General
-
Target
3cd6ddb1b93a914c245db2c7badfb9a2aa5c280c389e445b0f889c788d157e6e
-
Size
245KB
-
Sample
240621-zetbds1ekd
-
MD5
4e1550de469b5baa146eac341339f13f
-
SHA1
0246fc9d36b40a0b1eb4c056ba393c90b9f55e2f
-
SHA256
3cd6ddb1b93a914c245db2c7badfb9a2aa5c280c389e445b0f889c788d157e6e
-
SHA512
dd4c0a003d84502293f32abe5565a68d2cd5158569ed9225ab5d2677d7bb6a9e9951b7f6f2b93e67fd9bcd8d626bfacc247e8982874514ff1e711a2679171d30
-
SSDEEP
3072:GUUvt8OqJl1tnFHRstBowago+bAr+Qka:evJqJl1VtRst+hgo0ArV
Static task
static1
Behavioral task
behavioral1
Sample
3cd6ddb1b93a914c245db2c7badfb9a2aa5c280c389e445b0f889c788d157e6e.exe
Resource
win7-20240611-en
Behavioral task
behavioral2
Sample
3cd6ddb1b93a914c245db2c7badfb9a2aa5c280c389e445b0f889c788d157e6e.exe
Resource
win10v2004-20240508-en
Malware Config
Extracted
gozi
Targets
-
-
Target
3cd6ddb1b93a914c245db2c7badfb9a2aa5c280c389e445b0f889c788d157e6e
-
Size
245KB
-
MD5
4e1550de469b5baa146eac341339f13f
-
SHA1
0246fc9d36b40a0b1eb4c056ba393c90b9f55e2f
-
SHA256
3cd6ddb1b93a914c245db2c7badfb9a2aa5c280c389e445b0f889c788d157e6e
-
SHA512
dd4c0a003d84502293f32abe5565a68d2cd5158569ed9225ab5d2677d7bb6a9e9951b7f6f2b93e67fd9bcd8d626bfacc247e8982874514ff1e711a2679171d30
-
SSDEEP
3072:GUUvt8OqJl1tnFHRstBowago+bAr+Qka:evJqJl1VtRst+hgo0ArV
Score10/10-
Adds autorun key to be loaded by Explorer.exe on startup
-
Executes dropped EXE
-
Loads dropped DLL
-
Drops file in System32 directory
-