Overview
overview
10Static
static
10hwid pack/...sk.exe
windows11-21h2-x64
6hwid pack/...up.exe
windows11-21h2-x64
1hwid pack/...RU.exe
windows11-21h2-x64
1hwid pack/...ll.exe
windows11-21h2-x64
1hwid pack/...rt.exe
windows11-21h2-x64
5hwid pack/...64.exe
windows11-21h2-x64
5hwid pack/...IN.exe
windows11-21h2-x64
1hwid pack/...64.exe
windows11-21h2-x64
1hwid pack/...16.exe
windows11-21h2-x64
hwid pack/...IT.exe
windows11-21h2-x64
1hwid pack/...LL.dll
windows11-21h2-x64
3hwid pack/...YS.sys
windows11-21h2-x64
1hwid pack/...64.sys
windows11-21h2-x64
1hwid pack/...64.sys
windows11-21h2-x64
1hwid pack/...lp.pdf
windows11-21h2-x64
1hwid pack/...rt.exe
windows11-21h2-x64
1hwid pack/...Un.exe
windows11-21h2-x64
6hwid pack/...Un.exe
windows11-21h2-x64
6hwid pack/...ew.chm
windows11-21h2-x64
1hwid pack/...ew.exe
windows11-21h2-x64
6Analysis
-
max time kernel
600s -
max time network
486s -
platform
windows11-21h2_x64 -
resource
win11-20240611-en -
resource tags
arch:x64arch:x86image:win11-20240611-enlocale:en-usos:windows11-21h2-x64system -
submitted
30-06-2024 16:43
Behavioral task
behavioral1
Sample
hwid pack/HardDisk.exe
Resource
win11-20240611-en
Behavioral task
behavioral2
Sample
hwid pack/MacSetup.exe
Resource
win11-20240419-en
Behavioral task
behavioral3
Sample
hwid pack/monitor serial/CRU.exe
Resource
win11-20240508-en
Behavioral task
behavioral4
Sample
hwid pack/monitor serial/reset-all.exe
Resource
win11-20240508-en
Behavioral task
behavioral5
Sample
hwid pack/monitor serial/restart.exe
Resource
win11-20240508-en
Behavioral task
behavioral6
Sample
hwid pack/monitor serial/restart64.exe
Resource
win11-20240611-en
Behavioral task
behavioral7
Sample
hwid pack/serial changer/AMIDEWIN.exe
Resource
win11-20240508-en
Behavioral task
behavioral8
Sample
hwid pack/serial changer/AMIDEWINx64.exe
Resource
win11-20240508-en
Behavioral task
behavioral9
Sample
hwid pack/serial changer/DMI16.exe
Resource
win11-20240611-en
Behavioral task
behavioral10
Sample
hwid pack/serial changer/DMIEDIT.exe
Resource
win11-20240611-en
Behavioral task
behavioral11
Sample
hwid pack/serial changer/UCOREDLL.dll
Resource
win11-20240508-en
Behavioral task
behavioral12
Sample
hwid pack/serial changer/UCORESYS.sys
Resource
win11-20240611-en
Behavioral task
behavioral13
Sample
hwid pack/serial changer/UCOREW64.sys
Resource
win11-20240611-en
Behavioral task
behavioral14
Sample
hwid pack/serial changer/amifldrv64.sys
Resource
win11-20240611-en
Behavioral task
behavioral15
Sample
hwid pack/uninstall/Revo Uninstaller Help.pdf
Resource
win11-20240508-en
Behavioral task
behavioral16
Sample
hwid pack/uninstall/RevoUPort.exe
Resource
win11-20240508-en
Behavioral task
behavioral17
Sample
hwid pack/uninstall/x64/RevoUn.exe
Resource
win11-20240508-en
Behavioral task
behavioral18
Sample
hwid pack/uninstall/x86/RevoUn.exe
Resource
win11-20240611-en
Behavioral task
behavioral19
Sample
hwid pack/usb device serial/USBDeview.chm
Resource
win11-20240611-en
Behavioral task
behavioral20
Sample
hwid pack/usb device serial/USBDeview.exe
Resource
win11-20240611-en
General
-
Target
hwid pack/usb device serial/USBDeview.chm
-
Size
24KB
-
MD5
ef8d0a30da9ab8cdbbbd62d74bce1187
-
SHA1
06441c5dfa4b9577afc989454216ea014a49b8d6
-
SHA256
d5909ca92c389ab1c01909a6f07fd351e2a655be97931caaecc3307a9e8f26e1
-
SHA512
695faa16c29d0ca5bdb2afc5da3e05f25a6b17ce4dbee43aebc9ffdbe18d843273437bb0189bb1ef2a4ececbb236aefe634f38f94a179e593edaa6105fb2e789
-
SSDEEP
384:ZaeGDZD/3k0Xb1/WN1iA73A8f2ZVDUDjGTa1Mu72:Za1ZtijuVDUHGO1j6
Malware Config
Signatures
-
Suspicious use of SetWindowsHookEx 2 IoCs
Processes:
hh.exepid process 4200 hh.exe 4200 hh.exe