Static task
static1
Behavioral task
behavioral1
Sample
2facfa5bb80933431ce452627dd71c6c9b5711799dea72732e1617622ec45c54.exe
Resource
win7-20240419-en
Behavioral task
behavioral2
Sample
2facfa5bb80933431ce452627dd71c6c9b5711799dea72732e1617622ec45c54.exe
Resource
win10v2004-20240508-en
General
-
Target
2facfa5bb80933431ce452627dd71c6c9b5711799dea72732e1617622ec45c54.exe
-
Size
1.3MB
-
MD5
7e3694a4d525aecb407e7dfee160afee
-
SHA1
9e515221e99af422d0e7c76b3b90e9a259f67562
-
SHA256
2facfa5bb80933431ce452627dd71c6c9b5711799dea72732e1617622ec45c54
-
SHA512
1eb559e7d6cdb090fd16bb36aee866b156341ca95955313a73e1187cf7fbfbd7f5aea2d0c2a6b67394e94218899b79d977dddcdf1dcf587c45b6cf9a1388a7eb
-
SSDEEP
12288:o+WbFkpXD7n1FDoPNUCobwMtFTUhqxDd1XKm:o+4i3nnDAUCobwQ3h1R
Malware Config
Signatures
-
Unsigned PE 1 IoCs
Checks for missing Authenticode signature.
Processes:
resource 2facfa5bb80933431ce452627dd71c6c9b5711799dea72732e1617622ec45c54.exe
Files
-
2facfa5bb80933431ce452627dd71c6c9b5711799dea72732e1617622ec45c54.exe.exe windows:4 windows x64 arch:x64
Headers
DLL Characteristics
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_NO_SEH
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
File Characteristics
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE
Sections
.text Size: 15KB - Virtual size: 14KB
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
.rsrc Size: 2KB - Virtual size: 2KB
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ