Analysis

  • max time kernel
    118s
  • max time network
    119s
  • platform
    windows7_x64
  • resource
    win7-20240611-en
  • resource tags

    arch:x64arch:x86image:win7-20240611-enlocale:en-usos:windows7-x64system
  • submitted
    17-06-2024 13:37

General

  • Target

    TT-SWIFT-Schindler.exe

  • Size

    2.4MB

  • MD5

    c2105f208d13b645b762e3c592969bb8

  • SHA1

    9d1ee2c7c7f9fdf744f0bca64e26693aceaeabe9

  • SHA256

    2ee5255934af2f37c295770b441baf6f12e4483e7eb5281df70a4a0164521c70

  • SHA512

    23a1427df886d8f5b84b7ae6012905a9e3215785b95f59e0535fa003b2eef79594bcd8653c1bf7056ec1ff92b9cfded8a44055807b3d63f34046d531dcd5b64f

  • SSDEEP

    12288:C42m6rLTvbLZlRxTeOw7sR9yZRq+JtpHc0rC0V/77EfRGW6p0GCE9Kg:6m6rLzbtRTeF4crC0Vz7EfIW6p024g

Score
1/10

Malware Config

Signatures

Processes

  • C:\Users\Admin\AppData\Local\Temp\TT-SWIFT-Schindler.exe
    "C:\Users\Admin\AppData\Local\Temp\TT-SWIFT-Schindler.exe"
    1⤵
      PID:2844

    Network

    MITRE ATT&CK Matrix

    Replay Monitor

    Loading Replay Monitor...

    Downloads

    • memory/2844-0-0x000007FEF57C3000-0x000007FEF57C4000-memory.dmp
      Filesize

      4KB

    • memory/2844-1-0x0000000000D40000-0x0000000000D4C000-memory.dmp
      Filesize

      48KB

    • memory/2844-2-0x000007FEF57C0000-0x000007FEF61AC000-memory.dmp
      Filesize

      9.9MB

    • memory/2844-3-0x0000000000AE0000-0x0000000000B66000-memory.dmp
      Filesize

      536KB

    • memory/2844-4-0x000007FEF57C0000-0x000007FEF61AC000-memory.dmp
      Filesize

      9.9MB