General

  • Target

    f7fe253b2b96cbd902ec708972de10d2d3d5146f6284d38dbcc5e49871c4e90e

  • Size

    247KB

  • Sample

    240630-lgwyeayglj

  • MD5

    d57fb6572ec7d05f3d588643c3bc0e81

  • SHA1

    8aef2c290a3f274085607b63547d7664d61d3cbd

  • SHA256

    f7fe253b2b96cbd902ec708972de10d2d3d5146f6284d38dbcc5e49871c4e90e

  • SHA512

    8040c9d52af4c895a51f86bec93275f9573ea73da12d6d0c416f5e080f3b891e88d13dcf63a72189a1fa232ae7f057cf4fc051d5c68f4e727035e53e303e533d

  • SSDEEP

    6144:C167iAzXCJ/Xw8682uWbewEspMQ2CCXxbqyOq:Cc7iAzXCJAmWS8Ir

Score
10/10

Malware Config

Extracted

Family

gcleaner

C2

185.172.128.90

185.172.128.69

Attributes
  • url_path

    /advdlc.php

Targets

    • Target

      f7fe253b2b96cbd902ec708972de10d2d3d5146f6284d38dbcc5e49871c4e90e

    • Size

      247KB

    • MD5

      d57fb6572ec7d05f3d588643c3bc0e81

    • SHA1

      8aef2c290a3f274085607b63547d7664d61d3cbd

    • SHA256

      f7fe253b2b96cbd902ec708972de10d2d3d5146f6284d38dbcc5e49871c4e90e

    • SHA512

      8040c9d52af4c895a51f86bec93275f9573ea73da12d6d0c416f5e080f3b891e88d13dcf63a72189a1fa232ae7f057cf4fc051d5c68f4e727035e53e303e533d

    • SSDEEP

      6144:C167iAzXCJ/Xw8682uWbewEspMQ2CCXxbqyOq:Cc7iAzXCJAmWS8Ir

    Score
    10/10
    • GCleaner

      GCleaner is a Pay-Per-Install malware loader first discovered in early 2019.

    • Deletes itself

MITRE ATT&CK Matrix ATT&CK v13

Tasks