Capability to send out email message(s) with the built-in SMTP client engine.


Technical Details:


File System Modifications

#Filename(s)File SizeFile HashAlias
1 %AppData%\1337\2.exe 2,348,684 bytes MD5: 0x7FF56497A459BEB8222828E415F2D2F4
SHA-1: 0x0B075E888A7FB3F03F42E155D0D0DB8036F66809
(not available)
2 %AppData%\1337\libcurl.dll 274,432 bytes MD5: 0x96B6090BF24E2899E01346C995BD401B
SHA-1: 0x0AA75B06F61F3EBC20C8DBF93235F10F20EC83CB
(not available)
3 %AppData%\1337\sqlite3.dll 851,887 bytes MD5: 0x2381CE4058796CA28666AFE291B5EA29
SHA-1: 0x431F2EF403180B1924B1D0870ED99748E0627C73
(not available)
4 %AppData%\1337\Test.exe 1,860,096 bytes MD5: 0x43C498A84666981E778EA5F558D89B25
SHA-1: 0x5C3B2336E957B2EBCBD63C2101C7F7383C909610
Mal/EncPk-DW [Sophos]
5 [file and pathname of the sample #1] 2,532,805 bytes MD5: 0x3677B4C445BA932889477148DE213E38
SHA-1: 0xE205AAF8ED5D5EF70C77D60701FF137C4903337F
(not available)


Memory Modifications

Process NameProcess FilenameMain Module Size
[filename of the sample #1][file and pathname of the sample #1]253,952 bytes
2.exe%AppData%\1337\2.exe253,952 bytes


Other details



