Cryptam // document analysis


Sample Details

original filename: IMG_101290_100121_010210_001010_012100.IMG

size: 1245184 bytes
submitted: 2019-07-10 10:46:37
md5: 683cfe497f8a64a4b97d3d5e01dab0ae
sha1: 530264a645143fe994cbc1d3dba409f146eeeee0
sha256: 22d0b2de520cefe53455198ee17e08d0d0e2e32792527f9b23f5050c44036f3f
ssdeep: 6144:SyOQygweBswjBeEh6KsvuUkjUj1UHSbCZL48nob1:SyOLw1eruF+WHSbCHnM1
content/type: UDF filesystem data (version 1.5) 'FJMBGMODDAKTXLJUMATTTTTTTYYYRRRT'
analysis time: 1.81 s
result: suspicious
embedded executable: found

signature hits:

919630: string.This program cannot be run in DOS mode
dropped.file exe 74e1826296b1db1c751c44f99b7d823c / 325632 bytes / @ 919552


Strings

raw strings
decrypted raw strings

Dropped Files

exe at 919552
md5: 74e1826296b1db1c751c44f99b7d823c
sha1: 6102cad13a6204bb3c0650794416a95305b6d273
sha256: 739c2b12a8e9b9f72b91a66d1aba8a41cc4a7bccbc435575d3762f5f692e6791
view strings