Analysis

  • max time kernel
    0s
  • max time network
    0s
  • platform
    windows7_x64
  • resource
    win7-20240419-en
  • resource tags

    arch:x64arch:x86image:win7-20240419-enlocale:en-usos:windows7-x64system
  • submitted
    30-06-2024 06:29

Errors

Reason
platform exec: image=C:\Users\Admin\AppData\Local\Temp\9b5a67ab9e37cf74e733150466634f8e3856ce692b43f0d8ceed2bbd8cde507a.exe command="C:\Users\Admin\AppData\Local\Temp\9b5a67ab9e37cf74e733150466634f8e3856ce692b43f0d8ceed2bbd8cde507a.exe" wdir=C:\Users\Admin\AppData\Local\Temp Payload error: The application has failed to start because its side-by-side configuration is incorrect. Please see the application event log or use the command-line sxstrace.exe tool for more detail.

General

  • Target

    9b5a67ab9e37cf74e733150466634f8e3856ce692b43f0d8ceed2bbd8cde507a.exe

  • Size

    12.1MB

  • MD5

    ca42dde646e320831fbb93ad7d80aa9f

  • SHA1

    da1ce54c87475c9957a07247fe4d472b7f3a3616

  • SHA256

    9b5a67ab9e37cf74e733150466634f8e3856ce692b43f0d8ceed2bbd8cde507a

  • SHA512

    3c6f6caf4cfac0f649ed1f7d2a0fd7c3df0037102e193022c2fcd6da81eae1f88a6971d585f4985922f2f44507afefe62c258682262b2325ca46cbe71e7be6e2

  • SSDEEP

    196608:hPopkMa+j5XI861GGFUzg4+NWKPABdZ+oEmY7K5sUytJ8dCrnkl7AtOaTu22Qv26:hgzj5+GZGNAZEd7QM2dZuj

Score
7/10

Malware Config

Signatures

  • Themida packer 1 IoCs

    Detects Themida, an advanced Windows software protection system.

Processes

  • C:\Users\Admin\AppData\Local\Temp\9b5a67ab9e37cf74e733150466634f8e3856ce692b43f0d8ceed2bbd8cde507a.exe
    "C:\Users\Admin\AppData\Local\Temp\9b5a67ab9e37cf74e733150466634f8e3856ce692b43f0d8ceed2bbd8cde507a.exe"
    1⤵
      PID:2208

    Network

    MITRE ATT&CK Matrix

    Replay Monitor

    Loading Replay Monitor...

    Downloads

    • memory/2208-0-0x0000000000D80000-0x0000000002BFA000-memory.dmp
      Filesize

      30.5MB