General

  • Target

    New Text Document.txt

  • Size

    69B

  • Sample

    240628-y449hstgjk

  • MD5

    5c207a599a8a193a7bce72ce40ff109d

  • SHA1

    15f533c6328d566ffee35bd51c5eeca4621cece2

  • SHA256

    6128b275e49380b582d28428f617e1445462408b8bf79c12c1fcfbdfbb71e974

  • SHA512

    57401929d5f55b9cb0b4c973b374dd1a2cb4e7922bf984469c9486dce32dfe60c8068de01710e5d74312959dee2ee385fcf99256cac8f850aeaf9b69f62ff44d

Score
10/10

Malware Config

Targets

    • Target

      New Text Document.txt

    • Size

      69B

    • MD5

      5c207a599a8a193a7bce72ce40ff109d

    • SHA1

      15f533c6328d566ffee35bd51c5eeca4621cece2

    • SHA256

      6128b275e49380b582d28428f617e1445462408b8bf79c12c1fcfbdfbb71e974

    • SHA512

      57401929d5f55b9cb0b4c973b374dd1a2cb4e7922bf984469c9486dce32dfe60c8068de01710e5d74312959dee2ee385fcf99256cac8f850aeaf9b69f62ff44d

    Score
    10/10
    • Darkcomet

      DarkComet is a remote access trojan (RAT) developed by Jean-Pierre Lesueur.

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

1
T1082

Tasks