General

  • Target

    cb0695a8016de6497e6278b4fb6a50a6ebbb27b2172ab1d1a52f489fe0cef66e

  • Size

    322KB

  • Sample

    240625-plzrmssfkq

  • MD5

    43c4e1b1501f3717908dde4bf217c606

  • SHA1

    36ad8061fa183d0678b1cdafbf6e2bc1c6dbffd5

  • SHA256

    cb0695a8016de6497e6278b4fb6a50a6ebbb27b2172ab1d1a52f489fe0cef66e

  • SHA512

    3ef785169ea88dc94e9b72822d7b83ac306b8b0b3ddc1d1b3479989b9bf1317624fc644b245e32ea356236f74411e7b3036a279a83039b9c1b23bef6e0db40b9

  • SSDEEP

    3072:IMBLIO1jqduqPX7tbcvZrJb72VxgZ5x4t4LtNVZGx9751Ek1EJxTEqS:IILh1jSzZclxyjgto8XZGzNH

Malware Config

Extracted

Family

smokeloader

Botnet

pub1

Targets

    • Target

      cb0695a8016de6497e6278b4fb6a50a6ebbb27b2172ab1d1a52f489fe0cef66e

    • Size

      322KB

    • MD5

      43c4e1b1501f3717908dde4bf217c606

    • SHA1

      36ad8061fa183d0678b1cdafbf6e2bc1c6dbffd5

    • SHA256

      cb0695a8016de6497e6278b4fb6a50a6ebbb27b2172ab1d1a52f489fe0cef66e

    • SHA512

      3ef785169ea88dc94e9b72822d7b83ac306b8b0b3ddc1d1b3479989b9bf1317624fc644b245e32ea356236f74411e7b3036a279a83039b9c1b23bef6e0db40b9

    • SSDEEP

      3072:IMBLIO1jqduqPX7tbcvZrJb72VxgZ5x4t4LtNVZGx9751Ek1EJxTEqS:IILh1jSzZclxyjgto8XZGzNH

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

Peripheral Device Discovery

1
T1120

System Information Discovery

1
T1082

Tasks