General
-
Target
f693e0739fec39b9910dfca86053c0a756f31631eed79818330ef7796f41170f
-
Size
2.8MB
-
Sample
240629-ctz16ayflc
-
MD5
8f590e98c6e7ecde08638a7fe8a2a559
-
SHA1
b7b8f19ed6d4b65a766f1aa5c9751a6826cc8e8d
-
SHA256
f693e0739fec39b9910dfca86053c0a756f31631eed79818330ef7796f41170f
-
SHA512
d97df492be9d418a17f693247579bf31a529f79788aca81357aebb4d520e3b4c7ee0183fb05c239465bc0e47a2a27c3a8b7d7780eb93978d44773a223921a60f
-
SSDEEP
49152:Z6AX9jq67rEmB7oT4PQlTD2G3mGF4b6KzgLwzc:dcYEmB7oT4m2CfF4u6gLw4
Static task
static1
Behavioral task
behavioral1
Sample
f693e0739fec39b9910dfca86053c0a756f31631eed79818330ef7796f41170f.exe
Resource
win7-20240419-en
Malware Config
Extracted
sality
http://89.119.67.154/testo5/
http://kukutrustnet777.info/home.gif
http://kukutrustnet888.info/home.gif
http://kukutrustnet987.info/home.gif
Targets
-
-
Target
f693e0739fec39b9910dfca86053c0a756f31631eed79818330ef7796f41170f
-
Size
2.8MB
-
MD5
8f590e98c6e7ecde08638a7fe8a2a559
-
SHA1
b7b8f19ed6d4b65a766f1aa5c9751a6826cc8e8d
-
SHA256
f693e0739fec39b9910dfca86053c0a756f31631eed79818330ef7796f41170f
-
SHA512
d97df492be9d418a17f693247579bf31a529f79788aca81357aebb4d520e3b4c7ee0183fb05c239465bc0e47a2a27c3a8b7d7780eb93978d44773a223921a60f
-
SSDEEP
49152:Z6AX9jq67rEmB7oT4PQlTD2G3mGF4b6KzgLwzc:dcYEmB7oT4m2CfF4u6gLw4
-
Modifies firewall policy service
-
MITRE ATT&CK Matrix ATT&CK v13
Privilege Escalation
Create or Modify System Process
1Windows Service
1Abuse Elevation Control Mechanism
1Bypass User Account Control
1