General
Structural Analysis
Config.0
Yara Rules27
Sync
Community
Infection Chain
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | 189a281ce19c6e8c8131d2f3a5eb8d04
|
| Sha1 | 86981016d47050cd6c6a1fd7b8b484da9ef5f36d
|
| Sha256 | dab57e7fe91f21705a5415e37a4c056e7420232a2660aeeaf9951fcced4fee99
|
| Sha384 | 481d01bb10d95ef190c1a589e3febf4a43a7a0c39aad74904893272ba93af38d3a92573b6d079599a25884d9b4949316
|
| Sha512 | 5ef961e28826ff07b2bd2e804f9ff2d58a73f0dc7b6422208495514af5fd2e989dc6c43bb4db9a917ad80a7bd5f1e2687c18c644fd4e678459b13e78be978ec6
|
| SSDeep | 786432:k7ridHHPBn2WVSWKQxi9iYE94WYtGXnelJeg:1pnxVLKgkEWxtYqJf
|
| TLSH | F9573392531D79D0C486AFCBB34ECDFA2FA3AD1639968890DE79C5925BC214038477CB
|
File Structure
189a281ce19c6e8c8131d2f3a5eb8d04
Malicious
NaLockNew.exe
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
Resources
RT_ICON
ID:0001
ID:0
ID:0-preview.png
RT_RCDATA
ID:0000
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
NalockUpdater.exe
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
NalockUpdater.Form1.resources
$this.Icon
[NBF]root.IconData
Logo.Image
[NBF]root.Data
[NBF]root.Data-preview.png
NalockUpdater.Properties.Resources.resources
TTNormsPro-Black.ttf
189a281ce19c6e8c8131d2f3a5eb8d04 (28.6 MB)
File Structure
189a281ce19c6e8c8131d2f3a5eb8d04
Malicious
NaLockNew.exe
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
Resources
RT_ICON
ID:0001
ID:0
ID:0-preview.png
RT_RCDATA
ID:0000
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
NalockUpdater.exe
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
NalockUpdater.Form1.resources
$this.Icon
[NBF]root.IconData
Logo.Image
[NBF]root.Data
[NBF]root.Data-preview.png
NalockUpdater.Properties.Resources.resources
TTNormsPro-Black.ttf
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.