General
-
Target
f0551267081eb42bf6e355a9b1199a5a57b43f2ea564296cd0595149919eb65c
-
Size
97KB
-
Sample
240701-e4kqbswepd
-
MD5
8b2576780a6f833e9146077281f11d6e
-
SHA1
e7f8944271058ae44c15bfb76e61c3b145a7eab5
-
SHA256
f0551267081eb42bf6e355a9b1199a5a57b43f2ea564296cd0595149919eb65c
-
SHA512
797d769832819ebf520be008fb583fa301d21c407d8d9a6dfc807a1eefc486c58647ed428e4a451add8339dd7b252cb0f1f79d72b8e323290a788addb5834af3
-
SSDEEP
3072:6e7WpP9oVLQthbYY9oVLQthbUrt7t2rt303Cs+wDwo:RqAir6
Static task
static1
Behavioral task
behavioral1
Sample
f0551267081eb42bf6e355a9b1199a5a57b43f2ea564296cd0595149919eb65c.exe
Resource
win7-20240220-en
Behavioral task
behavioral2
Sample
f0551267081eb42bf6e355a9b1199a5a57b43f2ea564296cd0595149919eb65c.exe
Resource
win10v2004-20240508-en
Malware Config
Targets
-
-
Target
f0551267081eb42bf6e355a9b1199a5a57b43f2ea564296cd0595149919eb65c
-
Size
97KB
-
MD5
8b2576780a6f833e9146077281f11d6e
-
SHA1
e7f8944271058ae44c15bfb76e61c3b145a7eab5
-
SHA256
f0551267081eb42bf6e355a9b1199a5a57b43f2ea564296cd0595149919eb65c
-
SHA512
797d769832819ebf520be008fb583fa301d21c407d8d9a6dfc807a1eefc486c58647ed428e4a451add8339dd7b252cb0f1f79d72b8e323290a788addb5834af3
-
SSDEEP
3072:6e7WpP9oVLQthbYY9oVLQthbUrt7t2rt303Cs+wDwo:RqAir6
Score9/10-
Renames multiple (3451) files with added filename extension
This suggests ransomware activity of encrypting all the files on the system.
-