General

  • Target

    cbfda5d2b834b5ab42b38331eeb18f09825299edaae48ff29ee63a70c732b08f

  • Size

    4KB

  • Sample

    240527-c8j89aed89

  • MD5

    591116c8465540f45bf93d2aea12fc7b

  • SHA1

    8863bec89b01bc6ec93b14cfc0b104058b5256d7

  • SHA256

    cbfda5d2b834b5ab42b38331eeb18f09825299edaae48ff29ee63a70c732b08f

  • SHA512

    eafcaff1e9f4b9d7ac96bea3d13199227fe6d8f195c6153edbcb522ad752a0a1ac5c6e0d1d23c4e39ced88e19d90e601f5ce55a1dbbb33da06c0a359d19ad80c

  • SSDEEP

    48:Zdni+Wyi18DN0nCvTaE6nc9fhXcGEY3sJd9ga91Rs1znA7B8mOo4jUx7OtKGcQEl:Z0v4mUWKh9ctgC1RGnKymV44ShC7+quQ

Score
10/10

Malware Config

Targets

    • Target

      cbfda5d2b834b5ab42b38331eeb18f09825299edaae48ff29ee63a70c732b08f

    • Size

      4KB

    • MD5

      591116c8465540f45bf93d2aea12fc7b

    • SHA1

      8863bec89b01bc6ec93b14cfc0b104058b5256d7

    • SHA256

      cbfda5d2b834b5ab42b38331eeb18f09825299edaae48ff29ee63a70c732b08f

    • SHA512

      eafcaff1e9f4b9d7ac96bea3d13199227fe6d8f195c6153edbcb522ad752a0a1ac5c6e0d1d23c4e39ced88e19d90e601f5ce55a1dbbb33da06c0a359d19ad80c

    • SSDEEP

      48:Zdni+Wyi18DN0nCvTaE6nc9fhXcGEY3sJd9ga91Rs1znA7B8mOo4jUx7OtKGcQEl:Z0v4mUWKh9ctgC1RGnKymV44ShC7+quQ

    Score
    10/10
    • Upatre

      Upatre is a generic malware downloader.

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks