General

  • Target

    123.jar

  • Size

    639KB

  • Sample

    240630-a9b8xsvalk

  • MD5

    753ad93af4825de0d055814863f48ac6

  • SHA1

    f0886ea1f25043ebdb32c86d74f69baf27a2cd43

  • SHA256

    66da62642bf619ed4edb8d2dee9595f574664e6d34ae7a0006176064c70100a4

  • SHA512

    06b226bc9466367696811e13f3999c9fcc961c98081fbef2594f9fa4f227e9606abeb72ccc95e3dc71616123c5d594e5f5ea2d374ef63e93e6c4f60f7d8e1abe

  • SSDEEP

    12288:6LrlQl/X3RQnp4plIhwbgy/PRT+p30NenegStyR5I3Uu421ASO1DcT:6LZQVRQp4LjbgyRuWennUxUu11bO1DcT

Score
10/10

Malware Config

Targets

    • Target

      123.jar

    • Size

      639KB

    • MD5

      753ad93af4825de0d055814863f48ac6

    • SHA1

      f0886ea1f25043ebdb32c86d74f69baf27a2cd43

    • SHA256

      66da62642bf619ed4edb8d2dee9595f574664e6d34ae7a0006176064c70100a4

    • SHA512

      06b226bc9466367696811e13f3999c9fcc961c98081fbef2594f9fa4f227e9606abeb72ccc95e3dc71616123c5d594e5f5ea2d374ef63e93e6c4f60f7d8e1abe

    • SSDEEP

      12288:6LrlQl/X3RQnp4plIhwbgy/PRT+p30NenegStyR5I3Uu421ASO1DcT:6LZQVRQp4LjbgyRuWennUxUu11bO1DcT

    Score
    7/10
    • Modifies file permissions

    • Legitimate hosting services abused for malware hosting/C2

MITRE ATT&CK Matrix ATT&CK v13

Defense Evasion

File and Directory Permissions Modification

1
T1222

Command and Control

Web Service

1
T1102

Tasks