General

  • Target

    b0c9836280d164dc39d25813e1e62e96903b5c80e28904b483ba9373181d8138

  • Size

    266KB

  • Sample

    240701-etrqwswckh

  • MD5

    ea0ec8dc16e3d855107988798de55f2c

  • SHA1

    c60e4f9e4da8d045582201296dc2fc51a63bcbb8

  • SHA256

    b0c9836280d164dc39d25813e1e62e96903b5c80e28904b483ba9373181d8138

  • SHA512

    d88e0befaf767a73eab296e4fefc869a9e5af7154ea27a3c9fc18d19e4e50fbeda807b7351c00c1a8fc9fb88eb253bd57a6176c2848a9cc0a0fa02b510b0cec6

  • SSDEEP

    6144:TXzKdNY49u8rVKV37zQvT/TRPkTMesWb0BjeB:Ma4ANzQ7/tPCN90B

Score
7/10
upx

Malware Config

Targets

    • Target

      b0c9836280d164dc39d25813e1e62e96903b5c80e28904b483ba9373181d8138

    • Size

      266KB

    • MD5

      ea0ec8dc16e3d855107988798de55f2c

    • SHA1

      c60e4f9e4da8d045582201296dc2fc51a63bcbb8

    • SHA256

      b0c9836280d164dc39d25813e1e62e96903b5c80e28904b483ba9373181d8138

    • SHA512

      d88e0befaf767a73eab296e4fefc869a9e5af7154ea27a3c9fc18d19e4e50fbeda807b7351c00c1a8fc9fb88eb253bd57a6176c2848a9cc0a0fa02b510b0cec6

    • SSDEEP

      6144:TXzKdNY49u8rVKV37zQvT/TRPkTMesWb0BjeB:Ma4ANzQ7/tPCN90B

    Score
    7/10
    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks