Analysis

  • max time kernel
    51s
  • max time network
    57s
  • platform
    windows10-2004_x64
  • resource
    win10v2004-20240508-en
  • resource tags

    arch:x64arch:x86image:win10v2004-20240508-enlocale:en-usos:windows10-2004-x64system
  • submitted
    25-06-2024 20:59

General

  • Target

    S500 RAT/MetroFramework.dll

  • Size

    345KB

  • MD5

    34ea7f7d66563f724318e322ff08f4db

  • SHA1

    d0aa8038a92eb43def2fffbbf4114b02636117c5

  • SHA256

    c2c12d31b4844e29de31594fc9632a372a553631de0a0a04c8af91668e37cf49

  • SHA512

    dceb1f9435b9479f6aea9b0644ba8c46338a7f458c313822a9d9b3266d79af395b9b2797ed3217c7048db8b22955ec6fe8b0b1778077fa1de587123ad9e6b148

  • SSDEEP

    6144:M4S7k5hdCpU4YqfkUGz6KpQQZQHDXjNCdOZgLdL5DXBK:M4S7k5hdCEQHP1Zgj

Score
1/10

Malware Config

Signatures

Processes

  • C:\Windows\system32\rundll32.exe
    rundll32.exe "C:\Users\Admin\AppData\Local\Temp\S500 RAT\MetroFramework.dll",#1
    1⤵
      PID:3316

    Network

    MITRE ATT&CK Matrix

    Replay Monitor

    Loading Replay Monitor...

    Downloads