General

  • Target

    65cb47e63228b570a7f8846157af85813c4c9c020f66fa4a581253af4df4fc12

  • Size

    6KB

  • Sample

    240303-zmlxaagh74

  • MD5

    39f3b270d96214412b933ba8c0e65a40

  • SHA1

    995546bcb86674e80ad3a63fdb519bf94d1e2267

  • SHA256

    65cb47e63228b570a7f8846157af85813c4c9c020f66fa4a581253af4df4fc12

  • SHA512

    fed26887e1530c36c854e1922358cce8722af31bcb90739129852ade8a5972b3f0ee6d940349179a3dda33694deda526902d638714527cbf9c0b01ad45c73b6a

  • SSDEEP

    96:Z0v4mUWKh9ctgC1RDDUnKymV44Shz1P+Xph3qK+fAS+Xuv2VfA:9mUWKs/DonKfzShoXph3q78evv

Score
10/10

Malware Config

Targets

    • Target

      65cb47e63228b570a7f8846157af85813c4c9c020f66fa4a581253af4df4fc12

    • Size

      6KB

    • MD5

      39f3b270d96214412b933ba8c0e65a40

    • SHA1

      995546bcb86674e80ad3a63fdb519bf94d1e2267

    • SHA256

      65cb47e63228b570a7f8846157af85813c4c9c020f66fa4a581253af4df4fc12

    • SHA512

      fed26887e1530c36c854e1922358cce8722af31bcb90739129852ade8a5972b3f0ee6d940349179a3dda33694deda526902d638714527cbf9c0b01ad45c73b6a

    • SSDEEP

      96:Z0v4mUWKh9ctgC1RDDUnKymV44Shz1P+Xph3qK+fAS+Xuv2VfA:9mUWKs/DonKfzShoXph3q78evv

    Score
    10/10
    • Upatre

      Upatre is a generic malware downloader.

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks