General

  • Target

    feb5ae9193cc3148179ee5db8a55544a8df4f82919c1cc67021b8a6a2b9534b5

  • Size

    38KB

  • Sample

    240315-bgyf5aeg59

  • MD5

    595b0b743c505d0bb5ce4ae056c7e490

  • SHA1

    50ade3f5cce82177a99dea005f77da7d5d6220f1

  • SHA256

    feb5ae9193cc3148179ee5db8a55544a8df4f82919c1cc67021b8a6a2b9534b5

  • SHA512

    faaf7752009cc3e60043af39a9b4ad6a8e7ec5cac6cb0bce5e1b129269e92f9e1761c09dd8ff48ca13c7c724bfca313bba0d73349303f7b40fe28ddb6d08f670

  • SSDEEP

    768:kf1Y9RRw/dUT6vurGd/pkUOyGAv+rh95k5AY0I9jeIGvQ:GY9jw/dUT62rGdiUOWWrNmA8aa

Score
10/10

Malware Config

Targets

    • Target

      feb5ae9193cc3148179ee5db8a55544a8df4f82919c1cc67021b8a6a2b9534b5

    • Size

      38KB

    • MD5

      595b0b743c505d0bb5ce4ae056c7e490

    • SHA1

      50ade3f5cce82177a99dea005f77da7d5d6220f1

    • SHA256

      feb5ae9193cc3148179ee5db8a55544a8df4f82919c1cc67021b8a6a2b9534b5

    • SHA512

      faaf7752009cc3e60043af39a9b4ad6a8e7ec5cac6cb0bce5e1b129269e92f9e1761c09dd8ff48ca13c7c724bfca313bba0d73349303f7b40fe28ddb6d08f670

    • SSDEEP

      768:kf1Y9RRw/dUT6vurGd/pkUOyGAv+rh95k5AY0I9jeIGvQ:GY9jw/dUT62rGdiUOWWrNmA8aa

    Score
    10/10
    • Upatre

      Upatre is a generic malware downloader.

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks