General

  • Target

    79f8d7b9ac8178b6f9d7daafa17309bc.bin

  • Size

    36.0MB

  • Sample

    240701-cvjesstbmb

  • MD5

    79f8d7b9ac8178b6f9d7daafa17309bc

  • SHA1

    c66e9288f288e4158d779263e1a912320668f52b

  • SHA256

    a8b4f9fc0229d5095afd02cf69e4b59606a01b8edd7bd60e6d3e004687e729e4

  • SHA512

    bb72da5942b0ce723003db1fc112ef69ec94be35200b2d557b5c70ec1aa12767ac5e9c186c57e432d5f9c528531fd2c29cac48f07212f4f55143769efb771918

  • SSDEEP

    786432:9wYnIe84d7m8/Mw5CaXv2S3IPlv5OqlICX1atGLJcez+yzqQ:9wYn7dX/uyv28Id5PlIQk0qeyOqQ

Malware Config

Targets

    • Target

      79f8d7b9ac8178b6f9d7daafa17309bc.bin

    • Size

      36.0MB

    • MD5

      79f8d7b9ac8178b6f9d7daafa17309bc

    • SHA1

      c66e9288f288e4158d779263e1a912320668f52b

    • SHA256

      a8b4f9fc0229d5095afd02cf69e4b59606a01b8edd7bd60e6d3e004687e729e4

    • SHA512

      bb72da5942b0ce723003db1fc112ef69ec94be35200b2d557b5c70ec1aa12767ac5e9c186c57e432d5f9c528531fd2c29cac48f07212f4f55143769efb771918

    • SSDEEP

      786432:9wYnIe84d7m8/Mw5CaXv2S3IPlv5OqlICX1atGLJcez+yzqQ:9wYn7dX/uyv28Id5PlIQk0qeyOqQ

    • Loads dropped DLL

    • Checks installed software on the system

      Looks up Uninstall key entries in the registry to enumerate software on the system.

    • Writes to the Master Boot Record (MBR)

      Bootkits write to the MBR to gain persistence at a level below the operating system.

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Pre-OS Boot

1
T1542

Bootkit

1
T1542.003

Defense Evasion

Pre-OS Boot

1
T1542

Bootkit

1
T1542.003

Subvert Trust Controls

1
T1553

Install Root Certificate

1
T1553.004

Modify Registry

1
T1112

Discovery

Query Registry

1
T1012

Tasks