General

  • Target

    5a43a15dbba2f11b1c1b9f378c2cdcf0f570bef18bea94821cfc02c9332cf19d

  • Size

    72KB

  • MD5

    2d2380e0ee03ab55c3a7d3593f4a8ffd

  • SHA1

    27617e6122a87a29829253e7ba25f8788ce83aa0

  • SHA256

    5a43a15dbba2f11b1c1b9f378c2cdcf0f570bef18bea94821cfc02c9332cf19d

  • SHA512

    64d19c648d38cf0e64564fd54e6ca387b589890dcd1f0b290d8900489c9e9e56d17400c41d5637137da5907b052d5e3df08c55a7cff64340112b952f9b5a31d1

  • SSDEEP

    1536:IFAwSe31zUzMKoEjzUx0PlAiDXtYtDAxWtL82RhL3Mb+KR0Nc8QsJq39:7s31zWMhEjJxALLfe0Nc8QsC9

Score
10/10

Malware Config

Extracted

Family

metasploit

Version

encoder/fnstenv_mov

Signatures

  • Metasploit family
  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • 5a43a15dbba2f11b1c1b9f378c2cdcf0f570bef18bea94821cfc02c9332cf19d
    .exe windows:4 windows x86 arch:x86

    481f47bbb2c9c21e108d65f52b04c448


    Headers

    Imports

    Sections