General

  • Target

    Silver Rat [Re Lab].zip

  • Size

    18.9MB

  • Sample

    240627-f643esxckq

  • MD5

    3c73ac95a260d8aedc89c5d0f02e2269

  • SHA1

    365cc34c142087a23e8091bda5d0e8a3010065e1

  • SHA256

    9e7f41fd174c2f47df52b296d99993f4210a87206bcb8f8a75407ba9e9ad18e9

  • SHA512

    aeef9b7f2ea6bb78e8a6fe121f9830bf7e847124b0c2fe669b12de73a2524fdc0d3b691d85d3e96cfd0498d1894a58e2c81207cb7d9f840382f2ebb99c1b8537

  • SSDEEP

    393216:9tfKwh1bxFhbzwzYR9HiyHwzzdjWmzkPRXzI5plSqeSVIC52f3Kd:r/F9Fqndv+dIBS4WCa3Kd

Score
7/10

Malware Config

Targets

    • Target

      Silver Rat [Re Lab]/SilverRat.exe

    • Size

      25.2MB

    • MD5

      d6527f7d5f5152c3f5fff6786e5c1606

    • SHA1

      e8da82b4a3d2b6bee04236162e5e46e636310ec6

    • SHA256

      79a4605d24d32f992d8e144202e980bb6b52bf8c9925b1498a1da59e50ac51f9

    • SHA512

      2b4eb9e66028d263c52b3da42fa3df256cf49cd7a7ebdf7c75da6a2dedfd2c22cb5f2071345b7016cd742539c74a801cad70c612330be79802fa19f860ea2d5f

    • SSDEEP

      786432:SZYRGnGvovVvAuuglekvAR4vzHcv6lHGH9KdDmvQuLGgJMKV+n9n1vgvVv2jlv1S:Ik79a

    Score
    7/10
    • Obfuscated with Agile.Net obfuscator

      Detects use of the Agile.Net commercial obfuscator, which is capable of entity renaming and control flow obfuscation.

MITRE ATT&CK Matrix ATT&CK v13

Defense Evasion

Modify Registry

1
T1112

Discovery

Query Registry

1
T1012

System Information Discovery

1
T1082

Tasks