Analysis
-
max time kernel
120s -
max time network
123s -
platform
windows7_x64 -
resource
win7-20240611-en -
resource tags
arch:x64arch:x86image:win7-20240611-enlocale:en-usos:windows7-x64system -
submitted
26-06-2024 01:31
Static task
static1
Behavioral task
behavioral1
Sample
b832c506b67eec0abcadfb114d0d0f1bd67a9b5106189e276192ce8344f477a0.exe
Resource
win7-20240611-en
Behavioral task
behavioral2
Sample
b832c506b67eec0abcadfb114d0d0f1bd67a9b5106189e276192ce8344f477a0.exe
Resource
win10v2004-20240508-en
General
-
Target
b832c506b67eec0abcadfb114d0d0f1bd67a9b5106189e276192ce8344f477a0.exe
-
Size
322KB
-
MD5
e4be3c4892b6f0b3719a62e8272f2d2d
-
SHA1
da24fd8e4596ad7e2741da187f1fdad9ad22c9ba
-
SHA256
b832c506b67eec0abcadfb114d0d0f1bd67a9b5106189e276192ce8344f477a0
-
SHA512
6f4cf511a93550ff11bf2456c45ec19a82522f5b03d27e039d1253a9f5d8fc0cf7d137387c995fa6bbc727900d44ccc4b1705c38e18ad21f672a28dc6794362c
-
SSDEEP
3072:effKLkgRFLDRyC9B+Dx+4pYxbw86kvne5X8zPrhY7iiW1nzyDi7u:efCLlRlDUKEvp2bx148z1Y7i9neDi
Malware Config
Extracted
smokeloader
pub3
Signatures
-
SmokeLoader
Modular backdoor trojan in use since 2014.
Processes
Network
MITRE ATT&CK Matrix
Replay Monitor
Loading Replay Monitor...
Downloads
-
memory/2916-3-0x00000000001B0000-0x00000000001BB000-memory.dmpFilesize
44KB
-
memory/2916-4-0x0000000000400000-0x000000000040B000-memory.dmpFilesize
44KB
-
memory/2916-2-0x00000000002F0000-0x00000000003F0000-memory.dmpFilesize
1024KB
-
memory/2916-1-0x0000000000400000-0x000000000273E000-memory.dmpFilesize
35.2MB