General

  • Target

    midnight.exe

  • Size

    37KB

  • MD5

    205bf5d6fddc79d22b0ca707d739b170

  • SHA1

    dfe35a95449677c0df4e869c9d358622feace059

  • SHA256

    280da89b90c09f7cb1ad6176555580ff50408d24f7e32e9177e9f9e5cf56ad92

  • SHA512

    a9b7c408ddc164473e2498ff95dca3bba1691346f3266c64e4ed974184b238cc413b455c78876248a99f48cc53b011f028e7155de4f8f9adc0abb226743c5457

  • SSDEEP

    384:rUny7ZJj6icDri5Z7JAyk/g4QfreZe649WrAF+rMRTyN/0L+EcoinblneHQM3epi:ay7XHJ7k/g4QCZr4YrM+rMRa8Nurgt

Score
10/10

Malware Config

Extracted

Family

njrat

Version

im523

Botnet

HacKed

C2

provided-existence.gl.at.ply.gg:22517

Mutex

51c8074eb434615748dbe2990f1b33a1

Attributes
  • reg_key

    51c8074eb434615748dbe2990f1b33a1

  • splitter

    |'|'|

Signatures

  • Njrat family
  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • midnight.exe
    .exe windows:4 windows x86 arch:x86

    f34d5f2d4577ed6d9ceec516c1f5a744


    Headers

    Imports

    Sections