.- - -----÷M÷E÷N÷U÷------------------------------------------------------------- --- ---- -------------.
! WALL ! STATS ! GOODIES ! YARA ! FAQ ! RSS ! EMV !
`-------------- - --- ---------- -------- -------- -------- -------- ----------------- - ---- ---- --'
ATM MALWARE NOTICE
d4a463c135d17239047ad4151ab2f2d084e223970e900904ecedabc0fd916545
Date...........: 2016-08-04
Family.........: Cutlet
File name......: 2.rar
File size......: 23.03 MB
Type file......: RAR/Archive
Virscan........: VT - HA
Documentation..: https://securelist.com/atm-malware-is-being-sold-on-darknet-market/81871/
Additional note: Contains russian docs and Cutlet malware, kind of mixed package.
Believed to be sold as 'pack'
Entropy:
Binary Histogram:
=== SCREENSHOT ===
=== WinRAR Archive ===
Details: RAR 4
Name: ??\AUTORUN.INF
Type: File
Size: 81
Packed size: 79
Ratio: 97%
mtime: 2018-05-05 18:11:00,790291100
Attributes: ..A....
CRC32: 30C03DCB
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\calccode.exe
Type: File
Size: 9728
Packed size: 4240
Ratio: 43%
mtime: 2017-12-07 15:03:03,703567400
Attributes: ..A....
CRC32: 84867FDB
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\cm17F.exe
Type: File
Size: 1816064
Packed size: 1751664
Ratio: 96%
mtime: 2016-09-04 09:04:08,000000000
Attributes: ..A....
CRC32: 73E8C2BD
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\CSCWCNG.dll
Type: File
Size: 7168
Packed size: 3140
Ratio: 43%
mtime: 2017-05-28 05:17:54,000000000
Attributes: ..A....
CRC32: 2E4F4CD4
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\CSCWCOMM.DLL
Type: File
Size: 393271
Packed size: 186501
Ratio: 47%
mtime: 2017-05-28 05:17:54,000000000
Attributes: ..A....
CRC32: 6673E9F2
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\CSCWINI.DLL
Type: File
Size: 98304
Packed size: 34787
Ratio: 35%
mtime: 2017-05-28 05:17:54,000000000
Attributes: ..A....
CRC32: 4448A614
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\CSCWLDR.DLL
Type: File
Size: 61440
Packed size: 21596
Ratio: 35%
mtime: 2017-05-28 05:18:32,000000000
Attributes: ..A....
CRC32: 5AAC7137
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\CSCWTLS.DLL
Type: File
Size: 122933
Packed size: 48093
Ratio: 39%
mtime: 2017-05-28 05:17:54,000000000
Attributes: ..A....
CRC32: 2C57E37E
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\Keygen.exe
Type: File
Size: 3986944
Packed size: 3694730
Ratio: 92%
mtime: 2018-03-07 14:18:04,000000000
Attributes: ..A....
CRC32: 6D2919D4
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\REBOOT.bat
Type: File
Size: 1466
Packed size: 450
Ratio: 30%
mtime: 2018-03-05 21:58:24,000000000
Attributes: ..A....
CRC32: F1F8E309
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\Safe_Mode_Networking (????????).vbs
Type: File
Size: 541
Packed size: 352
Ratio: 65%
mtime: 2018-03-05 21:58:24,000000000
Attributes: ..A....
CRC32: 0C1B2235
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\Stimulator22.exe
Type: File
Size: 1735168
Packed size: 1669709
Ratio: 96%
mtime: 2016-08-29 04:12:16,000000000
Attributes: ..A....
CRC32: A552EBD0
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\??? ? ???????.txt
Type: File
Size: 11
Packed size: 11
Ratio: 100%
mtime: 2018-03-07 18:19:08,583962300
Attributes: ..A....
CRC32: AFFDB78B
Host OS: Windows
Compression: RAR 3.0(v29) -m0 -md=4M
Name: ??\?????? ??????.docx
Type: File
Size: 1049492
Packed size: 977507
Ratio: 93%
mtime: 2018-03-23 21:45:55,804281000
Attributes: ..A....
CRC32: E48454DB
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\?????? ?? ??????.txt
Type: File
Size: 198
Packed size: 161
Ratio: 81%
mtime: 2018-03-05 22:10:31,625148200
Attributes: ..A....
CRC32: 31FD3FAE
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??
Type: Directory
mtime: 2018-05-30 13:25:46,687528700
Attributes: ...D...
CRC32: 00000000
Host OS: Windows
Compression: RAR 3.0(v20) -m0 -md=0K
Name: ??\wincor-official.docx
Type: File
Size: 1615104
Packed size: 1613140
Ratio: 99%
mtime: 2017-10-11 10:24:34,000000000
Attributes: ..A....
CRC32: CF88990D
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=2M
Name: ??\1155.docx
Type: File
Size: 1390846
Packed size: 1367117
Ratio: 98%
mtime: 2018-11-30 18:22:55,191946200
Attributes: ..A....
CRC32: 0C6BCE06
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=2M
Name: ??\Winkor.docx
Type: File
Size: 2596674
Packed size: 2550023
Ratio: 98%
mtime: 2017-04-21 03:50:18,000000000
Attributes: ..A....
CRC32: B621EA78
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\tmp_15811-Russkiy_gayd352587050.docx
Type: File
Size: 6563788
Packed size: 6458477
Ratio: 98%
mtime: 2018-11-30 18:24:16,007568600
Attributes: ..A....
CRC32: 7A8E533A
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\tmp_18870-Manual_3_Avtorskiy_bolee_svezhiy_1899925792.docx
Type: File
Size: 1399287
Packed size: 1393839
Ratio: 99%
mtime: 2018-11-30 18:26:17,135934100
Attributes: ..A....
CRC32: 46AC3504
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Name: ??\Coffee Machine manual.docx
Type: File
Size: 2369426
Packed size: 2366659
Ratio: 99%
mtime: 2018-11-30 18:24:58,201566800
Attributes: ..A....
CRC32: 98E5863D
Host OS: Windows
Compression: RAR 3.0(v29) -m3 -md=4M
Service: EOF
=== DOWNLOAD ===
Mirror provided by vx-underground.org, thx!