive.zip

  • Size

    12.4MB

  • MD5

    9f3cf8e1497177f3f0eada9ffbfebde0

  • SHA1

    73d976bae33367129ef1e1f613a7f0d17d7aa95e

  • SHA256

    a45ae63ea9a20aecf8c1ae140824ed2f184d1777114ea4d604426bb6c0bff7cc

  • SHA512

    e3979364c8c429f47561ebd8a7d4d80be7479be990408fc613a1d53da78f1d56e38e1be63b9be40a81ae0fb9f1d1b795ffae492e50013c5cc8b8b2dd56607d24

  • SSDEEP

    196608:dPqGIdL+iPu6Y2L82IsJEjA3k25mMXvHnzEsV1nrAQITSQMDy2bDp:dyddi6u32L82pESk255PzEsnJIGQMDx

Score
3/10

Malware Config

Signatures

  • Unsigned PE 2 IoCs

    Checks for missing Authenticode signature.

Files

  • archive.zip
    .zip
  • archive/amdhip64.dll
    .dll windows:6 windows x64 arch:x64

    1c2f4d4b9ed7d6c726296dca5b10f60c


    Headers

    Imports

    Exports

    Sections

  • archive/concrt140.dll
    .dll windows:6 windows x64 arch:x64

    7f070c3864ce20e1b9879a9e3126cd30


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • archive/res_mods/1.23.0.0/scripts/client/gui/mods/mod_a.pyc
  • archive/res_mods/1.23.0.0/scripts/client/gui/mods/mod_a.xml
  • archive/res_mods/1.24.0.0/readme.txt
  • archive/res_mods/1.25.0.0/readme.txt
  • archive/setup.exe
    .exe windows:6 windows x64 arch:x64

    448b6888b26145ced7ce018aab459303


    Headers

    Imports

    Sections

  • archive/updates/icudtl.dat