.- - -----÷M÷E÷N÷U÷------------------------------------------------------------- --- ----  -------------.
!  WALL ! STATS ! GOODIES ! YARA ! FAQ ! RSS                                                            !
`--------------  - ---  ---------- -------- -------- -------- -------- ----------------- -  ---- ---- --'

                                           ATM MALWARE NOTICE 
                    d4a463c135d17239047ad4151ab2f2d084e223970e900904ecedabc0fd916545
 
Date...........: 2016-08-04
Family.........: Cutlet
File name......: 2.rar
File size......: 23.03 MB
Type file......: RAR/Archive
Virscan........: VT - HA
Documentation..: https://securelist.com/atm-malware-is-being-sold-on-darknet-market/81871/ 
Additional note: Contains russian docs and Cutlet malware, kind of mixed package.
Believed to be sold as 'pack'

Entropy:


Binary Histogram:



=== SCREENSHOT === 




=== WinRAR Archive === 
Details: RAR 4 Name: ??\AUTORUN.INF Type: File Size: 81 Packed size: 79 Ratio: 97% mtime: 2018-05-05 18:11:00,790291100 Attributes: ..A.... CRC32: 30C03DCB Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\calccode.exe Type: File Size: 9728 Packed size: 4240 Ratio: 43% mtime: 2017-12-07 15:03:03,703567400 Attributes: ..A.... CRC32: 84867FDB Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\cm17F.exe Type: File Size: 1816064 Packed size: 1751664 Ratio: 96% mtime: 2016-09-04 09:04:08,000000000 Attributes: ..A.... CRC32: 73E8C2BD Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\CSCWCNG.dll Type: File Size: 7168 Packed size: 3140 Ratio: 43% mtime: 2017-05-28 05:17:54,000000000 Attributes: ..A.... CRC32: 2E4F4CD4 Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\CSCWCOMM.DLL Type: File Size: 393271 Packed size: 186501 Ratio: 47% mtime: 2017-05-28 05:17:54,000000000 Attributes: ..A.... CRC32: 6673E9F2 Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\CSCWINI.DLL Type: File Size: 98304 Packed size: 34787 Ratio: 35% mtime: 2017-05-28 05:17:54,000000000 Attributes: ..A.... CRC32: 4448A614 Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\CSCWLDR.DLL Type: File Size: 61440 Packed size: 21596 Ratio: 35% mtime: 2017-05-28 05:18:32,000000000 Attributes: ..A.... CRC32: 5AAC7137 Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\CSCWTLS.DLL Type: File Size: 122933 Packed size: 48093 Ratio: 39% mtime: 2017-05-28 05:17:54,000000000 Attributes: ..A.... CRC32: 2C57E37E Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\Keygen.exe Type: File Size: 3986944 Packed size: 3694730 Ratio: 92% mtime: 2018-03-07 14:18:04,000000000 Attributes: ..A.... CRC32: 6D2919D4 Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\REBOOT.bat Type: File Size: 1466 Packed size: 450 Ratio: 30% mtime: 2018-03-05 21:58:24,000000000 Attributes: ..A.... CRC32: F1F8E309 Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\Safe_Mode_Networking (????????).vbs Type: File Size: 541 Packed size: 352 Ratio: 65% mtime: 2018-03-05 21:58:24,000000000 Attributes: ..A.... CRC32: 0C1B2235 Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\Stimulator22.exe Type: File Size: 1735168 Packed size: 1669709 Ratio: 96% mtime: 2016-08-29 04:12:16,000000000 Attributes: ..A.... CRC32: A552EBD0 Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\??? ? ???????.txt Type: File Size: 11 Packed size: 11 Ratio: 100% mtime: 2018-03-07 18:19:08,583962300 Attributes: ..A.... CRC32: AFFDB78B Host OS: Windows Compression: RAR 3.0(v29) -m0 -md=4M Name: ??\?????? ??????.docx Type: File Size: 1049492 Packed size: 977507 Ratio: 93% mtime: 2018-03-23 21:45:55,804281000 Attributes: ..A.... CRC32: E48454DB Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\?????? ?? ??????.txt Type: File Size: 198 Packed size: 161 Ratio: 81% mtime: 2018-03-05 22:10:31,625148200 Attributes: ..A.... CRC32: 31FD3FAE Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ?? Type: Directory mtime: 2018-05-30 13:25:46,687528700 Attributes: ...D... CRC32: 00000000 Host OS: Windows Compression: RAR 3.0(v20) -m0 -md=0K Name: ??\wincor-official.docx Type: File Size: 1615104 Packed size: 1613140 Ratio: 99% mtime: 2017-10-11 10:24:34,000000000 Attributes: ..A.... CRC32: CF88990D Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=2M Name: ??\1155.docx Type: File Size: 1390846 Packed size: 1367117 Ratio: 98% mtime: 2018-11-30 18:22:55,191946200 Attributes: ..A.... CRC32: 0C6BCE06 Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=2M Name: ??\Winkor.docx Type: File Size: 2596674 Packed size: 2550023 Ratio: 98% mtime: 2017-04-21 03:50:18,000000000 Attributes: ..A.... CRC32: B621EA78 Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\tmp_15811-Russkiy_gayd352587050.docx Type: File Size: 6563788 Packed size: 6458477 Ratio: 98% mtime: 2018-11-30 18:24:16,007568600 Attributes: ..A.... CRC32: 7A8E533A Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\tmp_18870-Manual_3_Avtorskiy_bolee_svezhiy_1899925792.docx Type: File Size: 1399287 Packed size: 1393839 Ratio: 99% mtime: 2018-11-30 18:26:17,135934100 Attributes: ..A.... CRC32: 46AC3504 Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Name: ??\Coffee Machine manual.docx Type: File Size: 2369426 Packed size: 2366659 Ratio: 99% mtime: 2018-11-30 18:24:58,201566800 Attributes: ..A.... CRC32: 98E5863D Host OS: Windows Compression: RAR 3.0(v29) -m3 -md=4M Service: EOF
=== DOWNLOAD ===