General
-
Target
Aura.exe
-
Size
343KB
-
Sample
240629-s9g4aazhqd
-
MD5
5b82f58dfef767e24021ffc205c14b18
-
SHA1
1cf35a41bc428fd46c96069dd592b81b2da558aa
-
SHA256
f45bdf5984dca63e9cb56eedf128d8a720d75df58c60d9943f859a7f5bea337a
-
SHA512
5e14390ad5526edc775fb2182e5ac101d3d0ee14ee64f4a2a15a8b3092d7afbd72ca475096257121683e69420129b1b3daf44cba3c0de9a8481a086d79182bb7
-
SSDEEP
3072:TMu8A44fzQZ4B34rke1wk1OFvGtg7BZOUXmFOwlpXsvGtg7BZGUXObOw+pb:KAMZ4c6FvT7/tmFzyvT7/FObQ
Static task
static1
Behavioral task
behavioral1
Sample
Aura.exe
Resource
win7-20240419-en
Behavioral task
behavioral2
Sample
Aura.exe
Resource
win10v2004-20240508-en
Malware Config
Targets
-
-
Target
Aura.exe
-
Size
343KB
-
MD5
5b82f58dfef767e24021ffc205c14b18
-
SHA1
1cf35a41bc428fd46c96069dd592b81b2da558aa
-
SHA256
f45bdf5984dca63e9cb56eedf128d8a720d75df58c60d9943f859a7f5bea337a
-
SHA512
5e14390ad5526edc775fb2182e5ac101d3d0ee14ee64f4a2a15a8b3092d7afbd72ca475096257121683e69420129b1b3daf44cba3c0de9a8481a086d79182bb7
-
SSDEEP
3072:TMu8A44fzQZ4B34rke1wk1OFvGtg7BZOUXmFOwlpXsvGtg7BZGUXObOw+pb:KAMZ4c6FvT7/tmFzyvT7/FObQ
Score6/10-
Looks up external IP address via web service
Uses a legitimate IP lookup service to find the infected system's external IP.
-