General

  • Target

    c9685f119c71c6e60281e799c13e21fb883c88402fe319db8375eda82cfd907d

  • Size

    95KB

  • Sample

    240701-c5lb5stdqc

  • MD5

    78be1549052e1111dc1b98a42f2af01c

  • SHA1

    b659e37dfc411c8bdab6d3663c01a51e1c84d4e9

  • SHA256

    c9685f119c71c6e60281e799c13e21fb883c88402fe319db8375eda82cfd907d

  • SHA512

    c7316fe751066de15c974d503f9c8b231f006f36b9d1536199575d5b2f5cd9b862a25b29676e4f29f1d7f046042fb3f8ba1f06042264808181f4498b372b93ec

  • SSDEEP

    1536:a7ZyqaFAxTWH1++PJHJXA/OsIZfzc3/Q8VCnXxX81jmQJHdJHOUykUygrO:enaypQSoPXxXokY

Score
10/10

Malware Config

Targets

    • Target

      c9685f119c71c6e60281e799c13e21fb883c88402fe319db8375eda82cfd907d

    • Size

      95KB

    • MD5

      78be1549052e1111dc1b98a42f2af01c

    • SHA1

      b659e37dfc411c8bdab6d3663c01a51e1c84d4e9

    • SHA256

      c9685f119c71c6e60281e799c13e21fb883c88402fe319db8375eda82cfd907d

    • SHA512

      c7316fe751066de15c974d503f9c8b231f006f36b9d1536199575d5b2f5cd9b862a25b29676e4f29f1d7f046042fb3f8ba1f06042264808181f4498b372b93ec

    • SSDEEP

      1536:a7ZyqaFAxTWH1++PJHJXA/OsIZfzc3/Q8VCnXxX81jmQJHdJHOUykUygrO:enaypQSoPXxXokY

    Score
    9/10
    • Renames multiple (3186) files with added filename extension

      This suggests ransomware activity of encrypting all the files on the system.

    • UPX dump on OEP (original entry point)

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks