General

  • Target

    Anarchy-Panel-main.zip

  • Size

    26.8MB

  • Sample

    240321-xb4lvafa58

  • MD5

    70f8b43a89e28c7fddbd234eae15467f

  • SHA1

    c1c32caa62f8f6ecf09fceaa686edd05b82e4bc8

  • SHA256

    2cbc89213b6179dae25302fd05c98a4758cba9cb38e9faa4a6c4c432875916b1

  • SHA512

    1d6dd0f5ef9dbc53b4083a3a0948bf16efa23db0e14f933e02a32ebfc12b59f2d74e9bcceb8319317b9ab591696ec3d9d80d034ee45fa7f84f39bb092e2c0076

  • SSDEEP

    393216:pWSer62Koj0LZPnROByFQxgjIiv4fjCpOZAaOpb1sOZ+M1cby9Y1/F1+bzo2UOt:V/2TYLZ/MByFnjTAfjCpOZg51kcHytVQ

Malware Config

Extracted

Family

arrowrat

Botnet

identifier

C2

IP:PORT

Mutex

mutex

Targets

    • Target

      Anarchy Panel/bin/Release/net48/Stub/Stub.exe

    • Size

      60KB

    • MD5

      fd7b1162b84b0add4146e3bc0d13b7dd

    • SHA1

      1fb46807f499267832aa444e12c403df880855bb

    • SHA256

      972c912943000017fe92e563d4b7a5147f15825718edcb17307af79f85ac5f10

    • SHA512

      6f5ff1aff1c899f9ae48cd177fd1bb277b2b9a7395858de1077392c293a4c68307d55d84a7c9968342da5a1296e720b00d8cd6f42b5faa11b7c643260eac300d

    • SSDEEP

      768:NRgZXw8fNxs48AZYfEq586BHPcxLwM5QXWaRcW1Uo4blGNjj6MpqKYhY7:NR7586vcx35QXWaRB1UqiMpqKmY7

    Score
    10/10
    • AsyncRat

      AsyncRAT is designed to remotely monitor and control other computers written in C#.

MITRE ATT&CK Matrix

Tasks