General

  • Target

    https://ddec1-0-en-ctp.trendmicro.com/wis/clicktime/v1/query?url=https%3a%2f%2fwww.cvent.com%2fs.aspx%3f5Q%2cP1%2cd45f88c9%2dc2e5%2d44e6%2d860c%2d4cb6e4bb678d%2cR1%2c44df4148%2ded4b%2d40d7%2d8a94%2d047508707e60%2cS1%2cinfo.krakow%40parkinn.com&umid=75bf6d2a-567e-4354-831a-9ada4acbac17&auth=3262a64ff51ed7015b9fc7a2051c8e354164257c-d6446b170c830180129df20c86f041e79d373a30

  • Sample

    240628-nd6pjswgkh

Score
8/10

Malware Config

Targets

    • Target

      https://ddec1-0-en-ctp.trendmicro.com/wis/clicktime/v1/query?url=https%3a%2f%2fwww.cvent.com%2fs.aspx%3f5Q%2cP1%2cd45f88c9%2dc2e5%2d44e6%2d860c%2d4cb6e4bb678d%2cR1%2c44df4148%2ded4b%2d40d7%2d8a94%2d047508707e60%2cS1%2cinfo.krakow%40parkinn.com&umid=75bf6d2a-567e-4354-831a-9ada4acbac17&auth=3262a64ff51ed7015b9fc7a2051c8e354164257c-d6446b170c830180129df20c86f041e79d373a30

    Score
    6/10
    • Looks up external IP address via web service

      Uses a legitimate IP lookup service to find the infected system's external IP.

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

1
T1082

Tasks