General

  • Target

    d8b8e9ff16b2df43ea859a7e9f45c5fb8ba7e89baa29b952438588bc14120d79

  • Size

    68KB

  • Sample

    240701-dxh3gsyakr

  • MD5

    ad6ca7b289b6562d599f3f8a5aa99ff1

  • SHA1

    5a510367b93dcbbe7b56ea4e76503b32dbf7d727

  • SHA256

    d8b8e9ff16b2df43ea859a7e9f45c5fb8ba7e89baa29b952438588bc14120d79

  • SHA512

    2b84e4228cdb648275a8a11adfef3fef77251c83bdb6829fb2f27022045c534ecbb0f409dcff002019daba448702b6f5b091dc80f1ade0ae609e3c991d953b72

  • SSDEEP

    1536:V7Zf/FAxTWY1++PJHJXA/OsIZfzc3/Q81:fnyiQSo+

Score
10/10

Malware Config

Targets

    • Target

      d8b8e9ff16b2df43ea859a7e9f45c5fb8ba7e89baa29b952438588bc14120d79

    • Size

      68KB

    • MD5

      ad6ca7b289b6562d599f3f8a5aa99ff1

    • SHA1

      5a510367b93dcbbe7b56ea4e76503b32dbf7d727

    • SHA256

      d8b8e9ff16b2df43ea859a7e9f45c5fb8ba7e89baa29b952438588bc14120d79

    • SHA512

      2b84e4228cdb648275a8a11adfef3fef77251c83bdb6829fb2f27022045c534ecbb0f409dcff002019daba448702b6f5b091dc80f1ade0ae609e3c991d953b72

    • SSDEEP

      1536:V7Zf/FAxTWY1++PJHJXA/OsIZfzc3/Q81:fnyiQSo+

    Score
    9/10
    • Renames multiple (3290) files with added filename extension

      This suggests ransomware activity of encrypting all the files on the system.

    • UPX dump on OEP (original entry point)

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks