General
-
Target
Setup.exe
-
Size
459KB
-
Sample
240630-tk8elszgre
-
MD5
61bdd7d8b26bcaa0ee44344350fec5a9
-
SHA1
9b3ec3b59351190256b14f897c47f79046e834a0
-
SHA256
954c4f252f74dfba36e41d70ccbb0fdee14ced81de5d1633114c92175ca90640
-
SHA512
6355cb36c664bd8f24f5eab9024cb30ee48f4f2bd48aa31cf0a5d4627f3c5decc2dfbfae6fdc19e9f1935497d5410c05d4560ed561feb877f9ef06cac25871d6
-
SSDEEP
6144:t5x6BcfQjw35PH3cUWa2qnBDNnwbA+p4pN4v7EaSxbxF+AIGGpDwvRtfNj6:Px6B105PcDaznBBnwHqePSxbxs3
Behavioral task
behavioral1
Sample
Setup.exe
Resource
win7-20240221-en
Behavioral task
behavioral2
Sample
Setup.exe
Resource
win10v2004-20240508-en
Malware Config
Targets
-
-
Target
Setup.exe
-
Size
459KB
-
MD5
61bdd7d8b26bcaa0ee44344350fec5a9
-
SHA1
9b3ec3b59351190256b14f897c47f79046e834a0
-
SHA256
954c4f252f74dfba36e41d70ccbb0fdee14ced81de5d1633114c92175ca90640
-
SHA512
6355cb36c664bd8f24f5eab9024cb30ee48f4f2bd48aa31cf0a5d4627f3c5decc2dfbfae6fdc19e9f1935497d5410c05d4560ed561feb877f9ef06cac25871d6
-
SSDEEP
6144:t5x6BcfQjw35PH3cUWa2qnBDNnwbA+p4pN4v7EaSxbxF+AIGGpDwvRtfNj6:Px6B105PcDaznBBnwHqePSxbxs3
Score10/10-
RedLine
RedLine Stealer is a malware family written in C#, first appearing in early 2020.
-
RedLine payload
-
Checks installed software on the system
Looks up Uninstall key entries in the registry to enumerate software on the system.
-