Analysis

  • max time kernel
    0s
  • max time network
    10s
  • platform
    windows10-2004_x64
  • resource
    win10v2004-20240508-en
  • resource tags

    arch:x64arch:x86image:win10v2004-20240508-enlocale:en-usos:windows10-2004-x64system
  • submitted
    30-06-2024 07:22

Errors

Reason
platform exec: image=C:\Users\Admin\AppData\Local\Temp\60cbfdaf0d7174f20af915f28bedf2ab1dc51d5e08b8aad5166a4f9e32f7cf71.exe command="C:\Users\Admin\AppData\Local\Temp\60cbfdaf0d7174f20af915f28bedf2ab1dc51d5e08b8aad5166a4f9e32f7cf71.exe" wdir=C:\Users\Admin\AppData\Local\Temp Payload error: The application has failed to start because its side-by-side configuration is incorrect. Please see the application event log or use the command-line sxstrace.exe tool for more detail.

General

  • Target

    60cbfdaf0d7174f20af915f28bedf2ab1dc51d5e08b8aad5166a4f9e32f7cf71.exe

  • Size

    11.4MB

  • MD5

    b8f00e44ad8813884357646469255480

  • SHA1

    0b6e0f0fdb9a787bc4a0188801448c4e1bfe220e

  • SHA256

    60cbfdaf0d7174f20af915f28bedf2ab1dc51d5e08b8aad5166a4f9e32f7cf71

  • SHA512

    75cdfbc4357e9d5e29080b599212284ca2cfb90d5873d97530dbbf65d4a35ffbb69906dae4ad3092de572a2573f29c04579a0f85d21f21615d0387941e80a57d

  • SSDEEP

    196608:5buCaoZlGvpr86eYJL3YPD2x/eVKQngWkBOpM4kBibo3ImZzKQrBBjT1xe:5b3kIsJDYqRSRngzOy4GiboZrLjT1x

Score
7/10

Malware Config

Signatures

  • Themida packer 1 IoCs

    Detects Themida, an advanced Windows software protection system.

Processes

  • C:\Users\Admin\AppData\Local\Temp\60cbfdaf0d7174f20af915f28bedf2ab1dc51d5e08b8aad5166a4f9e32f7cf71.exe
    "C:\Users\Admin\AppData\Local\Temp\60cbfdaf0d7174f20af915f28bedf2ab1dc51d5e08b8aad5166a4f9e32f7cf71.exe"
    1⤵
      PID:5072

    Network

    MITRE ATT&CK Matrix

    Replay Monitor

    Loading Replay Monitor...

    Downloads

    • memory/5072-0-0x0000000000470000-0x0000000002072000-memory.dmp
      Filesize

      28.0MB