General

  • Target

    0x000800000001276f-78.dat

  • Size

    173KB

  • Sample

    230704-fapmvsbb22

  • MD5

    a8a80fd5138a0bada9ae3f72f8daf7af

  • SHA1

    bbf4b9f3bc0099bea935f3fd1387bb524ab94b6b

  • SHA256

    aac3a769d9afeb55271d1e03ccb5d75bcabf125c2acd238f6993096d6382633c

  • SHA512

    af6f1949f52d7ddaee3a46b6d23550d47756d448ab80666699b4cb8e103382c4133cd015316d9d05f9591907d1a429a0a04007fa0ea1d36b4a46bf1b2c81d74a

  • SSDEEP

    3072:HWKe1kiJtebRavRJxNv4nFkbgWoHn8e8hI:HWcUt1RZbgWoHn

Malware Config

Extracted

Family

redline

Botnet

duza

C2

83.97.73.129:19071

Attributes
  • auth_value

    787a4e3bbc78fd525526de1098cb0621

Targets

    • Target

      0x000800000001276f-78.dat

    • Size

      173KB

    • MD5

      a8a80fd5138a0bada9ae3f72f8daf7af

    • SHA1

      bbf4b9f3bc0099bea935f3fd1387bb524ab94b6b

    • SHA256

      aac3a769d9afeb55271d1e03ccb5d75bcabf125c2acd238f6993096d6382633c

    • SHA512

      af6f1949f52d7ddaee3a46b6d23550d47756d448ab80666699b4cb8e103382c4133cd015316d9d05f9591907d1a429a0a04007fa0ea1d36b4a46bf1b2c81d74a

    • SSDEEP

      3072:HWKe1kiJtebRavRJxNv4nFkbgWoHn8e8hI:HWcUt1RZbgWoHn

    • RedLine

      RedLine Stealer is a malware family written in C#, first appearing in early 2020.

MITRE ATT&CK Matrix

Tasks