General

  • Target

    P0-ADFUK.bat.exe

  • Size

    507KB

  • MD5

    4978a40b38d64eae7beead95f608ff51

  • SHA1

    b90c23fe02b0f70e22c584411497d2c19e26ca60

  • SHA256

    f8f3812fda1d0d0d729de1e37d310a66df34b8e638dcb5da4ca2605dbb4db57e

  • SHA512

    fcaab3ec2538d5946e8281a6b5ab6f2dfce5c2978cabbc0a33971f87f92967ff27bd855916762c1c4d1b588c29e8d9ab0fe7bc51baf240c6def3a6211b796198

  • SSDEEP

    12288:c19+dlfwYKZWegBNCmmk7aJWjT1U0ML9JiPs:PdloYK7gLVmUblMp

Score
3/10

Malware Config

Signatures

  • Unsigned PE 5 IoCs

    Checks for missing Authenticode signature.

  • NSIS installer 2 IoCs

Files

  • P0-ADFUK.bat.exe
    .exe windows:4 windows x86 arch:x86

    671f2a1f8aee14d336bab98fea93d734


    Headers

    Imports

    Sections

  • $PLUGINSDIR/BgImage.dll
    .dll windows:4 windows x86 arch:x86

    0bf743a799aa40ec407e829cce14f6c8


    Headers

    Imports

    Exports

    Sections

  • $PLUGINSDIR/System.dll
    .dll windows:4 windows x86 arch:x86

    240ca92ecc1c291801c451c447e16c12


    Headers

    Imports

    Exports

    Sections

  • $PLUGINSDIR/UserInfo.dll
    .dll windows:4 windows x86 arch:x86

    13b1bef222622e1e4753306d634849ab


    Headers

    Imports

    Exports

    Sections

  • $PLUGINSDIR/nsExec.dll
    .dll windows:4 windows x86 arch:x86

    9076fa7961baeaeda0746cb0928f486a


    Headers

    Imports

    Exports

    Sections

  • Allopurinol.flu
  • Brndenldes.Kao
  • Charting.skr
  • Gkkes.Vok
  • Ruineringernes/doubling.reg
  • Ruineringernes/hmoriderne.ner
  • Ruineringernes/lvens.flb
  • Ruineringernes/materialiter.sig
  • Ruineringernes/preinvest.pri
  • Strandbredden/ridningen.txt
  • chokoladeforretning.mar