General

  • Target

    eac7449216789b5503645e105eb4a0f34ce268b68571f397e9d16d289858eee7

  • Size

    768KB

  • Sample

    240701-etc8hayhnp

  • MD5

    e6fbb38404645abc774745c856828c84

  • SHA1

    5769c64c1b66b4a0e73f1dfba803c7a4941e0bb5

  • SHA256

    eac7449216789b5503645e105eb4a0f34ce268b68571f397e9d16d289858eee7

  • SHA512

    676006735ee18e7c9eccb3ba8464035387909d9261018d3c95974f86f42ca99e1762cd1950f1326811ae3aecb061a876a45b122ca037ea9ba257e4dd54586607

  • SSDEEP

    12288:xuQ4v+6IvYvc6IveDVqvQ6IvTPh2kkkkK4kXkkkkkkkkl888888888888888888d:xuQF3q5hPPh2kkkkK4kXkkkkkkkkH

Score
10/10

Malware Config

Targets

    • Target

      eac7449216789b5503645e105eb4a0f34ce268b68571f397e9d16d289858eee7

    • Size

      768KB

    • MD5

      e6fbb38404645abc774745c856828c84

    • SHA1

      5769c64c1b66b4a0e73f1dfba803c7a4941e0bb5

    • SHA256

      eac7449216789b5503645e105eb4a0f34ce268b68571f397e9d16d289858eee7

    • SHA512

      676006735ee18e7c9eccb3ba8464035387909d9261018d3c95974f86f42ca99e1762cd1950f1326811ae3aecb061a876a45b122ca037ea9ba257e4dd54586607

    • SSDEEP

      12288:xuQ4v+6IvYvc6IveDVqvQ6IvTPh2kkkkK4kXkkkkkkkkl888888888888888888d:xuQF3q5hPPh2kkkkK4kXkkkkkkkkH

    Score
    10/10
    • Adds autorun key to be loaded by Explorer.exe on startup

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Tasks