General

  • Target

    e44c79997a87c60c23180513038a8a7eb7bd12373cd811b0fcf33290cbb83a1e

  • Size

    481KB

  • Sample

    240701-efav8ayemk

  • MD5

    760733eeb88f08296d468b4cab1ca573

  • SHA1

    7de544e84e687c87661db7f6c9581f5da16ac3dd

  • SHA256

    e44c79997a87c60c23180513038a8a7eb7bd12373cd811b0fcf33290cbb83a1e

  • SHA512

    1fad3674e4b6c2efaddcefb48b1f291eae2c17627f13bf907c94a755acd32753506b8c360fce7b0833834957d8364d899095e45685cc4ec5b0ae179a4c4c01b0

  • SSDEEP

    6144:lefFLn0JnOarFM6234lKm3mo8Yvi4KsLTFM6234lKm3+ry+dBQ:lo0ZOoFB24lwR45FB24l4++dBQ

Score
10/10

Malware Config

Targets

    • Target

      e44c79997a87c60c23180513038a8a7eb7bd12373cd811b0fcf33290cbb83a1e

    • Size

      481KB

    • MD5

      760733eeb88f08296d468b4cab1ca573

    • SHA1

      7de544e84e687c87661db7f6c9581f5da16ac3dd

    • SHA256

      e44c79997a87c60c23180513038a8a7eb7bd12373cd811b0fcf33290cbb83a1e

    • SHA512

      1fad3674e4b6c2efaddcefb48b1f291eae2c17627f13bf907c94a755acd32753506b8c360fce7b0833834957d8364d899095e45685cc4ec5b0ae179a4c4c01b0

    • SSDEEP

      6144:lefFLn0JnOarFM6234lKm3mo8Yvi4KsLTFM6234lKm3+ry+dBQ:lo0ZOoFB24lwR45FB24l4++dBQ

    Score
    10/10
    • Adds autorun key to be loaded by Explorer.exe on startup

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Tasks