General

  • Target

    6783cedfbb7ee848a0bb6e5f9e849945.bin

  • Size

    826KB

  • MD5

    5a2eebc985ab3e7c01c69123e24cfcd0

  • SHA1

    db54a2e1f7de402ddd7b62d7016a0f8aa69a87d2

  • SHA256

    30b269ab236535ccb2035e6c2b66655cb30889a92b2218de90e22725a127c19b

  • SHA512

    6f627130c9b7ab3643cfe915bc24055dddcc3209324c34370cba1f6e5bc4d33ce3407f5b1c36bf3bc57d70ccd16ef8d553453d67f9eee9952c900701db138618

  • SSDEEP

    24576:VAheYhxZOkRlKoUEpGmXR+kYud5TvuSAPUZTA0o:+heYnUkRlXXpGId5LBEt

Score
10/10

Malware Config

Signatures

  • DCRat payload 1 IoCs

    Detects payload of DCRat, commonly dropped by NSIS installers.

  • Dcrat family
  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • 6783cedfbb7ee848a0bb6e5f9e849945.bin
    .zip

    Password: infected

  • ea6e4e54c6aa6df24c7a386a5ac3bd9a224d69ecd629a555744e72cde043cadd.exe
    .exe windows:4 windows x86 arch:x86

    Password: infected

    f34d5f2d4577ed6d9ceec516c1f5a744


    Headers

    Imports

    Sections