General
-
Target
2024-06-20_c626445a3feed6367990df37a23cadcc_bkransomware_karagany_metamorfo
-
Size
213KB
-
Sample
240620-1la9tsybra
-
MD5
c626445a3feed6367990df37a23cadcc
-
SHA1
e62076aa56bf9b22503dabf4b8fe51f5d320de18
-
SHA256
2d9c641e008bcccbe9e9ef873eefa1b4d126d8c2ce2a9ccf28b7dd63540dddf6
-
SHA512
17f28c5ed1418908d1516ed9387332170bddc33f136ef21dcaca99002419efe4f505d3d8e6f95b364cdbd0a014d52ce1c0799c03025c7d35a1549365b182a21b
-
SSDEEP
3072:agzlmnQjGj/A78nRw3u04PbvZDV/y9afXqTXnCBNcESnrbieOVL5vYvQd2a:aiV78Rw2hpy9afajnCBwrbTO9Ya
Static task
static1
Behavioral task
behavioral1
Sample
2024-06-20_c626445a3feed6367990df37a23cadcc_bkransomware_karagany_metamorfo.exe
Resource
win7-20240508-en
Behavioral task
behavioral2
Sample
2024-06-20_c626445a3feed6367990df37a23cadcc_bkransomware_karagany_metamorfo.exe
Resource
win10v2004-20240508-en
Malware Config
Targets
-
-
Target
2024-06-20_c626445a3feed6367990df37a23cadcc_bkransomware_karagany_metamorfo
-
Size
213KB
-
MD5
c626445a3feed6367990df37a23cadcc
-
SHA1
e62076aa56bf9b22503dabf4b8fe51f5d320de18
-
SHA256
2d9c641e008bcccbe9e9ef873eefa1b4d126d8c2ce2a9ccf28b7dd63540dddf6
-
SHA512
17f28c5ed1418908d1516ed9387332170bddc33f136ef21dcaca99002419efe4f505d3d8e6f95b364cdbd0a014d52ce1c0799c03025c7d35a1549365b182a21b
-
SSDEEP
3072:agzlmnQjGj/A78nRw3u04PbvZDV/y9afXqTXnCBNcESnrbieOVL5vYvQd2a:aiV78Rw2hpy9afajnCBwrbTO9Ya
Score10/10-
GandCrab payload
-
Adds Run key to start application
-
Enumerates connected drives
Attempts to read the root path of hard drives other than the default C: drive.
-