General

  • Target

    3925e30d08985aeda1bac840f818a99cb2d8932990df4b61f83d45a9211bdeb4

  • Size

    248KB

  • Sample

    240630-bc51ea1cpg

  • MD5

    7525594d79c87084638f6bf8dbfca6f6

  • SHA1

    d8bd690721b9cba1afe6813db14eab1e61de4d88

  • SHA256

    3925e30d08985aeda1bac840f818a99cb2d8932990df4b61f83d45a9211bdeb4

  • SHA512

    be43002b10e6c31e0f81236e371647b1875b92155e12c8e3666ce41e5b72778e4c85c3e6038a6b35827fa9e7ebe3907c59264a462d1539341f5639cc00dd4cb3

  • SSDEEP

    3072:FR/oEbRSM8amGmXNL30yL4AEMUL4umEYaRF1ahPcz8MUrKbA/F5I/RRKuOyGRfAa:PURF0qUcLEFjaPMPqH7opIGTIFsV

Score
10/10

Malware Config

Extracted

Family

agenttesla

Credentials

  • Protocol:
    ftp
  • Host:
    ftp://ftp.code-jet.com
  • Port:
    21
  • Username:
    [email protected]
  • Password:
    F$T3)1@zYr&V

Targets

    • Target

      3925e30d08985aeda1bac840f818a99cb2d8932990df4b61f83d45a9211bdeb4

    • Size

      248KB

    • MD5

      7525594d79c87084638f6bf8dbfca6f6

    • SHA1

      d8bd690721b9cba1afe6813db14eab1e61de4d88

    • SHA256

      3925e30d08985aeda1bac840f818a99cb2d8932990df4b61f83d45a9211bdeb4

    • SHA512

      be43002b10e6c31e0f81236e371647b1875b92155e12c8e3666ce41e5b72778e4c85c3e6038a6b35827fa9e7ebe3907c59264a462d1539341f5639cc00dd4cb3

    • SSDEEP

      3072:FR/oEbRSM8amGmXNL30yL4AEMUL4umEYaRF1ahPcz8MUrKbA/F5I/RRKuOyGRfAa:PURF0qUcLEFjaPMPqH7opIGTIFsV

    Score
    3/10

MITRE ATT&CK Matrix ATT&CK v13

Discovery

System Information Discovery

2
T1082

Query Registry

1
T1012

Tasks