Analysis

  • max time kernel
    117s
  • max time network
    118s
  • platform
    windows7_x64
  • resource
    win7-20240508-en
  • resource tags

    arch:x64arch:x86image:win7-20240508-enlocale:en-usos:windows7-x64system
  • submitted
    30-06-2024 13:22

General

  • Target

    (2) Programmvorschau für den 2. Juli.pdf

  • Size

    305KB

  • MD5

    f42fc4edd9e408a97493ae3bcdbc9513

  • SHA1

    01176158f2314d63d8fa3ea5abe9395f556f0540

  • SHA256

    35854d85814cf588144d6e8dca4f4fdcde2c704fef1932da581d7ce17437d917

  • SHA512

    8288ee7451e3872e403d5fe6a6abe75bb7fddf19af29075899c58b58123a5f2f8f691ddb494ea88cadc8e37e125b1d24ad76e92ba9b4d56fcda296b51456068a

  • SSDEEP

    6144:6oUoxhQAApdQVOxHCrysACgtvGNOB+nK26pUQiPs84NvxT:qyjmJxirysNcG2+ipUfs8459

Score
1/10

Malware Config

Signatures

  • Suspicious behavior: GetForegroundWindowSpam 1 IoCs
  • Suspicious use of SetWindowsHookEx 3 IoCs

Processes

  • C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe
    "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe" "C:\Users\Admin\AppData\Local\Temp\(2) Programmvorschau für den 2. Juli.pdf"
    1⤵
    • Suspicious behavior: GetForegroundWindowSpam
    • Suspicious use of SetWindowsHookEx
    PID:1424

Network

MITRE ATT&CK Matrix

Replay Monitor

Loading Replay Monitor...

Downloads

  • C:\Users\Admin\AppData\Roaming\Adobe\Acrobat\9.0\SharedDataEvents
    Filesize

    3KB

    MD5

    f0b490ec00ff592b9acfd7f6073bdbe0

    SHA1

    5bd38debbdd0ffdada1ee5e88a87754c922ea556

    SHA256

    6fdbf264936ee0dbe148707603f6d9ef47db7abdd611a517bab9bc55318cfe1b

    SHA512

    d3ce92df10803d117f4b22bb223c7159816029470135f7e86ac0f31bb064c3f8458950c0a2b2d634c4b0c7a34383c5e60bc43db3a1c4b9afdb2cbc9b7361a1dd