General

  • Target

    7f67b26c635927694f0397efc717ec08

  • Size

    12KB

  • Sample

    231222-kxhkaagag7

  • MD5

    7f67b26c635927694f0397efc717ec08

  • SHA1

    bcac3ee4a545db4d2bcf7deee4e3c93222bc0750

  • SHA256

    fbcbbe7c79dfdac4586e2f20393384f03764c6555d357698476ffa5c4e1d9e80

  • SHA512

    1f056abb0a8630fad17a212da29f71d9a5f1ca9d8482510fc588ada32c471c97154ed5fd509fd788107bca3c64b2380ab797d1f73bd932eacf805e22e4e7e3c2

  • SSDEEP

    384:6K+dKfzQHxFxRmyja4QhiP7UlY/pjKhYsKUAylUmtsYQ:v+dAURFxna4QAPQlYghxKUAyl9tTQ

Score
10/10

Malware Config

Targets

    • Target

      7f67b26c635927694f0397efc717ec08

    • Size

      12KB

    • MD5

      7f67b26c635927694f0397efc717ec08

    • SHA1

      bcac3ee4a545db4d2bcf7deee4e3c93222bc0750

    • SHA256

      fbcbbe7c79dfdac4586e2f20393384f03764c6555d357698476ffa5c4e1d9e80

    • SHA512

      1f056abb0a8630fad17a212da29f71d9a5f1ca9d8482510fc588ada32c471c97154ed5fd509fd788107bca3c64b2380ab797d1f73bd932eacf805e22e4e7e3c2

    • SSDEEP

      384:6K+dKfzQHxFxRmyja4QhiP7UlY/pjKhYsKUAylUmtsYQ:v+dAURFxna4QAPQlYghxKUAyl9tTQ

    Score
    10/10
    • Upatre

      Upatre is a generic malware downloader.

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks