General

  • Target

    c7a4a3d6a33ff2999f26c7721c84267137196479abbbb161de5d360fa3f64bc3

  • Size

    84KB

  • Sample

    240701-c3rq5stdmd

  • MD5

    92f03bdeba91e719ce9a81dc18ddda10

  • SHA1

    471ce1bd129991c37b32394dae1217d3b5ff93ea

  • SHA256

    c7a4a3d6a33ff2999f26c7721c84267137196479abbbb161de5d360fa3f64bc3

  • SHA512

    bb41008d21ef6bceb50ed94da08e2b5722d9a7e9d498fe6dc17328ca5252fe1cc6f558735d4cff0402d5b70caed58cd286f22949fe423b25fca77bdba288ad88

  • SSDEEP

    1536:IGsBuoFn7UZ+LtdgI2MyzNORQtOflIwoHNV2XBFV72B4lA7ZsbI8zq:IGjot7UQLtdgI2MyzNORQtOflIwoHNVt

Score
7/10

Malware Config

Targets

    • Target

      c7a4a3d6a33ff2999f26c7721c84267137196479abbbb161de5d360fa3f64bc3

    • Size

      84KB

    • MD5

      92f03bdeba91e719ce9a81dc18ddda10

    • SHA1

      471ce1bd129991c37b32394dae1217d3b5ff93ea

    • SHA256

      c7a4a3d6a33ff2999f26c7721c84267137196479abbbb161de5d360fa3f64bc3

    • SHA512

      bb41008d21ef6bceb50ed94da08e2b5722d9a7e9d498fe6dc17328ca5252fe1cc6f558735d4cff0402d5b70caed58cd286f22949fe423b25fca77bdba288ad88

    • SSDEEP

      1536:IGsBuoFn7UZ+LtdgI2MyzNORQtOflIwoHNV2XBFV72B4lA7ZsbI8zq:IGjot7UQLtdgI2MyzNORQtOflIwoHNVt

    Score
    7/10
    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

    • Creates a large amount of network flows

      This may indicate a network scan to discover remotely running services.

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Network Service Discovery

1
T1046

Tasks