General

  • Target

    d4db9094eb85e3923a9ef44fe388ffe71b8d16caeb9dc0662f08c58800baa877

  • Size

    102KB

  • Sample

    240701-dnq2qsvald

  • MD5

    f1ff4dc62ea7cee0d245499902eb6a06

  • SHA1

    46b01270dc3b4dd2aa733f6304002d9f38c9f749

  • SHA256

    d4db9094eb85e3923a9ef44fe388ffe71b8d16caeb9dc0662f08c58800baa877

  • SHA512

    7d9b248aba4b064b520fca81abc346e0a13420890cf1aa6b5c415d1a9a6b57fb4482a37722bbbca2d1a7c511d835f0d1d541b85bd93f6022105e440304ac95ed

  • SSDEEP

    1536:V7Zf/FAxTWY1++PJHJXA/OsIZfzc3/Q8zxtjm8sYW5Ww:fnyiQSoojmHYW5Ww

Score
10/10

Malware Config

Targets

    • Target

      d4db9094eb85e3923a9ef44fe388ffe71b8d16caeb9dc0662f08c58800baa877

    • Size

      102KB

    • MD5

      f1ff4dc62ea7cee0d245499902eb6a06

    • SHA1

      46b01270dc3b4dd2aa733f6304002d9f38c9f749

    • SHA256

      d4db9094eb85e3923a9ef44fe388ffe71b8d16caeb9dc0662f08c58800baa877

    • SHA512

      7d9b248aba4b064b520fca81abc346e0a13420890cf1aa6b5c415d1a9a6b57fb4482a37722bbbca2d1a7c511d835f0d1d541b85bd93f6022105e440304ac95ed

    • SSDEEP

      1536:V7Zf/FAxTWY1++PJHJXA/OsIZfzc3/Q8zxtjm8sYW5Ww:fnyiQSoojmHYW5Ww

    Score
    9/10
    • Renames multiple (196) files with added filename extension

      This suggests ransomware activity of encrypting all the files on the system.

    • UPX dump on OEP (original entry point)

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks