Cryptam // document analysis


Sample Details

original filename: Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki-0.zip

size: 3245812 bytes
submitted: 2017-05-14 20:52:14
md5: 27b3e44de082352e75ae56758689e956
sha1: 89b00ec077a1d53e983cb9866157c22c334e23bf
sha256: 3d88ffff40ea115ae8b0c2c8452ebb1abaf4e7c14355f3ed2defca332a73e806
ssdeep: 49152:G+AY4K8hWtJ/RrAJGBJw8wb2S5QLDIJuJCS2Lautdb1vZkGgA63hh+dXFmla:G+N4xyvw8S2S5eD0vaurCA63q12a
content/type: Zip archive data, at least v2.0 to extract
analysis time: 0.00 s
result: malware [160]
embedded file objects: yes
embedded executable: found

signature hits:

embedded.file Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe 6b0807347c9763f5adddcc88a5ba3a47
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.80: string.This program must be run under Win32
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.72432: string.LoadLibraryA
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.1377264: string.GetModuleHandleA
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.2530036: string.GetCommandLineA
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.138962: string.GetSystemMetrics
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.79002: string.GetProcAddress
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.1543968: string.CreateProcessA
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.124792: string.EnterCriticalSection
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.105456: string.CloseHandle
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.81634: string.CreateFileA
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.83868: string.RegOpenKeyExA
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.3143470: string.RegDeleteKeyA
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.85222: string.user32.dll
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.2528164: string.shell32.dll
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.139464: string.ExitProcess
Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe.1375272: string.CreateWindowExA


Strings

raw strings

Dropped Files

Sniper_Elite_3_Ultimate_Edition_2014_PC__RePack_ot_R.G._Mehaniki.torrent.exe at zip
md5: 6b0807347c9763f5adddcc88a5ba3a47
sha1: e71774abb092085da9264714a471f688d01e6a43
sha256: d7c6cc2a23c79d81c64c741fa9e710328c6526fd125ef0b5c3ca3295478b0d72
view strings