General
-
Target
e3d4c5928f64c737dbb66d7256f3e520833825293f69512345c6dae9c15f5125
-
Size
1.1MB
-
Sample
240701-eegmdayekp
-
MD5
0d4a3a419a3553a0ab422e80ef9766fd
-
SHA1
05dcc42f36f1d5c84ceae230b673ca12f4f4669e
-
SHA256
e3d4c5928f64c737dbb66d7256f3e520833825293f69512345c6dae9c15f5125
-
SHA512
7c3e7eb1c6bbb3c325aa6c60ae5a6cc55883fb9628de39a47c996f128bc991b8426745011b170601b72984c1e5c1d9d6188bb1e87e03a90033ba86be9dfbc19a
-
SSDEEP
24576:oWaIXsQxBNsqRhsExfGJ8dvbf+qAoZqFWfccU5Wl:VRrBQEQqhbf9HYUH2Wl
Static task
static1
Behavioral task
behavioral1
Sample
e3d4c5928f64c737dbb66d7256f3e520833825293f69512345c6dae9c15f5125.exe
Resource
win7-20240221-en
Behavioral task
behavioral2
Sample
e3d4c5928f64c737dbb66d7256f3e520833825293f69512345c6dae9c15f5125.exe
Resource
win10v2004-20240508-en
Malware Config
Targets
-
-
Target
e3d4c5928f64c737dbb66d7256f3e520833825293f69512345c6dae9c15f5125
-
Size
1.1MB
-
MD5
0d4a3a419a3553a0ab422e80ef9766fd
-
SHA1
05dcc42f36f1d5c84ceae230b673ca12f4f4669e
-
SHA256
e3d4c5928f64c737dbb66d7256f3e520833825293f69512345c6dae9c15f5125
-
SHA512
7c3e7eb1c6bbb3c325aa6c60ae5a6cc55883fb9628de39a47c996f128bc991b8426745011b170601b72984c1e5c1d9d6188bb1e87e03a90033ba86be9dfbc19a
-
SSDEEP
24576:oWaIXsQxBNsqRhsExfGJ8dvbf+qAoZqFWfccU5Wl:VRrBQEQqhbf9HYUH2Wl
Score9/10-
Detects executables containing possible sandbox analysis VM usernames
-
Checks computer location settings
Looks up country code configured in the registry, likely geofence.
-
Adds Run key to start application
-
Enumerates connected drives
Attempts to read the root path of hard drives other than the default C: drive.
-
Drops file in System32 directory
-