Static task
static1
Behavioral task
behavioral1
Sample
137a7220fb3cbe605b6c74712ad96dcb1bdea1c489e9df159044500ccc23f3c8.exe
Resource
win7-20240419-en
General
-
Target
137a7220fb3cbe605b6c74712ad96dcb1bdea1c489e9df159044500ccc23f3c8
-
Size
4.7MB
-
MD5
06333e350e25e29677256d9be86e4ee1
-
SHA1
088fa1f912473c3dfb5ab118b0bc39ec016cf15a
-
SHA256
137a7220fb3cbe605b6c74712ad96dcb1bdea1c489e9df159044500ccc23f3c8
-
SHA512
1475fd313ef0ca847eb7921b5bfb017f9b7f9274497df42fe3fa1477f40c6da8723ee0c46fa5c3fac6e9572c47712e1f4412c9460385c8f47117c82befdc329d
-
SSDEEP
98304:QOHXslY4Scfsu4riBS64FsJHk0rxQyeYSKsXW:PHXslY4j4riIoJHkUeyexrXW
Malware Config
Signatures
Files
-
137a7220fb3cbe605b6c74712ad96dcb1bdea1c489e9df159044500ccc23f3c8.exe windows:4 windows x86 arch:x86
f34d5f2d4577ed6d9ceec516c1f5a744
Code Sign
25:b8:70:80:97:7c:34:b5:4b:4f:56:da:ff:14:bb:f8Certificate
IssuerCN=REINVENTING MULTI-CORE ARCHITECTURE UP TO INTEL® CORE™ I7-12650H PROCESSORNot Before14-06-2024 00:33Not After15-06-2034 00:33SubjectCN=REINVENTING MULTI-CORE ARCHITECTURE UP TO INTEL® CORE™ I7-12650H PROCESSOR39:4c:25:e1:7c:a0:6d:27:a8:65:e2:3b:d9:1d:22:d4Certificate
IssuerCN=Sectigo RSA Time Stamping CA,O=Sectigo Limited,L=Salford,ST=Greater Manchester,C=GBNot Before03-05-2023 00:00Not After02-08-2034 23:59SubjectCN=Sectigo RSA Time Stamping Signer #4,O=Sectigo Limited,ST=Manchester,C=GBExtended Key Usages
ExtKeyUsageTimeStamping
Key Usages
KeyUsageDigitalSignature
KeyUsageContentCommitment
30:0f:6f:ac:dd:66:98:74:7c:a9:46:36:a7:78:2d:b9Certificate
IssuerCN=USERTrust RSA Certification Authority,O=The USERTRUST Network,L=Jersey City,ST=New Jersey,C=USNot Before02-05-2019 00:00Not After18-01-2038 23:59SubjectCN=Sectigo RSA Time Stamping CA,O=Sectigo Limited,L=Salford,ST=Greater Manchester,C=GBExtended Key Usages
ExtKeyUsageTimeStamping
Key Usages
KeyUsageDigitalSignature
KeyUsageCertSign
KeyUsageCRLSign
c1:91:f8:32:58:a9:70:a4:57:be:54:36:20:ec:4f:18:af:16:7d:97:68:82:d5:ac:7c:6d:ad:69:5f:fc:de:78Signer
Actual PE Digestc1:91:f8:32:58:a9:70:a4:57:be:54:36:20:ec:4f:18:af:16:7d:97:68:82:d5:ac:7c:6d:ad:69:5f:fc:de:78Digest Algorithmsha256PE Digest MatchestrueHeaders
DLL Characteristics
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_NO_SEH
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
File Characteristics
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED
IMAGE_FILE_32BIT_MACHINE
PDB Paths
newsoftgnu.pdb
Imports
mscoree
_CorExeMain
Sections
.text Size: 4.6MB - Virtual size: 4.6MB
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
.rsrc Size: 103KB - Virtual size: 103KB
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
.reloc Size: 512B - Virtual size: 12B
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ