General

  • Target

    Aimware.exe

  • Size

    2.9MB

  • Sample

    220825-yrm5gaacan

  • MD5

    23301af32cde00bcdadb0c8cfb1b2baa

  • SHA1

    b563a48f99dd31a887f3c7f9726b993ce762d8db

  • SHA256

    51dc6776b701b58d659f6bc4e63a4ba9e4513032c42673599d921214998fae31

  • SHA512

    4d1c5b34fbafcc1cabc40506f0189d53459181c3dc68f7806d77cb5fd55af6e682b8f90059e7c6b8c8d1db5479e5a865f69f8b9c74887c03166258befd3965f8

  • SSDEEP

    49152:hW7mcjVWm4OzAuqHf74Y3AX90DU2xF4l3/:hW7mcRWVOhy7FbDU2xFS

Score
10/10

Malware Config

Targets

    • Target

      Aimware.exe

    • Size

      2.9MB

    • MD5

      23301af32cde00bcdadb0c8cfb1b2baa

    • SHA1

      b563a48f99dd31a887f3c7f9726b993ce762d8db

    • SHA256

      51dc6776b701b58d659f6bc4e63a4ba9e4513032c42673599d921214998fae31

    • SHA512

      4d1c5b34fbafcc1cabc40506f0189d53459181c3dc68f7806d77cb5fd55af6e682b8f90059e7c6b8c8d1db5479e5a865f69f8b9c74887c03166258befd3965f8

    • SSDEEP

      49152:hW7mcjVWm4OzAuqHf74Y3AX90DU2xF4l3/:hW7mcRWVOhy7FbDU2xFS

    Score
    10/10
    • PhoenixStealer

      PhoenixStealer is an information stealer written in the C++, it sends the stolen information to cybercriminals.

    • Suspicious use of SetThreadContext

MITRE ATT&CK Matrix

Tasks