General

  • Target

    e58a8cf66c145af0d8d83436f2db7ae23e98a9deed29e01d5579beeb8a5847a2

  • Size

    96KB

  • Sample

    240701-egkrtayeql

  • MD5

    5d02b61dbab4b04ea240163f4a685bd4

  • SHA1

    3d5358510cb307d24d91315e5a318731d7372d2f

  • SHA256

    e58a8cf66c145af0d8d83436f2db7ae23e98a9deed29e01d5579beeb8a5847a2

  • SHA512

    c6bce381a0c2ba3c13667e45c96e393347f711bdbbff33ab6acbf319676e915824b6da84bdc2ec948ef7605f0818e48b1013577b366b34a70a921d0d9080e26d

  • SSDEEP

    1536:2z2kF+rTWubemrUorNLMgkZPqZN/2L/aIZTJ+7LhkiB0MPiKeEAgH:icfWKeOrNtUPqZ6/aMU7uihJ5

Score
10/10

Malware Config

Targets

    • Target

      e58a8cf66c145af0d8d83436f2db7ae23e98a9deed29e01d5579beeb8a5847a2

    • Size

      96KB

    • MD5

      5d02b61dbab4b04ea240163f4a685bd4

    • SHA1

      3d5358510cb307d24d91315e5a318731d7372d2f

    • SHA256

      e58a8cf66c145af0d8d83436f2db7ae23e98a9deed29e01d5579beeb8a5847a2

    • SHA512

      c6bce381a0c2ba3c13667e45c96e393347f711bdbbff33ab6acbf319676e915824b6da84bdc2ec948ef7605f0818e48b1013577b366b34a70a921d0d9080e26d

    • SSDEEP

      1536:2z2kF+rTWubemrUorNLMgkZPqZN/2L/aIZTJ+7LhkiB0MPiKeEAgH:icfWKeOrNtUPqZ6/aMU7uihJ5

    Score
    10/10
    • Adds autorun key to be loaded by Explorer.exe on startup

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Tasks