Analysis
-
max time kernel
118s -
max time network
119s -
platform
windows7_x64 -
resource
win7-20240221-en -
resource tags
arch:x64arch:x86image:win7-20240221-enlocale:en-usos:windows7-x64system -
submitted
30-06-2024 00:25
Static task
static1
Behavioral task
behavioral1
Sample
d40f52a4cf0bde32510c95999b74997d570dccf5853213305adefbd299ebe6c4.exe
Resource
win7-20240221-en
Behavioral task
behavioral2
Sample
d40f52a4cf0bde32510c95999b74997d570dccf5853213305adefbd299ebe6c4.exe
Resource
win10v2004-20240508-en
General
-
Target
d40f52a4cf0bde32510c95999b74997d570dccf5853213305adefbd299ebe6c4.exe
-
Size
2.8MB
-
MD5
62cfd7331388a4785637ba6f34c65a47
-
SHA1
3f49889192aefac72c341a8df7f19f0d58f43e3f
-
SHA256
d40f52a4cf0bde32510c95999b74997d570dccf5853213305adefbd299ebe6c4
-
SHA512
c4d00fd3cbab35f58c8d7eb80b12431763b0e9017c21357f5c1392a2b9c5272bcaa55d1565c7f1c8c9ed1e52299fc3b86f05cb20420f35b58e8d55c97a8ac1c9
-
SSDEEP
49152:4U1c71FP6boln1/x9AH9AAe4rB4RD3DaPxrljHCcxOjzC3t:Rc715l5x9AH9NeqBcDTiCh
Malware Config
Signatures
-
Writes to the Master Boot Record (MBR) 1 TTPs 1 IoCs
Bootkits write to the MBR to gain persistence at a level below the operating system.
Processes:
d40f52a4cf0bde32510c95999b74997d570dccf5853213305adefbd299ebe6c4.exedescription ioc process File opened for modification \??\PhysicalDrive0 d40f52a4cf0bde32510c95999b74997d570dccf5853213305adefbd299ebe6c4.exe