General

  • Target

    2876-64-0x0000000000320000-0x000000000034E000-memory.dmp

  • Size

    184KB

  • Sample

    230731-yhwegsag28

  • MD5

    387fa2cf5ddd3126d689563a3bdfe39e

  • SHA1

    5d2f91e48ea56f567e2782d3898074797d6c85a5

  • SHA256

    05a2e995dd40c953d318cad063337fb260cd1911fae288fca9e6ebee4b687599

  • SHA512

    e398cec68f5ea1fcc30d6fe8a8c2d9dfaa808f12cd1b9fdf07b44d01eab648955f00445a599d6f343a85e9649264e4dffe170a35c4df257b7f4ee6030d3b2580

  • SSDEEP

    3072:pbzgH+0OoCthfbEFtbcfjF45gjryKKqH6JY2doszEmQotEPPcfP/HO8Y:pbzge0ODhTEPgnjuIJzo+PPcfP/u8

Score
10/10

Malware Config

Extracted

Family

arrowrat

Botnet

Client

C2

line-ellis.gl.at.ply.gg:10735

Mutex

nAChhjAnR

Targets

    • Target

      2876-64-0x0000000000320000-0x000000000034E000-memory.dmp

    • Size

      184KB

    • MD5

      387fa2cf5ddd3126d689563a3bdfe39e

    • SHA1

      5d2f91e48ea56f567e2782d3898074797d6c85a5

    • SHA256

      05a2e995dd40c953d318cad063337fb260cd1911fae288fca9e6ebee4b687599

    • SHA512

      e398cec68f5ea1fcc30d6fe8a8c2d9dfaa808f12cd1b9fdf07b44d01eab648955f00445a599d6f343a85e9649264e4dffe170a35c4df257b7f4ee6030d3b2580

    • SSDEEP

      3072:pbzgH+0OoCthfbEFtbcfjF45gjryKKqH6JY2doszEmQotEPPcfP/HO8Y:pbzge0ODhTEPgnjuIJzo+PPcfP/u8

    Score
    1/10

MITRE ATT&CK Matrix

Tasks