General

  • Target

    e34513dc9193f4551b8174ed9949b88a2a188524d6c2630adb059d2ef6762c43

  • Size

    82KB

  • Sample

    240701-edkmmsydqk

  • MD5

    cc293a239c3fc93446e85b79b977cdc9

  • SHA1

    687f79c0c36c4042c245620db42cd0681df2b4dd

  • SHA256

    e34513dc9193f4551b8174ed9949b88a2a188524d6c2630adb059d2ef6762c43

  • SHA512

    c7150439b2fef3a1a219ba445081a1368fe222f8525d60fb2eb715f9235ba874289c895f1f982a0c5b3c29dbf11f10af40a7d952a294dabac41c8848a9cef854

  • SSDEEP

    1536:V7Zf/FAxTWY1++PJHJXA/OsIZfzc3/Q8zxSLkby:fnyiQSo5Lf

Score
10/10

Malware Config

Targets

    • Target

      e34513dc9193f4551b8174ed9949b88a2a188524d6c2630adb059d2ef6762c43

    • Size

      82KB

    • MD5

      cc293a239c3fc93446e85b79b977cdc9

    • SHA1

      687f79c0c36c4042c245620db42cd0681df2b4dd

    • SHA256

      e34513dc9193f4551b8174ed9949b88a2a188524d6c2630adb059d2ef6762c43

    • SHA512

      c7150439b2fef3a1a219ba445081a1368fe222f8525d60fb2eb715f9235ba874289c895f1f982a0c5b3c29dbf11f10af40a7d952a294dabac41c8848a9cef854

    • SSDEEP

      1536:V7Zf/FAxTWY1++PJHJXA/OsIZfzc3/Q8zxSLkby:fnyiQSo5Lf

    Score
    9/10
    • Renames multiple (195) files with added filename extension

      This suggests ransomware activity of encrypting all the files on the system.

    • UPX dump on OEP (original entry point)

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks