RaavanSMTPr.zip

First submission 2024-10-18 03:12:07

File details

File type: Zip archive data, at least v1.0 to extract
Mime type: application/zip
File size: 51441.83 KB (52676429 bytes)
MD5: 4746f5640613677730d712c1b83199fb
SHA1: 2496ef934e70e9c9bfee8c49cbc18a45485c9edd
SHA256: b380ec3163ab2c9b2d59022c9bdcf463d48aa987e9aa5be0a2e6be7e52e6d15e

File features detected

Is DLL
Packers
Anti Debug
Anti VM
Signed
XOR

OSINT Enrichments

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://3.94.86.69/files/RaavanSMTPr.zip VirusTotal Report 3.94.86.69 VirusTotal Report 2024-10-18 03:12:07

Strings analysis - File found

Binary
5.BiN
Executable
^8.So
XML
Debug/System.Threading.Tasks.Extensions.xml
Debug/Microsoft.IdentityModel.Tokens.xml
Debug/System.Text.Encoding.CodePages.xml
Debug/Microsoft.Bcl.TimeProvider.xml
Debug/System.Memory.xml
Debug/MailKit.xml
Debug/System.Security.AccessControl.xml
Debug/System.Security.Principal.Windows.xml
Debug/Newtonsoft.Json.xml
Debug/Microsoft.IdentityModel.Protocols.OpenIdConnect.xml
Debug/Google.Apis.Gmail.v1.xml
Debug/Google.Apis.xml
Debug/MimeKit.xml
Debug/Google.Apis.Auth.xml
Debug/System.Numerics.Vectors.xml
Debug/System.Security.Permissions.xml
Debug/System.IdentityModel.Tokens.Jwt.xml
Debug/System.Runtime.CompilerServices.Unsafe.xml
Debug/Microsoft.Identity.Client.xml
Debug/System.IO.FileSystem.AccessControl.xml
Debug/System.Buffers.xml
Debug/Google.Apis.Core.xml
Debug/HtmlAgilityPack.xml
Debug/Azure.Core.xml
Debug/System.ValueTuple.xml
Debug/System.Text.Encodings.Web.xml
Debug/System.Security.Cryptography.ProtectedData.xml
Debug/Microsoft.Data.SqlClient.xml
Debug/Microsoft.Bcl.AsyncInterfaces.xml
Debug/System.Formats.Asn1.xml
Debug/Azure.Identity.xml
Debug/System.Diagnostics.DiagnosticSource.xml
Debug/itextsharp.xml
Debug/NReco.PdfGenerator.xml
Debug/Bunifu_UI_v1.5.3.xml
Debug/Microsoft.IdentityModel.Protocols.xml
Debug/Microsoft.IdentityModel.Abstractions.xml
Debug/System.Text.Json.xml
Debug/System.Memory.Data.xml
Debug/Microsoft.Identity.Client.Extensions.Msal.xml
Debug/System.ClientModel.xml
Debug/System.Configuration.ConfigurationManager.xml
Debug/Microsoft.IdentityModel.JsonWebTokens.xml
Debug/BouncyCastle.Cryptography.xml
Debug/System.CodeDom.xml
Debug/Microsoft.IdentityModel.Logging.xml
Debug/AngleSharp.xml
Debug/NReco.ImageGenerator.xml
Database
o%.Db
Library
Debug/Microsoft.Data.SqlClient.SNI.x64.dll
Debug/Microsoft.IdentityModel.Abstractions.dll
Debug/wkhtmltoimage/api-ms-win-core-timezone-l1-1-0.dll
Debug/wkhtmltoimage/api-ms-win-crt-private-l1-1-0.dll
Debug/Bunifu_UI_v1.5.3.dll
Debug/wkhtmltoimage/api-ms-win-crt-environment-l1-1-0.dll
Debug/Microsoft.Identity.Client.Extensions.Msal.dll
Debug/System.Security.AccessControl.dll
Debug/System.Memory.Data.dll
Debug/wkhtmltoimage/api-ms-win-crt-convert-l1-1-0.dll
Debug/wkhtmltoimage/concrt140.dll
Debug/wkhtmltoimage/api-ms-win-core-string-l1-1-0.dll
Debug/System.Text.Encodings.Web.dll
Debug/System.ClientModel.dll
Debug/wkhtmltoimage/api-ms-win-crt-string-l1-1-0.dll
Debug/de-DE/Faker.Net.4.7.resources.dll
Debug/System.Memory.dll
Debug/wkhtmltoimage/api-ms-win-core-datetime-l1-1-0.dll
Debug/Google.Apis.Gmail.v1.dll
Debug/es/Microsoft.Data.SqlClient.resources.dll
Debug/wkhtmltoimage/api-ms-win-core-handle-l1-1-0.dll
Debug/Microsoft.IdentityModel.JsonWebTokens.dll
Debug/AngleSharp.dll
Debug/Bunifu.Core.dll
Debug/wkhtmltoimage/api-ms-win-core-file-l2-1-0.dll
Debug/wkhtmltoimage/api-ms-win-core-interlocked-l1-1-0.dll
Debug/wkhtmltoimage/api-ms-win-core-processthreads-l1-1-1.dll
Debug/Google.Apis.dll
Debug/Azure.Identity.dll
Debug/wkhtmltoimage/api-ms-win-crt-multibyte-l1-1-0.dll
Debug/wkhtmltoimage/api-ms-win-core-synch-l1-2-0.dll
Debug/wkhtmltoimage/ucrtbase.dll
Debug/wkhtmltoimage/api-ms-win-crt-time-l1-1-0.dll
Debug/Microsoft.Data.SqlClient.dll
Debug/wkhtmltoimage/api-ms-win-core-synch-l1-1-0.dll
Debug/pt-BR/Microsoft.Data.SqlClient.resources.dll
Debug/System.Text.Json.dll
Debug/it/Microsoft.Data.SqlClient.resources.dll
Debug/System.Configuration.ConfigurationManager.dll
Debug/System.Security.Principal.Windows.dll
Debug/MailKit.dll
Debug/System.CodeDom.dll
Debug/wkhtmltoimage/api-ms-win-core-namedpipe-l1-1-0.dll
Debug/wkhtmltoimage/api-ms-win-core-memory-l1-1-0.dll
Debug/Microsoft.IdentityModel.Protocols.dll
Debug/de/Microsoft.Data.SqlClient.resources.dll
Debug/wkhtmltoimage/msvcp140_1.dll
Debug/wkhtmltoimage/api-ms-win-crt-math-l1-1-0.dll
Debug/ru/Microsoft.Data.SqlClient.resources.dll
Debug/NReco.PdfGenerator.dll
Debug/wkhtmltoimage/api-ms-win-core-sysinfo-l1-1-0.dll
Debug/wkhtmltoimage/api-ms-win-core-errorhandling-l1-1-0.dll
Debug/System.Threading.Tasks.Extensions.dll
Debug/System.Security.Cryptography.ProtectedData.dll
Debug/Microsoft.Bcl.TimeProvider.dll
Debug/Azure.Core.dll
Debug/wkhtmltoimage/API-MS-Win-core-xstate-l2-1-0.dll
Debug/wkhtmltoimage/api-ms-win-crt-conio-l1-1-0.dll
Debug/wkhtmltoimage/api-ms-win-core-localization-l1-2-0.dll
Debug/Newtonsoft.Json.dll
Debug/System.IdentityModel.Tokens.Jwt.dll
Debug/HtmlAgilityPack.dll
Debug/BouncyCastle.Cryptography.dll
Debug/itextsharp.dll
Debug/wkhtmltoimage/api-ms-win-core-util-l1-1-0.dll
Debug/wkhtmltoimage/msvcp140.dll
Debug/wkhtmltoimage/api-ms-win-crt-runtime-l1-1-0.dll
Debug/System.Formats.Asn1.dll
Debug/RandomNameGeneratorLibrary.dll
Debug/wkhtmltoimage/api-ms-win-crt-locale-l1-1-0.dll
Debug/System.Runtime.CompilerServices.Unsafe.dll
Debug/wkhtmltoimage/api-ms-win-core-file-l1-2-0.dll
Debug/zh-Hant/Microsoft.Data.SqlClient.resources.dll
Debug/wkhtmltoimage/api-ms-win-core-file-l1-1-0.dll
Debug/fr/Microsoft.Data.SqlClient.resources.dll
Debug/wkhtmltoimage/vccorlib140.dll
Debug/wkhtmltoimage/api-ms-win-crt-stdio-l1-1-0.dll
Debug/wkhtmltoimage/api-ms-win-crt-utility-l1-1-0.dll
Debug/Google.Apis.Core.dll
Debug/Microsoft.Identity.Client.dll
Debug/Microsoft.IdentityModel.Logging.dll
Debug/Microsoft.Data.SqlClient.SNI.arm64.dll
Debug/System.Text.Encoding.CodePages.dll
Debug/Microsoft.IdentityModel.Protocols.OpenIdConnect.dll
Debug/BouncyCastle.Crypto.dll
Debug/System.IO.FileSystem.AccessControl.dll
Debug/MimeKit.dll
Debug/System.ValueTuple.dll
Debug/System.Security.Permissions.dll
Debug/wkhtmltoimage/api-ms-win-crt-heap-l1-1-0.dll
Debug/wkhtmltoimage/api-ms-win-core-profile-l1-1-0.dll
Debug/wkhtmltoimage/vcruntime140.dll
Debug/wkhtmltoimage/api-ms-win-core-processthreads-l1-1-0.dll
Debug/wkhtmltoimage/api-ms-win-core-debug-l1-1-0.dll
Debug/Microsoft.Bcl.AsyncInterfaces.dll
Debug/wkhtmltoimage/msvcp140_2.dll
Debug/System.Numerics.Vectors.dll
Debug/ko/Microsoft.Data.SqlClient.resources.dll
Debug/wkhtmltoimage/api-ms-win-core-heap-l1-1-0.dll
Debug/NReco.ImageGenerator.dll
Debug/Faker.Net.4.7.dll
Debug/wkhtmltoimage/api-ms-win-crt-filesystem-l1-1-0.dll
Debug/System.Diagnostics.DiagnosticSource.dll
Debug/Microsoft.Data.SqlClient.SNI.x86.dll
Debug/wkhtmltoimage/api-ms-win-core-libraryloader-l1-1-0.dll
Debug/wkhtmltoimage/vcomp140.dll
Debug/wkhtmltoimage/api-ms-win-core-console-l1-1-0.dll
Debug/System.Buffers.dll
Debug/wkhtmltoimage/api-ms-win-crt-process-l1-1-0.dll
Debug/ja/Microsoft.Data.SqlClient.resources.dll
Debug/wkhtmltoimage/api-ms-win-core-rtlsupport-l1-1-0.dll
Debug/Microsoft.IdentityModel.Tokens.dll
Debug/wkhtmltoimage/api-ms-win-core-processenvironment-l1-1-0.dll
Debug/zh-Hans/Microsoft.Data.SqlClient.resources.dll
Debug/Google.Apis.Auth.dll