General
-
Target
HEALTH~1.JS
-
Size
40.9MB
-
Sample
240625-v2wykswbqq
-
MD5
824d5bcd852dc88ed910aa389d633cf9
-
SHA1
c625adb17c37b82664a1184f92d7ba1c2af24d5e
-
SHA256
a34888ebb245884b289342bfbd9bbbba5b4a2b95fb7ad40daf6d1566cde9f712
-
SHA512
7f1983973a569824b5f3c8ad84048030a5a1ac9228d6852eac6e004ec4cf8e44d1bb71757f9e7e625fa64b54fae9f31cc0dae20903839ffe6d8eef8a0b50f85f
-
SSDEEP
6144:hbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbV:3
Static task
static1
Behavioral task
behavioral1
Sample
HEALTH~1.js
Resource
win10-20240404-en
Malware Config
Targets
-
-
Target
HEALTH~1.JS
-
Size
40.9MB
-
MD5
824d5bcd852dc88ed910aa389d633cf9
-
SHA1
c625adb17c37b82664a1184f92d7ba1c2af24d5e
-
SHA256
a34888ebb245884b289342bfbd9bbbba5b4a2b95fb7ad40daf6d1566cde9f712
-
SHA512
7f1983973a569824b5f3c8ad84048030a5a1ac9228d6852eac6e004ec4cf8e44d1bb71757f9e7e625fa64b54fae9f31cc0dae20903839ffe6d8eef8a0b50f85f
-
SSDEEP
6144:hbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbV:3
Score10/10-
GootLoader
JavaScript loader known for delivering other families such as Gootkit and Cobaltstrike.
-
Blocklisted process makes network request
-
Drops file in System32 directory
-