General
-
Target
0a35e36a6609dd0acd06504b76be615526f588773d5ca8e6606c6bb81a6e3160
-
Size
982KB
-
Sample
240629-cyh87syglc
-
MD5
808ca59d1bc7a9186dc030412b497ab5
-
SHA1
ffd9b8d7ad4690395e7e06ad6dc512515964171e
-
SHA256
0a35e36a6609dd0acd06504b76be615526f588773d5ca8e6606c6bb81a6e3160
-
SHA512
7992db9d34ed2af8e24884ddaf03beb33fd1b5e14bda9c645c523e0c275eb2c4680e8d756d23fae80af0880cb8e327b11711b764870e468ab8203080d4e547c0
-
SSDEEP
24576:5D1y0fHcTnUUc7/WUSKe8mqz0auXS64ae7egLX96:y0dbuo0a763e7RI
Static task
static1
Behavioral task
behavioral1
Sample
0a35e36a6609dd0acd06504b76be615526f588773d5ca8e6606c6bb81a6e3160.exe
Resource
win7-20240611-en
Malware Config
Extracted
sality
http://89.119.67.154/testo5/
http://kukutrustnet777.info/home.gif
http://kukutrustnet888.info/home.gif
http://kukutrustnet987.info/home.gif
Targets
-
-
Target
0a35e36a6609dd0acd06504b76be615526f588773d5ca8e6606c6bb81a6e3160
-
Size
982KB
-
MD5
808ca59d1bc7a9186dc030412b497ab5
-
SHA1
ffd9b8d7ad4690395e7e06ad6dc512515964171e
-
SHA256
0a35e36a6609dd0acd06504b76be615526f588773d5ca8e6606c6bb81a6e3160
-
SHA512
7992db9d34ed2af8e24884ddaf03beb33fd1b5e14bda9c645c523e0c275eb2c4680e8d756d23fae80af0880cb8e327b11711b764870e468ab8203080d4e547c0
-
SSDEEP
24576:5D1y0fHcTnUUc7/WUSKe8mqz0auXS64ae7egLX96:y0dbuo0a763e7RI
-
Modifies firewall policy service
-
MITRE ATT&CK Matrix ATT&CK v13
Privilege Escalation
Create or Modify System Process
1Windows Service
1Abuse Elevation Control Mechanism
1Bypass User Account Control
1