General

  • Target

    25c55b3375e83d2468334b7b4a0890d3.bin

  • Size

    43.5MB

  • Sample

    240701-bqt53avfmm

  • MD5

    25c55b3375e83d2468334b7b4a0890d3

  • SHA1

    d8e901fe2d6adf9309aa8627306742baa4d0a38b

  • SHA256

    d76d821710495686c404cd23de38da5776b2826d6814192e63198c8b1c7df68e

  • SHA512

    ab311bebf707d359193423df2e3b216ce91c81cbab7a76fa2b4cfb4ef8256b5d66e29ba89c99009c035ee81d4dfc3be929584f38711a62e9e8fbbd83c6a4db1a

  • SSDEEP

    786432:9wYnIe84d7m8/Mw5CaXv2S3IPlv5OqlICX1atGLJcez+yzqFqikJaaZRTdcH+wEj:9wYn7dX/uyv28Id5PlIQk0qeyOq8DrRv

Malware Config

Targets

    • Target

      25c55b3375e83d2468334b7b4a0890d3.bin

    • Size

      43.5MB

    • MD5

      25c55b3375e83d2468334b7b4a0890d3

    • SHA1

      d8e901fe2d6adf9309aa8627306742baa4d0a38b

    • SHA256

      d76d821710495686c404cd23de38da5776b2826d6814192e63198c8b1c7df68e

    • SHA512

      ab311bebf707d359193423df2e3b216ce91c81cbab7a76fa2b4cfb4ef8256b5d66e29ba89c99009c035ee81d4dfc3be929584f38711a62e9e8fbbd83c6a4db1a

    • SSDEEP

      786432:9wYnIe84d7m8/Mw5CaXv2S3IPlv5OqlICX1atGLJcez+yzqFqikJaaZRTdcH+wEj:9wYn7dX/uyv28Id5PlIQk0qeyOq8DrRv

    • Loads dropped DLL

    • Checks installed software on the system

      Looks up Uninstall key entries in the registry to enumerate software on the system.

    • Writes to the Master Boot Record (MBR)

      Bootkits write to the MBR to gain persistence at a level below the operating system.

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Pre-OS Boot

1
T1542

Bootkit

1
T1542.003

Defense Evasion

Pre-OS Boot

1
T1542

Bootkit

1
T1542.003

Subvert Trust Controls

1
T1553

Install Root Certificate

1
T1553.004

Modify Registry

1
T1112

Discovery

Query Registry

1
T1012

Tasks