General
-
Target
75d4b2f64dde3fc89adf5c39891111af.bin
-
Size
774KB
-
Sample
240701-cq4vyatalf
-
MD5
43e47def7e7b3343c19af2bc58066dde
-
SHA1
c704e546625531ee40f628cfc183b343deb60c99
-
SHA256
42dec92de21f0a7d0a32cf5027a0600df5adb42e6d61603ec3785f1d218f088d
-
SHA512
76545273b8840b1d83c383385f0ed263d64953bfc8c7b018da2efc120e621acfa30cd8f5eec87596d78ff6ba1f3765f780f405b874435f2c6f88ef4522bd5c15
-
SSDEEP
24576:u0EGT9wKOFDU+0tt1j14QjzYN0r6rlFqEum+z1u:dEP9654Qj8N0rGlHum+0
Static task
static1
Behavioral task
behavioral1
Sample
a23d1f07dfef6b5fda6381ecf6866746d624dbc1e510073d83f431124bf7d556.exe
Resource
win7-20240611-en
Behavioral task
behavioral2
Sample
a23d1f07dfef6b5fda6381ecf6866746d624dbc1e510073d83f431124bf7d556.exe
Resource
win10v2004-20240611-en
Malware Config
Extracted
redline
foz
147.45.45.3:1912
Targets
-
-
Target
a23d1f07dfef6b5fda6381ecf6866746d624dbc1e510073d83f431124bf7d556.exe
-
Size
913KB
-
MD5
75d4b2f64dde3fc89adf5c39891111af
-
SHA1
cad9e02a08dda87d0e2b88ac3c96ce1b1de5740e
-
SHA256
a23d1f07dfef6b5fda6381ecf6866746d624dbc1e510073d83f431124bf7d556
-
SHA512
462f1de721d5005b0d89168f7b5b1937b7b16f0edf99430104a60505b33a65eaf02f03b36b839e1b5633bc45eaf9f03bd5ccff121e7302f431d263a99d586203
-
SSDEEP
24576:v4TiFiWXYwSv6ZNuzcB3mNO0Uoq0NDQDd:v4gbM0+k8p60Kd
Score10/10-
RedLine
RedLine Stealer is a malware family written in C#, first appearing in early 2020.
-
RedLine payload
-
Suspicious use of SetThreadContext
-