General
-
Target
194a76e0daa72422465be0b19a6dd9190e19aac8275f1fb5b5f9a11c127c1bd4
-
Size
5.5MB
-
Sample
240628-hq1q6swglh
-
MD5
696b50addc5af70d96b83765bc199874
-
SHA1
1cdcd80dd39ae39c1c37500cc945b1760db7814c
-
SHA256
194a76e0daa72422465be0b19a6dd9190e19aac8275f1fb5b5f9a11c127c1bd4
-
SHA512
1df07a19d823811430573c2af623efa4b352db2d45b6052900e10b92c2c04cc41be8d4242dbc2b73f413d1bc42ae51b808b505ca48518e37386bf19afabf7b4f
-
SSDEEP
98304:CaZ/cXIn+BGPoTn+U4Ll3VHmWSw8S0RiuA0Xgg/rrWTjm7NZEcERwzFrAyZFwF7N:PZU++BB4p5cwLfuA0/rrroXwzFrHZedN
Static task
static1
Behavioral task
behavioral1
Sample
194a76e0daa72422465be0b19a6dd9190e19aac8275f1fb5b5f9a11c127c1bd4.exe
Resource
win10v2004-20240226-en
Behavioral task
behavioral2
Sample
194a76e0daa72422465be0b19a6dd9190e19aac8275f1fb5b5f9a11c127c1bd4.exe
Resource
win11-20240508-en
Malware Config
Targets
-
-
Target
194a76e0daa72422465be0b19a6dd9190e19aac8275f1fb5b5f9a11c127c1bd4
-
Size
5.5MB
-
MD5
696b50addc5af70d96b83765bc199874
-
SHA1
1cdcd80dd39ae39c1c37500cc945b1760db7814c
-
SHA256
194a76e0daa72422465be0b19a6dd9190e19aac8275f1fb5b5f9a11c127c1bd4
-
SHA512
1df07a19d823811430573c2af623efa4b352db2d45b6052900e10b92c2c04cc41be8d4242dbc2b73f413d1bc42ae51b808b505ca48518e37386bf19afabf7b4f
-
SSDEEP
98304:CaZ/cXIn+BGPoTn+U4Ll3VHmWSw8S0RiuA0Xgg/rrWTjm7NZEcERwzFrAyZFwF7N:PZU++BB4p5cwLfuA0/rrroXwzFrHZedN
Score10/10-
Detect Socks5Systemz Payload
-
Executes dropped EXE
-
Loads dropped DLL
-
Unexpected DNS network traffic destination
Network traffic to other servers than the configured DNS servers was detected on the DNS port.
-
Checks installed software on the system
Looks up Uninstall key entries in the registry to enumerate software on the system.
-