flash

NOA_-_CMA_CGM_ARRIVAL_NOTICE.lzh

Status: finished
Submission Time: 14.09.2021 09:37:46
Malicious
Trojan
GuLoader

Comments

Tags

Details

  • Analysis ID:
    482886
  • API (Web) ID:
    850460
  • Analysis Started:
    14.09.2021 09:42:43
  • Analysis Finished:
    14.09.2021 10:04:00
  • MD5:
    b71a9e479123528ba6f7b8642b924d0e
  • SHA1:
    5aae421b9bc63d5982f5ef0e19abdfb85cb1688b
  • SHA256:
    1908c35415f99b55e81ea5dd70da0ebbd3e341cd4d2cf77a418c09235be590d5
  • Technologies:
Full Report Management Report IOC Report Engine Info Verdict Score Reports

System: Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 85, IE 11, Adobe Reader DC 19, Java 8 Update 211

malicious
76/100

System: Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 85, IE 11, Adobe Reader DC 19, Java 8 Update 211
Run Condition: Suspected Instruction Hammering Hide Perf

malicious
48/100

malicious
23/68

malicious
10/35

malicious
15/26

URLs

Name Detection
http://pantronus.com/bin_gcbZVug136.

Dropped files

Name File Type Hashes Detection
C:\Users\user\AppData\Local\Temp\rcnbbfid.mtk\NOA_-_CMA_CGM_ARRIVAL_NOTICE.exe
PE32 executable (GUI) Intel 80386, for MS Windows
#
C:\Users\user\AppData\Local\Temp\rwew4jnu.3k5\unarchiver.log
ASCII text, with CRLF line terminators
#