General

  • Target

    3eddcac8a7d14e04adfdbbd1d9291a58.bin

  • Size

    43.5MB

  • Sample

    240701-b416jasdmh

  • MD5

    3eddcac8a7d14e04adfdbbd1d9291a58

  • SHA1

    be513bb7b7e038a9981473d191dd0ffd4686204d

  • SHA256

    77327f92ded5dd73ecca4948d2183014801b541d5a2c0293d9f867165a83014a

  • SHA512

    31b54d190ebf06b579bc5785290a5b0d3d01d0f73dd0ce1bc02825e8ace0467d29fcca957d3d3101b3aaff376cda8e5b4285d3a1c3ca63c79d6ba44ac890c9c8

  • SSDEEP

    786432:9wYnIe84d7m8/Mw5CaXv2S3IPlv5OqlICX1atGLJcez+yzqFqikJaaZRTdcH+wEO:9wYn7dX/uyv28Id5PlIQk0qeyOq8DrRy

Malware Config

Targets

    • Target

      3eddcac8a7d14e04adfdbbd1d9291a58.bin

    • Size

      43.5MB

    • MD5

      3eddcac8a7d14e04adfdbbd1d9291a58

    • SHA1

      be513bb7b7e038a9981473d191dd0ffd4686204d

    • SHA256

      77327f92ded5dd73ecca4948d2183014801b541d5a2c0293d9f867165a83014a

    • SHA512

      31b54d190ebf06b579bc5785290a5b0d3d01d0f73dd0ce1bc02825e8ace0467d29fcca957d3d3101b3aaff376cda8e5b4285d3a1c3ca63c79d6ba44ac890c9c8

    • SSDEEP

      786432:9wYnIe84d7m8/Mw5CaXv2S3IPlv5OqlICX1atGLJcez+yzqFqikJaaZRTdcH+wEO:9wYn7dX/uyv28Id5PlIQk0qeyOq8DrRy

    • Loads dropped DLL

    • Checks installed software on the system

      Looks up Uninstall key entries in the registry to enumerate software on the system.

    • Writes to the Master Boot Record (MBR)

      Bootkits write to the MBR to gain persistence at a level below the operating system.

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Pre-OS Boot

1
T1542

Bootkit

1
T1542.003

Defense Evasion

Pre-OS Boot

1
T1542

Bootkit

1
T1542.003

Discovery

Query Registry

1
T1012

Tasks