General

  • Target

    e067b285521bab6aa393267a0842d663

  • Size

    12KB

  • Sample

    231220-tfa9bagec9

  • MD5

    e067b285521bab6aa393267a0842d663

  • SHA1

    7dc5751725e06ccd19c2c8731ab30398744dbaca

  • SHA256

    5ac0abe02ecffa8ce1f13d93ce8470f26b13580d1f563e1e8fabe2c2e4ca1d95

  • SHA512

    a9cb63f748979324da3cd65b297c22f99989a978fe9a0a2b714947ea3d9076ba9db790a9787822b212259070e8ce0bb17fc4d29df0c4adf4619417366f5d9934

  • SSDEEP

    384:6K+dKfzQHxFxRmyja4QhiP7UlY/pjKhYjlyyuA0hyyIsap:v+dAURFxna4QAPQlYghmlyyuA0hyyIz

Score
10/10

Malware Config

Targets

    • Target

      e067b285521bab6aa393267a0842d663

    • Size

      12KB

    • MD5

      e067b285521bab6aa393267a0842d663

    • SHA1

      7dc5751725e06ccd19c2c8731ab30398744dbaca

    • SHA256

      5ac0abe02ecffa8ce1f13d93ce8470f26b13580d1f563e1e8fabe2c2e4ca1d95

    • SHA512

      a9cb63f748979324da3cd65b297c22f99989a978fe9a0a2b714947ea3d9076ba9db790a9787822b212259070e8ce0bb17fc4d29df0c4adf4619417366f5d9934

    • SSDEEP

      384:6K+dKfzQHxFxRmyja4QhiP7UlY/pjKhYjlyyuA0hyyIsap:v+dAURFxna4QAPQlYghmlyyuA0hyyIz

    Score
    10/10
    • Upatre

      Upatre is a generic malware downloader.

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks