Malicious
Malicious

26d986ea3444451dce9cc9dcf26beb62

PE Executable
|
MD5: 26d986ea3444451dce9cc9dcf26beb62
|
Size: 1.06 MB
|
application/x-dosexec

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
26d986ea3444451dce9cc9dcf26beb62
Sha1
836346f1244b21227282199dfee2bf3a9c54d58c
Sha256
c03ca9e42802851951cac696aa7ac0ae80fa07e4b188c2e26ca73845f6542200
Sha384
f2f20fb793e5450f1621732a01afded438fd5654333a275aa2d3bdfae6f03549a8ef79d1b18e8e8613daebf808c77a07
Sha512
45088be56dc62fa48c156933ac875c7910911d0b6ab86ead200d6f81daac0e5486a97c40828dd78224021f94ead8488fe7d1c94170bcbd2a61cb9720248a1599
SSDeep
12288:EzSrRWyZSVt/sZS5EOgq4hlJMAgh0/L1iA15mer5+nIKer5+nso:EzmZwtUZS5/gplJCPA7j
TLSH
3F356A13FB9185E5D66A05325B648295973EF531AA0B5792BA8C131CCF233878F26F3C

PeID

Microsoft Visual C++ 6.0 DLL (Debug)
Microsoft Visual C++ 8
Microsoft Visual C++ 8
Microsoft Visual C++ v6.0 DLL
VC8 -> Microsoft Corporation
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.reloc
vybf
EpZwtMKX
jyfzhqYY
MndvNFJp
smZfajaj
DeZqcWuw
cSjUFPQb
OuCCjRZm
PuOwPhLK
JRchGNEy
vNjCWMTB
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: C:\Users\Test\Desktop\LC2\LC2_servConf\Release\LC2.pdb

Artefacts
Name
Value
LummaEncrypted@000674A8 [0123456789]

?

LummaEncrypted@00067628 [0123456789]

?

LummaEncrypted@00074943 [0123456789]

?

LummaEncrypted@000780A0 [3333333333333333]

LummaEncrypted@00079463 [0123456789]

?

LummaEncrypted@0007BEA0 [0123456789abcdefABCDEF]

???????

LummaEncrypted@0007BF60 [0123456789]

?

LummaEncrypted@0007BF7F [0123456789]

?

LummaEncrypted@0007E821 [000000000000]

LummaEncrypted@0007EB83 [00000000]

LummaEncrypted@0007EBD0 [FFFFFFFF]

LummaEncrypted@00081770 [0123456789ABCDEF]

????

LummaEncrypted@00093E9D [4111111111111111]

P

LummaEncrypted@00093ED7 [4111111111111111]

P

LummaEncrypted@0009475F [5125551234]

e

LummaEncrypted@0009476B [5125551234]

e

LummaEncrypted@000B20E0 [0123456789abcdef]

????

LummaEncrypted@000B211C [0123456789abcdef]

????

LummaEncrypted@000B360D [621046800000]

b

LummaEncrypted@000B37D6 [621046800000]

b

LummaEncrypted@000B39DA [621046800000]

b

LummaEncrypted@000CCA53 [0123456789]

?

LummaEncrypted@000CF4D0 [0123456789abcdefABCDEF]

???????

LummaEncrypted@000CF590 [0123456789]

?

LummaEncrypted@000CF5AF [0123456789]

?

LummaEncrypted@000D2761 [000000000000]

LummaEncrypted@000D2F9D [00000000]

LummaEncrypted@000D2FEA [FFFFFFFF]

LummaEncrypted@000DE0D0 [0123456789ABCDEF]

????

LummaEncrypted@000E1153 [0123456789]

?

LummaEncrypted@000E3700 [0123456789abcdefABCDEF]

???????

LummaEncrypted@000E37C0 [0123456789]

?

LummaEncrypted@000E37DF [0123456789]

?

LummaEncrypted@000E8213 [0123456789]

?

LummaEncrypted@000EA1F0 [0123456789abcdefABCDEF]

???????

LummaEncrypted@000EA2B0 [0123456789]

?

LummaEncrypted@000EA2CF [0123456789]

?

LummaEncrypted@000ECCE1 [000000000000]

LummaEncrypted@000ED13A [00000000]

LummaEncrypted@000ED187 [FFFFFFFF]

LummaEncrypted@000F7A40 [0123456789]

?

LummaEncrypted@000F7BC0 [0123456789]

?

LummaEncrypted@000F96FF [0123456789]

?

26d986ea3444451dce9cc9dcf26beb62 (1.06 MB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.reloc
vybf
EpZwtMKX
jyfzhqYY
MndvNFJp
smZfajaj
DeZqcWuw
cSjUFPQb
OuCCjRZm
PuOwPhLK
JRchGNEy
vNjCWMTB
Characteristics
No malware configuration were found at this point.
Artefacts
Name
Value Location
LummaEncrypted@000674A8 [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@00067628 [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@00074943 [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000780A0 [3333333333333333]

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@00079463 [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@0007BEA0 [0123456789abcdefABCDEF]

???????

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@0007BF60 [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@0007BF7F [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@0007E821 [000000000000]

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@0007EB83 [00000000]

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@0007EBD0 [FFFFFFFF]

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@00081770 [0123456789ABCDEF]

????

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@00093E9D [4111111111111111]

P

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@00093ED7 [4111111111111111]

P

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@0009475F [5125551234]

e

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@0009476B [5125551234]

e

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000B20E0 [0123456789abcdef]

????

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000B211C [0123456789abcdef]

????

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000B360D [621046800000]

b

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000B37D6 [621046800000]

b

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000B39DA [621046800000]

b

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000CCA53 [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000CF4D0 [0123456789abcdefABCDEF]

???????

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000CF590 [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000CF5AF [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000D2761 [000000000000]

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000D2F9D [00000000]

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000D2FEA [FFFFFFFF]

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000DE0D0 [0123456789ABCDEF]

????

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000E1153 [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000E3700 [0123456789abcdefABCDEF]

???????

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000E37C0 [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000E37DF [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000E8213 [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000EA1F0 [0123456789abcdefABCDEF]

???????

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000EA2B0 [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000EA2CF [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000ECCE1 [000000000000]

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000ED13A [00000000]

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000ED187 [FFFFFFFF]

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000F7A40 [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000F7BC0 [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

LummaEncrypted@000F96FF [0123456789]

?

Malicious

26d986ea3444451dce9cc9dcf26beb62

You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙