General

  • Target

    e3fd49650c582e0bb70435ac6552e393bdef644f8a992491c3d6736fa4379e2e

  • Size

    105KB

  • Sample

    240701-eergksyelj

  • MD5

    d9a7a7092710a7fc05bf16ab6ba66cd5

  • SHA1

    a483826af7b897fa0141f38056e23731e39e62d1

  • SHA256

    e3fd49650c582e0bb70435ac6552e393bdef644f8a992491c3d6736fa4379e2e

  • SHA512

    e7ceac37c616cef4d05c1a6e3ddf990a4aab892ebf89aae35d2db29a20a07c86409273fc2fffdee616afdac598096ba243f20078216e0f053be0c281ff766744

  • SSDEEP

    1536:V7Zf/FAxTWY1++PJHJXA/OsIZfzc3/Q8zxtjm8szV6VSWtV6Vp:fnyiQSoojmHzV6VSWtV6Vp

Score
10/10

Malware Config

Targets

    • Target

      e3fd49650c582e0bb70435ac6552e393bdef644f8a992491c3d6736fa4379e2e

    • Size

      105KB

    • MD5

      d9a7a7092710a7fc05bf16ab6ba66cd5

    • SHA1

      a483826af7b897fa0141f38056e23731e39e62d1

    • SHA256

      e3fd49650c582e0bb70435ac6552e393bdef644f8a992491c3d6736fa4379e2e

    • SHA512

      e7ceac37c616cef4d05c1a6e3ddf990a4aab892ebf89aae35d2db29a20a07c86409273fc2fffdee616afdac598096ba243f20078216e0f053be0c281ff766744

    • SSDEEP

      1536:V7Zf/FAxTWY1++PJHJXA/OsIZfzc3/Q8zxtjm8szV6VSWtV6Vp:fnyiQSoojmHzV6VSWtV6Vp

    Score
    9/10
    • Renames multiple (2846) files with added filename extension

      This suggests ransomware activity of encrypting all the files on the system.

    • UPX dump on OEP (original entry point)

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks