General

  • Target

    Nichiden Viet Nam - RFQ List & Specification..exe

  • Size

    184KB

  • Sample

    240701-cp5e3swfrk

  • MD5

    5a5469ff7562aa34384f44eee04643e1

  • SHA1

    d894b3eb2d2cc3bcebfec296fbf5457cdd77a4b0

  • SHA256

    64b9457cd80939e1e02d22607e1faae7787d60cc8ccff068f1b0ab2b2c1b8057

  • SHA512

    51b9e53654e79a14e57e03200b38285f4218c62d68929cfecbeb02296386f2266edc324e619925d981de0e9285c2a5acbba1126dfa0d1d484e1627c438ce5aec

  • SSDEEP

    1536:AfLsxO9kR8Bx09kANXrA32aF5D1osgrvzsVxI:xO9KUTF3LFx1osMveI

Score
10/10

Malware Config

Extracted

Family

redline

Botnet

foz

C2

79.110.62.113:1912

Targets

    • Target

      Nichiden Viet Nam - RFQ List & Specification..exe

    • Size

      184KB

    • MD5

      5a5469ff7562aa34384f44eee04643e1

    • SHA1

      d894b3eb2d2cc3bcebfec296fbf5457cdd77a4b0

    • SHA256

      64b9457cd80939e1e02d22607e1faae7787d60cc8ccff068f1b0ab2b2c1b8057

    • SHA512

      51b9e53654e79a14e57e03200b38285f4218c62d68929cfecbeb02296386f2266edc324e619925d981de0e9285c2a5acbba1126dfa0d1d484e1627c438ce5aec

    • SSDEEP

      1536:AfLsxO9kR8Bx09kANXrA32aF5D1osgrvzsVxI:xO9KUTF3LFx1osMveI

    Score
    10/10
    • RedLine

      RedLine Stealer is a malware family written in C#, first appearing in early 2020.

    • RedLine payload

MITRE ATT&CK Matrix

Tasks