General

  • Target

    3887b18a1d046a342165c0e01476140faff5f90a9d6ad097fd061a76eb024baf

  • Size

    894KB

  • Sample

    240627-2n6zyswanb

  • MD5

    99b16423b9a614ed69ed0bea12f5848b

  • SHA1

    4561ecccc3a834c8aeb6bb64191dc11518623bfb

  • SHA256

    3887b18a1d046a342165c0e01476140faff5f90a9d6ad097fd061a76eb024baf

  • SHA512

    995767aa0ec571dcb75105cb3e0820dc2ddc03fd9b778d7df4b2af7f7c815843ada3be3d233c30d997b8af9007a904d1d64bdd6dbc490cf5dc6353bbcedb5f87

  • SSDEEP

    12288:1qDEvFo+yo4DdbbMWu/jrQu4M9lBAlKhQcDGB3cuBNGE6iOrpfe4JdaDga4Tu:1qDEvCTbMWu7rQYlBQcBiT6rprG8aAu

Score
10/10

Malware Config

Targets

    • Target

      3887b18a1d046a342165c0e01476140faff5f90a9d6ad097fd061a76eb024baf

    • Size

      894KB

    • MD5

      99b16423b9a614ed69ed0bea12f5848b

    • SHA1

      4561ecccc3a834c8aeb6bb64191dc11518623bfb

    • SHA256

      3887b18a1d046a342165c0e01476140faff5f90a9d6ad097fd061a76eb024baf

    • SHA512

      995767aa0ec571dcb75105cb3e0820dc2ddc03fd9b778d7df4b2af7f7c815843ada3be3d233c30d997b8af9007a904d1d64bdd6dbc490cf5dc6353bbcedb5f87

    • SSDEEP

      12288:1qDEvFo+yo4DdbbMWu/jrQu4M9lBAlKhQcDGB3cuBNGE6iOrpfe4JdaDga4Tu:1qDEvCTbMWu7rQYlBQcBiT6rprG8aAu

    Score
    10/10
    • Detected google phishing page

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

MITRE ATT&CK Matrix ATT&CK v13

Defense Evasion

Modify Registry

1
T1112

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks