General

  • Target

    e65941ca89cd976c8e33d55c3405021639f2e18baa08952672e4f4bb3814f215

  • Size

    1.1MB

  • Sample

    240701-ejadvswakc

  • MD5

    0caa2b332346e0b291873b3417a76e6a

  • SHA1

    e3e279ad4e21e8dc5365daebe0c87d2d50e54104

  • SHA256

    e65941ca89cd976c8e33d55c3405021639f2e18baa08952672e4f4bb3814f215

  • SHA512

    add3c1feaa154681f0074c4016a1e5af7a4516a2eb0fdbc91c8a9c5a41a413f508c0baebbc0ce638e6418c9e61a38b79b65ea54d578e234e4a6a4f2990a579f2

  • SSDEEP

    24576:eQgrQg5Wm0BmmvFimm0MTP7hm0BmmvFimm0HkEyDucEQX:4Qg5SiLi0kEyDucEQX

Score
10/10

Malware Config

Targets

    • Target

      e65941ca89cd976c8e33d55c3405021639f2e18baa08952672e4f4bb3814f215

    • Size

      1.1MB

    • MD5

      0caa2b332346e0b291873b3417a76e6a

    • SHA1

      e3e279ad4e21e8dc5365daebe0c87d2d50e54104

    • SHA256

      e65941ca89cd976c8e33d55c3405021639f2e18baa08952672e4f4bb3814f215

    • SHA512

      add3c1feaa154681f0074c4016a1e5af7a4516a2eb0fdbc91c8a9c5a41a413f508c0baebbc0ce638e6418c9e61a38b79b65ea54d578e234e4a6a4f2990a579f2

    • SSDEEP

      24576:eQgrQg5Wm0BmmvFimm0MTP7hm0BmmvFimm0HkEyDucEQX:4Qg5SiLi0kEyDucEQX

    Score
    10/10
    • Adds autorun key to be loaded by Explorer.exe on startup

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Tasks