General

  • Target

    ddff09550d8ba0ae38e6a7a291f6decd9fae585d39705b72d27994ffca95349f

  • Size

    603KB

  • Sample

    240701-d6gk1sverb

  • MD5

    c6e0cee49f07af9c887b75a45d5702e0

  • SHA1

    fceb153076f9e56603e248420f3768e730f38239

  • SHA256

    ddff09550d8ba0ae38e6a7a291f6decd9fae585d39705b72d27994ffca95349f

  • SHA512

    f36e5972c3955503ddea9b32fb2070112b35dae4cfb5841255da7c0852a0a23cfbc3673374018f2ea8bf4781e35bb0d091c4c4f14f05da1eb1a2687feac13e7a

  • SSDEEP

    12288:wAvFGJNTpWSgN/wwRN0UL0G/TVOo3HC75nSE33b9YvFH:wAvFqdCN/j2GLl3iFSE33b9

Score
7/10

Malware Config

Targets

    • Target

      ddff09550d8ba0ae38e6a7a291f6decd9fae585d39705b72d27994ffca95349f

    • Size

      603KB

    • MD5

      c6e0cee49f07af9c887b75a45d5702e0

    • SHA1

      fceb153076f9e56603e248420f3768e730f38239

    • SHA256

      ddff09550d8ba0ae38e6a7a291f6decd9fae585d39705b72d27994ffca95349f

    • SHA512

      f36e5972c3955503ddea9b32fb2070112b35dae4cfb5841255da7c0852a0a23cfbc3673374018f2ea8bf4781e35bb0d091c4c4f14f05da1eb1a2687feac13e7a

    • SSDEEP

      12288:wAvFGJNTpWSgN/wwRN0UL0G/TVOo3HC75nSE33b9YvFH:wAvFqdCN/j2GLl3iFSE33b9

    Score
    7/10
    • Executes dropped EXE

    • Loads dropped DLL

    • Reads user/profile data of web browsers

      Infostealers often target stored browser data, which can include saved credentials etc.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Credential Access

Unsecured Credentials

1
T1552

Credentials In Files

1
T1552.001

Discovery

System Information Discovery

3
T1082

Query Registry

3
T1012

Peripheral Device Discovery

1
T1120

Collection

Data from Local System

1
T1005

Tasks