General

  • Target

    a8719935964133167d0f6f5e0997cb598aa65641887b90d5993c7b3f5f49e2ae.exe

  • Size

    8.4MB

  • Sample

    240701-bmma2svejq

  • MD5

    5d66f215d88815d93ff3b29f204c276e

  • SHA1

    7d0d92489bc2ffacbf235db86047bdcf325b4197

  • SHA256

    a8719935964133167d0f6f5e0997cb598aa65641887b90d5993c7b3f5f49e2ae

  • SHA512

    5256692f6f770a44ed06a0859b8208a11f714d045fb2d1646be9c7f3f92f2eb97a1fafb04862fa60f3cb534788113d9073c58275f85374dde6eda28ca3bc3df5

  • SSDEEP

    196608:YDK0EFxDNP+GqTPga1sEBOgrSHBrMteIrC2ZLmMGF3q2Z2xmbKg:dhNP+PTYa1DOgrSHBrHIvmMV2ZhOg

Score
7/10

Malware Config

Targets

    • Target

      a8719935964133167d0f6f5e0997cb598aa65641887b90d5993c7b3f5f49e2ae.exe

    • Size

      8.4MB

    • MD5

      5d66f215d88815d93ff3b29f204c276e

    • SHA1

      7d0d92489bc2ffacbf235db86047bdcf325b4197

    • SHA256

      a8719935964133167d0f6f5e0997cb598aa65641887b90d5993c7b3f5f49e2ae

    • SHA512

      5256692f6f770a44ed06a0859b8208a11f714d045fb2d1646be9c7f3f92f2eb97a1fafb04862fa60f3cb534788113d9073c58275f85374dde6eda28ca3bc3df5

    • SSDEEP

      196608:YDK0EFxDNP+GqTPga1sEBOgrSHBrMteIrC2ZLmMGF3q2Z2xmbKg:dhNP+PTYa1DOgrSHBrHIvmMV2ZhOg

    Score
    7/10
    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Deletes itself

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Execution

Scheduled Task/Job

1
T1053

Scheduled Task

1
T1053.005

Persistence

Scheduled Task/Job

1
T1053

Scheduled Task

1
T1053.005

Privilege Escalation

Scheduled Task/Job

1
T1053

Scheduled Task

1
T1053.005

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Remote System Discovery

1
T1018

Tasks