General

  • Target

    eb9acce4ce88ad0de22ef2f17d08182cc96c4f000e4206a82eb25defdd2660aa

  • Size

    192KB

  • Sample

    240701-evrsaawcnb

  • MD5

    0ef3f7d43a4f3d06362621284e323284

  • SHA1

    05e08fae6e9c27a1f98989fdd30393ee3612466b

  • SHA256

    eb9acce4ce88ad0de22ef2f17d08182cc96c4f000e4206a82eb25defdd2660aa

  • SHA512

    8b17f32909d28545ff9c4ca4cb9b1966277b231a38e11c3b99ae0f2910e001fdc35ef0671e0c516612145ceecaa64a04f1aa8a32dd2018ebb7cf498d2b5a71d7

  • SSDEEP

    3072:chtw0ud9vmzrxYm7AcE/+EWa6iYJiw4Sp+7H7wWkqrifbdB7dYk1Bx8DpsV6OzrR:chtw02mK3WaJkiwBOHhkym/89b0

Score
10/10

Malware Config

Targets

    • Target

      eb9acce4ce88ad0de22ef2f17d08182cc96c4f000e4206a82eb25defdd2660aa

    • Size

      192KB

    • MD5

      0ef3f7d43a4f3d06362621284e323284

    • SHA1

      05e08fae6e9c27a1f98989fdd30393ee3612466b

    • SHA256

      eb9acce4ce88ad0de22ef2f17d08182cc96c4f000e4206a82eb25defdd2660aa

    • SHA512

      8b17f32909d28545ff9c4ca4cb9b1966277b231a38e11c3b99ae0f2910e001fdc35ef0671e0c516612145ceecaa64a04f1aa8a32dd2018ebb7cf498d2b5a71d7

    • SSDEEP

      3072:chtw0ud9vmzrxYm7AcE/+EWa6iYJiw4Sp+7H7wWkqrifbdB7dYk1Bx8DpsV6OzrR:chtw02mK3WaJkiwBOHhkym/89b0

    Score
    10/10
    • Adds autorun key to be loaded by Explorer.exe on startup

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Tasks