General

  • Target

    80a8531daf154b945db7f38de40a8976

  • Size

    12KB

  • Sample

    240129-x2d4waaeel

  • MD5

    80a8531daf154b945db7f38de40a8976

  • SHA1

    220ee5a1f816ff477621758f1282efa973fc484b

  • SHA256

    1a875b277b6d3c8cbd10c655f583d79bcb0819ac3e1d936fada5ee3d0b43b5fe

  • SHA512

    2c0ecdbae4c25f7fccc25e867db9969350e8a191c175865b3bbf060deb32d2801507396ba9598341dc614d87a5ee70522e5b8dbd61ca5436df8905d279eeeb31

  • SSDEEP

    384:6K+dKfzQHxFxRmyja4QhiP7UlY/pjKhYjlylMeyye37DyQ:v+dAURFxna4QAPQlYghmlylMeyye3/yQ

Score
10/10

Malware Config

Targets

    • Target

      80a8531daf154b945db7f38de40a8976

    • Size

      12KB

    • MD5

      80a8531daf154b945db7f38de40a8976

    • SHA1

      220ee5a1f816ff477621758f1282efa973fc484b

    • SHA256

      1a875b277b6d3c8cbd10c655f583d79bcb0819ac3e1d936fada5ee3d0b43b5fe

    • SHA512

      2c0ecdbae4c25f7fccc25e867db9969350e8a191c175865b3bbf060deb32d2801507396ba9598341dc614d87a5ee70522e5b8dbd61ca5436df8905d279eeeb31

    • SSDEEP

      384:6K+dKfzQHxFxRmyja4QhiP7UlY/pjKhYjlylMeyye37DyQ:v+dAURFxna4QAPQlYghmlylMeyye3/yQ

    Score
    10/10
    • Upatre

      Upatre is a generic malware downloader.

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks