General

  • Target

    61eaa42cfc7599b5e23af803a29660165d2ea5902eb5fa851fc429dc86840284

  • Size

    1.0MB

  • Sample

    240630-f3ey5atgph

  • MD5

    1522adb30c620eed9a2462d291a405d8

  • SHA1

    53fb119af6d5e8e9cacb90bff617e152258e6323

  • SHA256

    61eaa42cfc7599b5e23af803a29660165d2ea5902eb5fa851fc429dc86840284

  • SHA512

    90609e5911881a98575424579d5769580ba254c116d617aebbf6ad7dc616e322ef8fa3e3d05954523aeadf99df7d54fcba35467db1d32991f395d5f07b115853

  • SSDEEP

    24576:xJBQUgMKvEm3RAJvq8zXNghKYuKHQzsDDIZMyHty5B7eSdP:xJBXHjmW3j+DuSQYHIZLoQSdP

Malware Config

Targets

    • Target

      61eaa42cfc7599b5e23af803a29660165d2ea5902eb5fa851fc429dc86840284

    • Size

      1.0MB

    • MD5

      1522adb30c620eed9a2462d291a405d8

    • SHA1

      53fb119af6d5e8e9cacb90bff617e152258e6323

    • SHA256

      61eaa42cfc7599b5e23af803a29660165d2ea5902eb5fa851fc429dc86840284

    • SHA512

      90609e5911881a98575424579d5769580ba254c116d617aebbf6ad7dc616e322ef8fa3e3d05954523aeadf99df7d54fcba35467db1d32991f395d5f07b115853

    • SSDEEP

      24576:xJBQUgMKvEm3RAJvq8zXNghKYuKHQzsDDIZMyHty5B7eSdP:xJBXHjmW3j+DuSQYHIZLoQSdP

    • Checks installed software on the system

      Looks up Uninstall key entries in the registry to enumerate software on the system.

    • Writes to the Master Boot Record (MBR)

      Bootkits write to the MBR to gain persistence at a level below the operating system.

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Pre-OS Boot

1
T1542

Bootkit

1
T1542.003

Defense Evasion

Pre-OS Boot

1
T1542

Bootkit

1
T1542.003

Discovery

Query Registry

1
T1012

Tasks