General

  • Target

    wave-binaries

  • Size

    247KB

  • Sample

    240630-dwadystaph

  • MD5

    57b66643ff1b10d3d123caa6c0bf9d7d

  • SHA1

    586c7cba4bf580578dd6c11f9f774b05e8ebf4c9

  • SHA256

    dd7e1e15b985cc253c52743f96ed476c3b4a701ed2f2ee522fbddcf8e62dac43

  • SHA512

    edb540d473e62a01fc31152c82b908ce424b1c359850945231989a561aef8367bce7478c0e781703651db85036264db4f771b12b622ff8f911aa690702084d2e

  • SSDEEP

    6144:aDUoQ62n9dH5M2vkm0y3Cl3pId9Rc9JvZJT3CqbMrhryfQNRPaCieMjAkvCJv1V4:CUoQ62n9dH5M2vkm0y3Cl3pId9Rc9Jvb

Malware Config

Targets

    • Target

      wave-binaries

    • Size

      247KB

    • MD5

      57b66643ff1b10d3d123caa6c0bf9d7d

    • SHA1

      586c7cba4bf580578dd6c11f9f774b05e8ebf4c9

    • SHA256

      dd7e1e15b985cc253c52743f96ed476c3b4a701ed2f2ee522fbddcf8e62dac43

    • SHA512

      edb540d473e62a01fc31152c82b908ce424b1c359850945231989a561aef8367bce7478c0e781703651db85036264db4f771b12b622ff8f911aa690702084d2e

    • SSDEEP

      6144:aDUoQ62n9dH5M2vkm0y3Cl3pId9Rc9JvZJT3CqbMrhryfQNRPaCieMjAkvCJv1V4:CUoQ62n9dH5M2vkm0y3Cl3pId9Rc9Jvb

    • Downloads MZ/PE file

    • Executes dropped EXE

    • Detected potential entity reuse from brand microsoft.

MITRE ATT&CK Matrix ATT&CK v13

Execution

Command and Scripting Interpreter

1
T1059

JavaScript

1
T1059.007

Discovery

Query Registry

1
T1012

System Information Discovery

1
T1082

Tasks