General

  • Target

    2024-06-27_b9e765df2f9befdafe254255d9670323_ryuk

  • Size

    2.3MB

  • Sample

    240627-mp375axane

  • MD5

    b9e765df2f9befdafe254255d9670323

  • SHA1

    ebba36fa976838f8220e8f8f5cea63767a32ebff

  • SHA256

    50618a3c5498f6dbc86241bbcf0fe8e0b02c0a27b63c9d50274abe41c2778ca0

  • SHA512

    ba0e39379f428665b6df301886e825c81c8b81fd971ca1474afa04f638fd2e1c7678ce6e850319ba746930795ca6e8b9314275f86678a0cca1baf3839683a153

  • SSDEEP

    49152:UosQHMmpQAaR824OnqDPqFmhlyjsrrJLp2lUEFP4+Po6kk:u4O2P5JLQlVt4ib

Score
10/10

Malware Config

Extracted

Family

gozi

Targets

    • Target

      2024-06-27_b9e765df2f9befdafe254255d9670323_ryuk

    • Size

      2.3MB

    • MD5

      b9e765df2f9befdafe254255d9670323

    • SHA1

      ebba36fa976838f8220e8f8f5cea63767a32ebff

    • SHA256

      50618a3c5498f6dbc86241bbcf0fe8e0b02c0a27b63c9d50274abe41c2778ca0

    • SHA512

      ba0e39379f428665b6df301886e825c81c8b81fd971ca1474afa04f638fd2e1c7678ce6e850319ba746930795ca6e8b9314275f86678a0cca1baf3839683a153

    • SSDEEP

      49152:UosQHMmpQAaR824OnqDPqFmhlyjsrrJLp2lUEFP4+Po6kk:u4O2P5JLQlVt4ib

    Score
    10/10
    • Gozi

      Gozi is a well-known and widely distributed banking trojan.

MITRE ATT&CK Matrix

Tasks