Static task
static1
Behavioral task
behavioral1
Sample
37066f4ec4e81a00048555a6680d05edc1b2e0b80d965702cd699c9babe7bd87.exe
Resource
win7-20240419-en
Behavioral task
behavioral2
Sample
37066f4ec4e81a00048555a6680d05edc1b2e0b80d965702cd699c9babe7bd87.exe
Resource
win10v2004-20240611-en
General
-
Target
37066f4ec4e81a00048555a6680d05edc1b2e0b80d965702cd699c9babe7bd87
-
Size
72KB
-
MD5
9c1a8e229ef0c0d9c157c42cd5373581
-
SHA1
5e84fff657233bd58558d65b10eb321fbbf6b2cd
-
SHA256
37066f4ec4e81a00048555a6680d05edc1b2e0b80d965702cd699c9babe7bd87
-
SHA512
91e124b5d86507c9dc0ba4cb3c704636b60689a6741b6475e1319ce9f5012d8635c9f93fca28a2fd7659cbf81c6e539d3fdf03c4f0cbe1380557f852d1ec61d8
-
SSDEEP
768:qGHV45EDE477AZbUJx0rZGE3jCELoiMMj6hZ3nE+EXVmkDbjRL8Khc15Z6J1S:qG14P477AxUYrZGoC09k0SkTRHhWqP
Malware Config
Signatures
-
Unsigned PE 1 IoCs
Checks for missing Authenticode signature.
Processes:
resource 37066f4ec4e81a00048555a6680d05edc1b2e0b80d965702cd699c9babe7bd87
Files
-
37066f4ec4e81a00048555a6680d05edc1b2e0b80d965702cd699c9babe7bd87.exe windows:4 windows x86 arch:x86
Headers
File Characteristics
IMAGE_FILE_RELOCS_STRIPPED
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED
IMAGE_FILE_32BIT_MACHINE
Sections
nsp0 Size: 183B - Virtual size: 80KB
IMAGE_SCN_CNT_CODE
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
nsp1 Size: 56KB - Virtual size: 61KB
IMAGE_SCN_CNT_CODE
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE