Analysis
-
max time kernel
150s -
max time network
154s -
platform
windows10-2004_x64 -
resource
win10v2004-20240704-en -
resource tags
arch:x64arch:x86image:win10v2004-20240704-enlocale:en-usos:windows10-2004-x64system -
submitted
04-07-2024 22:11
Behavioral task
behavioral1
Sample
QQFile/QQFile.exe
Resource
win7-20240508-en
5 signatures
150 seconds
Behavioral task
behavioral2
Sample
QQFile/QQFile.exe
Resource
win10v2004-20240704-en
3 signatures
150 seconds
General
-
Target
QQFile/QQFile.exe
-
Size
956KB
-
MD5
2e61cc7e69c8b6f572dad0d878312117
-
SHA1
9f78f492dc1be137adc24204c8c86c8cbe52a320
-
SHA256
26b7d1a640f5e6b96801368e4caf7ba143796167f331c7f8d849622147e0ea23
-
SHA512
1b20d098347cfb6d091ab51ae392f2adc23dc8dcdb400ae1d3bb0cf4aaab3396a5ae277941629f14ac8870a539fcc4c8787c56aa2b7086d0d25fffd55244b0d3
-
SSDEEP
24576:2CxuefQjRdvUh2gPRq3x9rvAWqhWwSX4d54XSNBn2:jxFoVO2gPRqrY1hdn4iBn2
Score
1/10
Malware Config
Signatures
-
Suspicious use of FindShellTrayWindow 1 IoCs
Processes:
QQFile.exepid process 3156 QQFile.exe -
Suspicious use of SendNotifyMessage 1 IoCs
Processes:
QQFile.exepid process 3156 QQFile.exe -
Suspicious use of SetWindowsHookEx 5 IoCs
Processes:
QQFile.exepid process 3156 QQFile.exe 3156 QQFile.exe 3156 QQFile.exe 3156 QQFile.exe 3156 QQFile.exe