General

  • Target

    e52de97c17a2c76adab50cc3d3c2ee8a8f84a97fbeee14471684a9d12559d621

  • Size

    139KB

  • Sample

    240701-egcq7svhnb

  • MD5

    3d17f5f0c6abf27c8971494095eaee2e

  • SHA1

    2df8a34bc47db0de76a58f0bd9c06d384b12381e

  • SHA256

    e52de97c17a2c76adab50cc3d3c2ee8a8f84a97fbeee14471684a9d12559d621

  • SHA512

    74479e2a7f06e6e07b116db37de4bee8fce6d75114a15e37002a908ff38371411371be8c103257621e619d1c20da5d9ce3938c8038b60ba0bd198f091e623030

  • SSDEEP

    1536:rC2/fYuPfbESFYXRWhpKRycRd57JkIqFHhzm4hWru/BzihhMN45MF5FvHP132xPl:r7YubEwYXRWhpAJUHhzm4hUukS6Kmecf

Score
8/10

Malware Config

Targets

    • Target

      e52de97c17a2c76adab50cc3d3c2ee8a8f84a97fbeee14471684a9d12559d621

    • Size

      139KB

    • MD5

      3d17f5f0c6abf27c8971494095eaee2e

    • SHA1

      2df8a34bc47db0de76a58f0bd9c06d384b12381e

    • SHA256

      e52de97c17a2c76adab50cc3d3c2ee8a8f84a97fbeee14471684a9d12559d621

    • SHA512

      74479e2a7f06e6e07b116db37de4bee8fce6d75114a15e37002a908ff38371411371be8c103257621e619d1c20da5d9ce3938c8038b60ba0bd198f091e623030

    • SSDEEP

      1536:rC2/fYuPfbESFYXRWhpKRycRd57JkIqFHhzm4hWru/BzihhMN45MF5FvHP132xPl:r7YubEwYXRWhpAJUHhzm4hUukS6Kmecf

    Score
    8/10
    • Stops running service(s)

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Execution

System Services

1
T1569

Service Execution

1
T1569.002

Persistence

Create or Modify System Process

1
T1543

Windows Service

1
T1543.003

Privilege Escalation

Create or Modify System Process

1
T1543

Windows Service

1
T1543.003

Defense Evasion

Impair Defenses

1
T1562

Impact

Service Stop

1
T1489

Tasks