Analysis

  • max time kernel
    120s
  • max time network
    120s
  • platform
    windows7_x64
  • resource
    win7-20231129-en
  • resource tags

    arch:x64arch:x86image:win7-20231129-enlocale:en-usos:windows7-x64system
  • submitted
    30-06-2024 16:14

General

  • Target

    Sponsorenturnier by Guido Baumann.pdf

  • Size

    213KB

  • MD5

    5e373d73d41ffcaeaaf1cd930355b4a6

  • SHA1

    42bcc0c18f40284f920a6e3419d89cef6cafc040

  • SHA256

    fa73046116016dfcc99aa322c664e44e8fea59bd54a588ba83bef51581a9c89b

  • SHA512

    243b529fcb0d0813d725a5032a52e08bb158f7fc414b11608072a47b5e87650cda53d5faffd499d9d45d0fadada9688503758b52a296e56ae5b994639c44c65f

  • SSDEEP

    3072:Keoks4LS7STVdNNNVWPUeo0rTa3q8ZbnnWeuQtNHiBheCilBBXSV1sjVzoKU28+6:kH4LS7ST3yUtQjIWreCwBXG6loKU7+wp

Score
1/10

Malware Config

Signatures

  • Suspicious behavior: GetForegroundWindowSpam 1 IoCs
  • Suspicious use of SetWindowsHookEx 3 IoCs

Processes

  • C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe
    "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe" "C:\Users\Admin\AppData\Local\Temp\Sponsorenturnier by Guido Baumann.pdf"
    1⤵
    • Suspicious behavior: GetForegroundWindowSpam
    • Suspicious use of SetWindowsHookEx
    PID:2320

Network

MITRE ATT&CK Matrix

Replay Monitor

Loading Replay Monitor...

Downloads

  • C:\Users\Admin\AppData\Roaming\Adobe\Acrobat\9.0\SharedDataEvents
    Filesize

    3KB

    MD5

    73527e1679991ae728cb9792d4a84879

    SHA1

    153be2588a14b674985192d66b3a0e4bfc181072

    SHA256

    d743e1c148ce1a2a656c1ec20e7cb1b0d5313fa970f5f8eb52407c8af65b6aee

    SHA512

    f2d3e346ef5060b5fa66c46f9bea1b871e4ee18fd592b77ddc3e19e3b69fe123c3e7e2add4b561f88de31d4e1cf3211cc96f4d37e311bbaeb1b78505ca5c0f08