General

  • Target

    b0e762661eabb0e1fc4a6fa1e662361986db6f8892b9ae14cb17346f8c244866

  • Size

    3.6MB

  • MD5

    4094abf934977da11aaf9aad22e301c0

  • SHA1

    25382cf169f16dcd8d56932b3294719e49564ff7

  • SHA256

    b0e762661eabb0e1fc4a6fa1e662361986db6f8892b9ae14cb17346f8c244866

  • SHA512

    cae8525fcc481e865444a85e5138bb32235f83338889c714fcead1f358d3bae992d42f3196184905a44a5c010fd31485bc85c931edda954cd0aec5e8ff60bd19

  • SSDEEP

    12288:5ozA2n9dH5M2vkm0aFRv3pId9Ri9tvZJT3CqQrhryfQNRPaCieMjdvCJv1Vi0ZLS:5oFdvh1X/z

Malware Config

Signatures

  • AgentTesla payload 1 IoCs
  • Agenttesla family
  • DarkTrack payload 1 IoCs
  • Darkcomet family
  • Darktrack family
  • Detect LockFile payload 1 IoCs
  • Detected Mount Locker ransomware 1 IoCs
  • Detects Surtr Payload 1 IoCs
  • Detects Zeppelin payload 1 IoCs
  • Lockfile family
  • M00nD3v Logger payload 1 IoCs

    Detects M00nD3v Logger payload in memory.

  • M00nd3v_logger family
  • MassLogger log file 1 IoCs

    Detects a log file produced by MassLogger.

  • Masslogger family
  • Matiex Main payload 1 IoCs
  • Matiex family
  • Mountlocker family
  • Shurk Stealer payload 1 IoCs
  • Shurk family
  • StormKitty payload 1 IoCs
  • Stormkitty family
  • Surtr family
  • Vulturi family
  • Vulturi payload 1 IoCs
  • XMRig Miner payload 1 IoCs
  • Xmrig family
  • Zeppelin family

Files

  • b0e762661eabb0e1fc4a6fa1e662361986db6f8892b9ae14cb17346f8c244866