Analysis

  • max time kernel
    120s
  • max time network
    121s
  • platform
    windows7_x64
  • resource
    win7-20240220-en
  • resource tags

    arch:x64arch:x86image:win7-20240220-enlocale:en-usos:windows7-x64system
  • submitted
    30-06-2024 01:50

General

  • Target

    41c68f37467144d55e517ee35ab17387.pdf

  • Size

    69KB

  • MD5

    41c68f37467144d55e517ee35ab17387

  • SHA1

    0adbff49597b0e852f6dd15fa48f60d870f76e93

  • SHA256

    6b0e3b667f9762d12783487c318f4b84f237c98c016c947e801d0bb11700ce81

  • SHA512

    c467370482e2fe0270bd4115bcbeacaf1ddf137d074d986d2203750e56a0a954e5d2c0ceedc56a06ada0c44589dcde75f4451a9c0cbca08eb8894d784a9981b6

  • SSDEEP

    768:yMSjGCpfPkuAyTV0x4qGMuSO88NN1cK5xpQGNBegYZLzPuEju2ivZiREg/7lj+3d:wR5VTCNY1cfGDyLzsEuTjVvFyyuXImhC

Score
1/10

Malware Config

Signatures

  • Suspicious behavior: GetForegroundWindowSpam 1 IoCs
  • Suspicious use of SetWindowsHookEx 3 IoCs

Processes

  • C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe
    "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe" "C:\Users\Admin\AppData\Local\Temp\41c68f37467144d55e517ee35ab17387.pdf"
    1⤵
    • Suspicious behavior: GetForegroundWindowSpam
    • Suspicious use of SetWindowsHookEx
    PID:2924

Network

MITRE ATT&CK Matrix

Replay Monitor

Loading Replay Monitor...

Downloads

  • C:\Users\Admin\AppData\Roaming\Adobe\Acrobat\9.0\SharedDataEvents
    Filesize

    3KB

    MD5

    f2a40a848df5e123cb7a38aa9034781f

    SHA1

    492e904d4e1267f17d5cc19a1b1fe2127f1abbd1

    SHA256

    1ab78e999cb6482f35f3f4a0d6be693d578b1ffba605c8138ddcdce679aa841a

    SHA512

    378d99276a6552ad4e86c186227505e892cecfdff85e2a7484da3368ca28a9af6f84718bad23d659d8b5591ca5a1265d257d5aac56258c8542078a1913cfb879