General

  • Target

    b267170e1d84af062e46ff691e7c3842d3cd0b7768edf6063947bb18c15d342b

  • Size

    101KB

  • Sample

    240310-avkazsfb69

  • MD5

    0018adba5cd6033f12d05efa6d8bd05e

  • SHA1

    74d16552056dd36791295db0d7a40748b2fa000e

  • SHA256

    b267170e1d84af062e46ff691e7c3842d3cd0b7768edf6063947bb18c15d342b

  • SHA512

    1e638e36273113f53808f87c19892caf511f3873b1bf87747a96bf8005a5431b83767d077fc68ceb0dbcadb387e5694f10eafd0efc5b8c604b4dd018a17695f3

  • SSDEEP

    1536:iY9jw/dUT62rGdiUOWWrMu8i8N8tz8b8XtP8XtH8XtgUm2PmsZwGMaa:iY9CUT62/UOVMu8i8N898b8XN8X98XGj

Score
10/10

Malware Config

Targets

    • Target

      b267170e1d84af062e46ff691e7c3842d3cd0b7768edf6063947bb18c15d342b

    • Size

      101KB

    • MD5

      0018adba5cd6033f12d05efa6d8bd05e

    • SHA1

      74d16552056dd36791295db0d7a40748b2fa000e

    • SHA256

      b267170e1d84af062e46ff691e7c3842d3cd0b7768edf6063947bb18c15d342b

    • SHA512

      1e638e36273113f53808f87c19892caf511f3873b1bf87747a96bf8005a5431b83767d077fc68ceb0dbcadb387e5694f10eafd0efc5b8c604b4dd018a17695f3

    • SSDEEP

      1536:iY9jw/dUT62rGdiUOWWrMu8i8N8tz8b8XtP8XtH8XtgUm2PmsZwGMaa:iY9CUT62/UOVMu8i8N898b8XN8X98XGj

    Score
    10/10
    • Upatre

      Upatre is a generic malware downloader.

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks