General

  • Target

    eeb5fe0e48287fb74c5dd0606270dd0a8a4658c30691c0abaff04fb014f29a25

  • Size

    49KB

  • Sample

    240701-e1epxawdqg

  • MD5

    689bf2b80115261e2e96aafc36665c4e

  • SHA1

    d61159df6f8b1cd8fdd102c5689261c15e791a49

  • SHA256

    eeb5fe0e48287fb74c5dd0606270dd0a8a4658c30691c0abaff04fb014f29a25

  • SHA512

    eebbe044b2ed25773d98be8149f8fac8d9dc35329f3e76ef1fccd308bd08970a654e0530cd17bd5fc80d87fbac592411d7a4dcd737d372bc0523d5e59740e297

  • SSDEEP

    768:kBT37CPKKIm0CAbLg++PJHJzIWD+dVdCYgck5sIZFlzc3/Sg2aDM9uA9DM9uAFzP:CTWn1++PJHJXA/OsIZfzc3/Q8zxWSh

Score
10/10

Malware Config

Targets

    • Target

      eeb5fe0e48287fb74c5dd0606270dd0a8a4658c30691c0abaff04fb014f29a25

    • Size

      49KB

    • MD5

      689bf2b80115261e2e96aafc36665c4e

    • SHA1

      d61159df6f8b1cd8fdd102c5689261c15e791a49

    • SHA256

      eeb5fe0e48287fb74c5dd0606270dd0a8a4658c30691c0abaff04fb014f29a25

    • SHA512

      eebbe044b2ed25773d98be8149f8fac8d9dc35329f3e76ef1fccd308bd08970a654e0530cd17bd5fc80d87fbac592411d7a4dcd737d372bc0523d5e59740e297

    • SSDEEP

      768:kBT37CPKKIm0CAbLg++PJHJzIWD+dVdCYgck5sIZFlzc3/Sg2aDM9uA9DM9uAFzP:CTWn1++PJHJXA/OsIZfzc3/Q8zxWSh

    Score
    9/10
    • Renames multiple (3695) files with added filename extension

      This suggests ransomware activity of encrypting all the files on the system.

    • UPX dump on OEP (original entry point)

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks