Analysis
-
max time kernel
117s -
max time network
118s -
platform
windows7_x64 -
resource
win7-20240508-en -
resource tags
arch:x64arch:x86image:win7-20240508-enlocale:en-usos:windows7-x64system -
submitted
30-06-2024 16:18
Behavioral task
behavioral1
Sample
Vista giornaliera giugno 2024 Gorla Giuseppe 1940-02-19.pdf
Resource
win7-20240508-en
Behavioral task
behavioral2
Sample
Vista giornaliera giugno 2024 Gorla Giuseppe 1940-02-19.pdf
Resource
win10v2004-20240611-en
General
-
Target
Vista giornaliera giugno 2024 Gorla Giuseppe 1940-02-19.pdf
-
Size
9KB
-
MD5
c61e1b68ea7e136b907c5954d5f6b1c3
-
SHA1
23d0aedce6de23c0a8364e71ac0e89a9749161d7
-
SHA256
500a5624984d48280af2cd0e4684002b4df9a47bcf32da783ce3c6a03b9d3890
-
SHA512
d04b751c24aaa4997e5b41dd5be6cbff6382e2119a6834e4ae40468975ae2669473d1d6d0d7701e260dfb9a898474241219b14cb3bc756a4562d0705071f6feb
-
SSDEEP
192:689q+h/QzCHpFFH5tpqXIYj8tPcOoHaRFUh0g5mN8:689qyeOZtpqKcOoySh0gP
Malware Config
Signatures
-
Suspicious behavior: GetForegroundWindowSpam 1 IoCs
Processes:
AcroRd32.exepid process 2416 AcroRd32.exe -
Suspicious use of SetWindowsHookEx 3 IoCs
Processes:
AcroRd32.exepid process 2416 AcroRd32.exe 2416 AcroRd32.exe 2416 AcroRd32.exe
Processes
-
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe"C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe" "C:\Users\Admin\AppData\Local\Temp\Vista giornaliera giugno 2024 Gorla Giuseppe 1940-02-19.pdf"1⤵
- Suspicious behavior: GetForegroundWindowSpam
- Suspicious use of SetWindowsHookEx
Network
MITRE ATT&CK Matrix
Replay Monitor
Loading Replay Monitor...
Downloads
-
C:\Users\Admin\AppData\Roaming\Adobe\Acrobat\9.0\SharedDataEventsFilesize
3KB
MD5015cf50697d791ab97c845409de54995
SHA14b48df21c6295d688a74211cb1fa311e261a613e
SHA256d21fb95d988eacff72eecc6abaa6ca6be13da2ba1907434e8a3ef380cb5da058
SHA5127993f0588dd107098b4e633c8cc6b6f3617665a5ce6405cfce134f10d94a2559b13c33724bb5e2442c6efedcbbb8383c4086d5fac419750ddc86aab3931e1817