General
-
Target
4f6b401906c600cf20a6eb22489156c6ae2f7bb78543d14e569cc5a8e17b6dfe
-
Size
1024KB
-
Sample
240513-z5k3psef37
-
MD5
42f2453b0b9785ad9c55a812207a651e
-
SHA1
c13201ff93820ea301b1abb213c5d68e792c78c0
-
SHA256
4f6b401906c600cf20a6eb22489156c6ae2f7bb78543d14e569cc5a8e17b6dfe
-
SHA512
5dab1a9dc24088c2f939847ad0102bc1c518abafab11405ef73cff92f1a5968db9aee32ff01a8b2a4c7016f29f69d1b2f2db37d49ba69fad164fa71652c3f26d
-
SSDEEP
24576:n67MnVnpA1lmTx8MmA07AaSuDSwdVE6EhDK67MnVnpA1lmTx8w:67N1ahCf0V7N1S
Behavioral task
behavioral1
Sample
4f6b401906c600cf20a6eb22489156c6ae2f7bb78543d14e569cc5a8e17b6dfe.exe
Resource
win7-20231129-en
Behavioral task
behavioral2
Sample
4f6b401906c600cf20a6eb22489156c6ae2f7bb78543d14e569cc5a8e17b6dfe.exe
Resource
win10v2004-20240508-en
Malware Config
Targets
-
-
Target
4f6b401906c600cf20a6eb22489156c6ae2f7bb78543d14e569cc5a8e17b6dfe
-
Size
1024KB
-
MD5
42f2453b0b9785ad9c55a812207a651e
-
SHA1
c13201ff93820ea301b1abb213c5d68e792c78c0
-
SHA256
4f6b401906c600cf20a6eb22489156c6ae2f7bb78543d14e569cc5a8e17b6dfe
-
SHA512
5dab1a9dc24088c2f939847ad0102bc1c518abafab11405ef73cff92f1a5968db9aee32ff01a8b2a4c7016f29f69d1b2f2db37d49ba69fad164fa71652c3f26d
-
SSDEEP
24576:n67MnVnpA1lmTx8MmA07AaSuDSwdVE6EhDK67MnVnpA1lmTx8w:67N1ahCf0V7N1S
Score10/10-
Sets file execution options in registry
-
Checks computer location settings
Looks up country code configured in the registry, likely geofence.
-
Executes dropped EXE
-
Loads dropped DLL
-
Adds Run key to start application
-
Drops file in System32 directory
-