General

  • Target

    eac7af25bee4df319698817c319f2428ab2ea9c5c8ebafbeeb6cc577a085f468

  • Size

    128KB

  • Sample

    240701-ethg8ayhnr

  • MD5

    f61f57a9bbe883c8a3aec468ee8bcab3

  • SHA1

    d166bc801fd59560e0b45c7061fde0ef14116066

  • SHA256

    eac7af25bee4df319698817c319f2428ab2ea9c5c8ebafbeeb6cc577a085f468

  • SHA512

    5053dedeba083f55f7804a5f84e9ebcc6aa2138a15beba0b2b8cd314f691a95fd4925faa6404aad405d98cd71715416a96b30753f387f825f61247d6c19a10c1

  • SSDEEP

    3072:jRa3vD7XnqYZbFS3TdPf1XkmW2wS7IrHrYj:jg3vPXVbgjdlUmHwMOHm

Score
10/10

Malware Config

Targets

    • Target

      eac7af25bee4df319698817c319f2428ab2ea9c5c8ebafbeeb6cc577a085f468

    • Size

      128KB

    • MD5

      f61f57a9bbe883c8a3aec468ee8bcab3

    • SHA1

      d166bc801fd59560e0b45c7061fde0ef14116066

    • SHA256

      eac7af25bee4df319698817c319f2428ab2ea9c5c8ebafbeeb6cc577a085f468

    • SHA512

      5053dedeba083f55f7804a5f84e9ebcc6aa2138a15beba0b2b8cd314f691a95fd4925faa6404aad405d98cd71715416a96b30753f387f825f61247d6c19a10c1

    • SSDEEP

      3072:jRa3vD7XnqYZbFS3TdPf1XkmW2wS7IrHrYj:jg3vPXVbgjdlUmHwMOHm

    Score
    10/10
    • Adds autorun key to be loaded by Explorer.exe on startup

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Tasks