General

  • Target

    2024-06-29_878fa4c83dd903364590865d674cc4c4_wannacry

  • Size

    3.6MB

  • Sample

    240629-wd133ascpb

  • MD5

    878fa4c83dd903364590865d674cc4c4

  • SHA1

    05a9cd550ee75b6f5c5ac96bc8280ae10cecf482

  • SHA256

    4bbcdaa176fc2a414380709206beba8658811496351e19547ca4ebdb4a01646d

  • SHA512

    d14d2a930cb8b24893ed1df935c3b24d4c3931ae2b9a40590a1825995779bd0f8092a747c533668ce309934606ba1e2b97f593273c2ae6456bafdcd83cae9622

  • SSDEEP

    98304:HDqPoBhz1aRxcSUDk36SAEdhvxWa9P593R8yAVp2H:HDqPe1Cxcxk3ZAEUadzR8yc4H

Malware Config

Targets

    • Target

      2024-06-29_878fa4c83dd903364590865d674cc4c4_wannacry

    • Size

      3.6MB

    • MD5

      878fa4c83dd903364590865d674cc4c4

    • SHA1

      05a9cd550ee75b6f5c5ac96bc8280ae10cecf482

    • SHA256

      4bbcdaa176fc2a414380709206beba8658811496351e19547ca4ebdb4a01646d

    • SHA512

      d14d2a930cb8b24893ed1df935c3b24d4c3931ae2b9a40590a1825995779bd0f8092a747c533668ce309934606ba1e2b97f593273c2ae6456bafdcd83cae9622

    • SSDEEP

      98304:HDqPoBhz1aRxcSUDk36SAEdhvxWa9P593R8yAVp2H:HDqPe1Cxcxk3ZAEUadzR8yc4H

    • Wannacry

      WannaCry is a ransomware cryptoworm.

    • Contacts a large (3176) amount of remote hosts

      This may indicate a network scan to discover remotely running services.

    • Creates a large amount of network flows

      This may indicate a network scan to discover remotely running services.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Tasks