General

  • Target

    e0d49b8213c87fc566369a03f94fe17388b3f62ba788751d4acbf9265f64d88a

  • Size

    83KB

  • Sample

    240701-d9hbqavfpb

  • MD5

    36a92ac02806fa2776dd12483a6cb49e

  • SHA1

    e00b43b0cb8463893b067c6f80c5a24504fc090b

  • SHA256

    e0d49b8213c87fc566369a03f94fe17388b3f62ba788751d4acbf9265f64d88a

  • SHA512

    6141db3cfa9a1a54256d98ae27a513a85df04069d014a82e3e80957698167264d7a156fabd56d4dd6184467a6ed50cd11c4849e169e1ec04767b9e163b0e9c6d

  • SSDEEP

    1536:a7ZyqaFAxTWH1++PJHJXA/OsIZfzc3/Q8VCnXxX81M4q:enaypQSoPXxXz

Score
10/10

Malware Config

Targets

    • Target

      e0d49b8213c87fc566369a03f94fe17388b3f62ba788751d4acbf9265f64d88a

    • Size

      83KB

    • MD5

      36a92ac02806fa2776dd12483a6cb49e

    • SHA1

      e00b43b0cb8463893b067c6f80c5a24504fc090b

    • SHA256

      e0d49b8213c87fc566369a03f94fe17388b3f62ba788751d4acbf9265f64d88a

    • SHA512

      6141db3cfa9a1a54256d98ae27a513a85df04069d014a82e3e80957698167264d7a156fabd56d4dd6184467a6ed50cd11c4849e169e1ec04767b9e163b0e9c6d

    • SSDEEP

      1536:a7ZyqaFAxTWH1++PJHJXA/OsIZfzc3/Q8VCnXxX81M4q:enaypQSoPXxXz

    Score
    9/10
    • Renames multiple (3142) files with added filename extension

      This suggests ransomware activity of encrypting all the files on the system.

    • UPX dump on OEP (original entry point)

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks