Analysis

  • max time kernel
    140s
  • max time network
    119s
  • platform
    windows7_x64
  • resource
    win7-20240220-en
  • resource tags

    arch:x64arch:x86image:win7-20240220-enlocale:en-usos:windows7-x64system
  • submitted
    28-06-2024 18:22

General

  • Target

    ytmp3free.cc_lil-darkie-la-la-underbelly-prod-triplesixdelete-music-video-youtubemp3free.org.mp3

  • Size

    1.5MB

  • MD5

    a4a61077b8c3a995405bb1c4ec71bd07

  • SHA1

    d634654e44648d952403f10ffd7b947f7312896c

  • SHA256

    40aa5358f0d279ebbb2632d3efc3ca315beb94a62329c61a4f6330dc4b1b30b3

  • SHA512

    0685989564b01b0423f768b42d50b6ea4287287584158b2fd58912e057dccf02247dfc78d89f6c2f16cd0e638e225c2f997592164ec418e894646a52f35c8b55

  • SSDEEP

    24576:4YLjBF00JPBO7lg7cXqp01YcUBxGrUsjv8oSfDjYIXlX40PnbLRthC7jjVNd+EQ3:bMQ2lg7+a01LmDjnXlocbXAVGwuH

Score
1/10

Malware Config

Signatures

  • Suspicious behavior: AddClipboardFormatListener 1 IoCs
  • Suspicious behavior: GetForegroundWindowSpam 1 IoCs
  • Suspicious use of AdjustPrivilegeToken 2 IoCs
  • Suspicious use of FindShellTrayWindow 9 IoCs
  • Suspicious use of SendNotifyMessage 8 IoCs
  • Suspicious use of SetWindowsHookEx 1 IoCs

Processes

  • C:\Program Files\VideoLAN\VLC\vlc.exe
    "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file "C:\Users\Admin\AppData\Local\Temp\ytmp3free.cc_lil-darkie-la-la-underbelly-prod-triplesixdelete-music-video-youtubemp3free.org.mp3"
    1⤵
    • Suspicious behavior: AddClipboardFormatListener
    • Suspicious behavior: GetForegroundWindowSpam
    • Suspicious use of AdjustPrivilegeToken
    • Suspicious use of FindShellTrayWindow
    • Suspicious use of SendNotifyMessage
    • Suspicious use of SetWindowsHookEx
    PID:1992

Network

MITRE ATT&CK Matrix

Replay Monitor

Loading Replay Monitor...

Downloads

  • memory/1992-6-0x000007FEF7B40000-0x000007FEF7B74000-memory.dmp
    Filesize

    208KB

  • memory/1992-5-0x000000013F920000-0x000000013FA18000-memory.dmp
    Filesize

    992KB

  • memory/1992-12-0x000007FEF6D20000-0x000007FEF6D31000-memory.dmp
    Filesize

    68KB

  • memory/1992-14-0x000007FEF61C0000-0x000007FEF61D1000-memory.dmp
    Filesize

    68KB

  • memory/1992-7-0x000007FEF5AB0000-0x000007FEF5D64000-memory.dmp
    Filesize

    2.7MB

  • memory/1992-13-0x000007FEF6D00000-0x000007FEF6D1D000-memory.dmp
    Filesize

    116KB

  • memory/1992-11-0x000007FEF6D40000-0x000007FEF6D57000-memory.dmp
    Filesize

    92KB

  • memory/1992-10-0x000007FEF7B20000-0x000007FEF7B31000-memory.dmp
    Filesize

    68KB

  • memory/1992-9-0x000007FEFA340000-0x000007FEFA357000-memory.dmp
    Filesize

    92KB

  • memory/1992-8-0x000007FEFAED0000-0x000007FEFAEE8000-memory.dmp
    Filesize

    96KB

  • memory/1992-18-0x000007FEF6130000-0x000007FEF6148000-memory.dmp
    Filesize

    96KB

  • memory/1992-15-0x000007FEF58B0000-0x000007FEF5AB0000-memory.dmp
    Filesize

    2.0MB

  • memory/1992-25-0x000007FEF5800000-0x000007FEF5830000-memory.dmp
    Filesize

    192KB

  • memory/1992-24-0x000007FEF5830000-0x000007FEF5848000-memory.dmp
    Filesize

    96KB

  • memory/1992-23-0x000007FEF5850000-0x000007FEF5861000-memory.dmp
    Filesize

    68KB

  • memory/1992-22-0x000007FEF5870000-0x000007FEF588B000-memory.dmp
    Filesize

    108KB

  • memory/1992-21-0x000007FEF5890000-0x000007FEF58A1000-memory.dmp
    Filesize

    68KB

  • memory/1992-20-0x000007FEF60F0000-0x000007FEF6101000-memory.dmp
    Filesize

    68KB

  • memory/1992-19-0x000007FEF6110000-0x000007FEF6121000-memory.dmp
    Filesize

    68KB

  • memory/1992-17-0x000007FEF6150000-0x000007FEF6171000-memory.dmp
    Filesize

    132KB

  • memory/1992-16-0x000007FEF6180000-0x000007FEF61BF000-memory.dmp
    Filesize

    252KB

  • memory/1992-31-0x000007FEF4610000-0x000007FEF4621000-memory.dmp
    Filesize

    68KB

  • memory/1992-35-0x000007FEF4540000-0x000007FEF4551000-memory.dmp
    Filesize

    68KB

  • memory/1992-37-0x000007FEF28C0000-0x000007FEF2916000-memory.dmp
    Filesize

    344KB

  • memory/1992-45-0x000007FEF26C0000-0x000007FEF26D5000-memory.dmp
    Filesize

    84KB

  • memory/1992-47-0x000007FEF2660000-0x000007FEF2672000-memory.dmp
    Filesize

    72KB

  • memory/1992-26-0x000007FEF4750000-0x000007FEF57FB000-memory.dmp
    Filesize

    16.7MB

  • memory/1992-48-0x000007FEF24E0000-0x000007FEF265A000-memory.dmp
    Filesize

    1.5MB

  • memory/1992-46-0x000007FEF2680000-0x000007FEF2691000-memory.dmp
    Filesize

    68KB

  • memory/1992-44-0x000007FEF26E0000-0x000007FEF274D000-memory.dmp
    Filesize

    436KB

  • memory/1992-43-0x000007FEF2750000-0x000007FEF27B2000-memory.dmp
    Filesize

    392KB

  • memory/1992-42-0x000007FEF27C0000-0x000007FEF2835000-memory.dmp
    Filesize

    468KB

  • memory/1992-41-0x000007FEF2840000-0x000007FEF2856000-memory.dmp
    Filesize

    88KB

  • memory/1992-40-0x000007FEFA390000-0x000007FEFA3A0000-memory.dmp
    Filesize

    64KB

  • memory/1992-39-0x000007FEF2860000-0x000007FEF2884000-memory.dmp
    Filesize

    144KB

  • memory/1992-38-0x000007FEF2890000-0x000007FEF28B8000-memory.dmp
    Filesize

    160KB

  • memory/1992-36-0x000007FEF4470000-0x000007FEF4535000-memory.dmp
    Filesize

    788KB

  • memory/1992-34-0x000007FEF4560000-0x000007FEF4573000-memory.dmp
    Filesize

    76KB

  • memory/1992-33-0x000007FEF4580000-0x000007FEF45AF000-memory.dmp
    Filesize

    188KB

  • memory/1992-32-0x000007FEF45B0000-0x000007FEF4607000-memory.dmp
    Filesize

    348KB

  • memory/1992-30-0x000007FEF4630000-0x000007FEF4647000-memory.dmp
    Filesize

    92KB

  • memory/1992-29-0x000007FEF4650000-0x000007FEF4661000-memory.dmp
    Filesize

    68KB

  • memory/1992-28-0x000007FEF4670000-0x000007FEF46DF000-memory.dmp
    Filesize

    444KB

  • memory/1992-27-0x000007FEF46E0000-0x000007FEF4747000-memory.dmp
    Filesize

    412KB

  • memory/1992-51-0x000007FEF5AB0000-0x000007FEF5D64000-memory.dmp
    Filesize

    2.7MB