General
-
Target
1da56a5f2bbdc5215305e5e397bd3ed926f44520e145aa7bf2e6785b33f381e6.exe
-
Size
516KB
-
Sample
240628-bjxmlsvfrl
-
MD5
0c341e00d3027a4a6ea5438f37f06677
-
SHA1
60717e853262eeae53ccc87da6940adb73aa9ce2
-
SHA256
1da56a5f2bbdc5215305e5e397bd3ed926f44520e145aa7bf2e6785b33f381e6
-
SHA512
2209fc9c45f7f985250f0aa31229a9c75e72ad6619e38474717cb8b041f59f43b2aa66a125268c41dafe80508588a1bc5a2f87fe69b5b0acdbb47338da36ab46
-
SSDEEP
12288:hPyRu80u5xzuq1GFsJl6pzndWxkgzPxnFYO:Byyu3zXSNd/gz7
Behavioral task
behavioral1
Sample
1da56a5f2bbdc5215305e5e397bd3ed926f44520e145aa7bf2e6785b33f381e6.exe
Resource
win7-20240221-en
Behavioral task
behavioral2
Sample
1da56a5f2bbdc5215305e5e397bd3ed926f44520e145aa7bf2e6785b33f381e6.exe
Resource
win10v2004-20240508-en
Malware Config
Targets
-
-
Target
1da56a5f2bbdc5215305e5e397bd3ed926f44520e145aa7bf2e6785b33f381e6.exe
-
Size
516KB
-
MD5
0c341e00d3027a4a6ea5438f37f06677
-
SHA1
60717e853262eeae53ccc87da6940adb73aa9ce2
-
SHA256
1da56a5f2bbdc5215305e5e397bd3ed926f44520e145aa7bf2e6785b33f381e6
-
SHA512
2209fc9c45f7f985250f0aa31229a9c75e72ad6619e38474717cb8b041f59f43b2aa66a125268c41dafe80508588a1bc5a2f87fe69b5b0acdbb47338da36ab46
-
SSDEEP
12288:hPyRu80u5xzuq1GFsJl6pzndWxkgzPxnFYO:Byyu3zXSNd/gz7
Score10/10-
RedLine
RedLine Stealer is a malware family written in C#, first appearing in early 2020.
-
RedLine payload
-
Detects executables packed with Babel
-
Checks installed software on the system
Looks up Uninstall key entries in the registry to enumerate software on the system.
-