General

  • Target

    d6290657a4041d1f0ee647eb42a90aa0cde1c9c81fa3bc51b73f72fa58dce462

  • Size

    154KB

  • Sample

    240629-dzhvhatamr

  • MD5

    1c5909b8aa9e8dcf7c625a18879eaa9a

  • SHA1

    29cfd468ee12d9746aeb935b8a30e7ee609ae3e5

  • SHA256

    d6290657a4041d1f0ee647eb42a90aa0cde1c9c81fa3bc51b73f72fa58dce462

  • SHA512

    b94ebf34fb81fc37564513a5671c2a936d9f5d3293ce5a8d451b41d857fd1c27d1b2e3efdfc48c39e1b66af6b57789d5115e79eaa10b170cf54f69011ed3bd09

  • SSDEEP

    3072:GElIePztdwiyKaZP1Pgu6Pb7ZlSkBAU2J5mkAuPb14qla4o0aZu7vmEtazVjDo:JlR0iYV0fSiufmkAEh4qlaoa0zmE0zV3

Score
10/10

Malware Config

Targets

    • Target

      d6290657a4041d1f0ee647eb42a90aa0cde1c9c81fa3bc51b73f72fa58dce462

    • Size

      154KB

    • MD5

      1c5909b8aa9e8dcf7c625a18879eaa9a

    • SHA1

      29cfd468ee12d9746aeb935b8a30e7ee609ae3e5

    • SHA256

      d6290657a4041d1f0ee647eb42a90aa0cde1c9c81fa3bc51b73f72fa58dce462

    • SHA512

      b94ebf34fb81fc37564513a5671c2a936d9f5d3293ce5a8d451b41d857fd1c27d1b2e3efdfc48c39e1b66af6b57789d5115e79eaa10b170cf54f69011ed3bd09

    • SSDEEP

      3072:GElIePztdwiyKaZP1Pgu6Pb7ZlSkBAU2J5mkAuPb14qla4o0aZu7vmEtazVjDo:JlR0iYV0fSiufmkAEh4qlaoa0zmE0zV3

    Score
    9/10
    • Detects executables packed with VMProtect.

    • VMProtect packed file

      Detects executables packed with VMProtect commercial packer.

    • Suspicious use of NtSetInformationThreadHideFromDebugger

MITRE ATT&CK Matrix

Tasks