General

  • Target

    Cheat.zip

  • Size

    53.8MB

  • MD5

    7cdf56b3bee16029882d29c1873ffc39

  • SHA1

    5285f807b7e2a0c624181ab2c2a8ed6ea8380973

  • SHA256

    b61fed559224dec5c55d61b344407e65bb7253586120f144a8f07db35a41383d

  • SHA512

    9f9a5dd472bbb8ffad303b81b57631335ae24267677b146e0990e6e46f91118663b99f88ef299267f640e280ceee49194264d56061fcf65eb9d089ea83fad3cd

  • SSDEEP

    1572864:nFcOuQOrIej6n8hEuXPjEqxezd/ZxqPfa4FmKKvv:nFcBEeGnEXDezc37sv

Score
3/10

Malware Config

Signatures

  • Unsigned PE 2 IoCs

    Checks for missing Authenticode signature.

Files

  • Cheat.zip
    .zip

    Password: hellhacks

  • CLibrary.dll
    .dll windows:6 windows x86 arch:x86

    Password: hellhacks

    c0860108fdeb25ec86b0a06fa2d3758c


    Headers

    Imports

    Sections

  • CheatInjector.exe
    .exe windows:6 windows x64 arch:x64

    Password: hellhacks

    ed09c5c4cacb27832d351757dabfe0a6


    Headers

    Imports

    Exports

    Sections

  • Hack.pdb
  • Hack.runtimeconfig.dev.json
  • Hack.runtimeconfig.dev1.json
  • README.txt
  • bearer/libn.dll
    .dll windows:6 windows x86 arch:x86

    Password: hellhacks

    48c72c12b3685003a84e2caf235b2330


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • bearer/qgenericbearer.dll
    .dll windows:6 windows x86 arch:x86

    Password: hellhacks

    9043a0459baa7e86a8246f1ef2c4bb0d


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • bearer/qnativewifibearer.dll
    .dll windows:6 windows x86 arch:x86

    Password: hellhacks

    6707694a9604d8377c27d661add977d6


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • bearer/ult.ucas
  • dll/Qt5Network.dll
    .dll windows:6 windows x86 arch:x86

    Password: hellhacks

    1cd41c0abd9e652b8c20ad73c41f45e2


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • dll/Qt5Svg.dll
    .dll windows:6 windows x86 arch:x86

    Password: hellhacks

    70d4f037a0ab67cbe75e5358a3f3386f


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • dll/libEGL.dll
    .dll windows:6 windows x86 arch:x86

    Password: hellhacks

    48c72c12b3685003a84e2caf235b2330


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • dll/libGLESV2.dll
    .dll windows:6 windows x86 arch:x86

    abea2434f9b7d3b2a3c225bb90b22116


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • dll/libeay32.dll
    .dll windows:6 windows x86 arch:x86

    0ab3c0ccca6cffc5857fa9eaa9166822


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • dll/msvcp120.dll
    .dll windows:6 windows x86 arch:x86

    6ccda270a497a2c5a36a7f385cc9910d


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • dll/msvcr120.dll
    .dll windows:6 windows x86 arch:x86

    aa8d086deb6960b10f8791df466a5610


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • dll/pakchunk10optional-WindowsClient.utoc
  • dll/ssleay32.dll
    .dll windows:6 windows x86 arch:x86

    073d57b7886016768db36f2bc192c07c


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • iconengines/qsvgicon.dll
    .dll windows:6 windows x86 arch:x86

    d80f8733bbbe0d549bd8643260d81557


    Code Sign

    Headers

    Imports

    Exports

    Sections

  • translations/qt_ca.qm
  • translations/qt_cs.qm
  • translations/qt_de.qm
  • translations/qt_en.qm
  • translations/qt_fi.qm
  • translations/qt_fr.qm
  • translations/qt_he.qm
  • translations/qt_hu.qm
  • translations/qt_it.qm
  • translations/qt_ja.qm
  • translations/qt_ko.qm
  • translations/qt_lv.qm
  • translations/qt_ru.qm
  • translations/qt_sk.qm
  • translations/qt_uk.qm