General

  • Target

    ed4cb53672d795e902de707430430f4ee4cc602e75631bb63490b35c9a061b73

  • Size

    69KB

  • Sample

    240701-exq9jazajl

  • MD5

    fa7f0b0d9a3ecdfc7f7f998dc2b73fe9

  • SHA1

    31c18d471ec139582514e75f9ed805ebbdfb9e76

  • SHA256

    ed4cb53672d795e902de707430430f4ee4cc602e75631bb63490b35c9a061b73

  • SHA512

    2048c1d1eeefa25f337fd3ab57477337130ee0e823a21897f8f32c08cb163715edaf646f6b859e4c3b411e52d1823d4a6487f3d9d13af56f5b3aad5c12c9ace3

  • SSDEEP

    768:V7Blpf/FAK65euBT37CPKKQSjyJJ1EXBwzEXBwABT37CPKKdJJxdPO9Ot6K/K2Z2:V7Zf/FAxTWoJJ0TW7JJQOEK/K3

Score
10/10

Malware Config

Targets

    • Target

      ed4cb53672d795e902de707430430f4ee4cc602e75631bb63490b35c9a061b73

    • Size

      69KB

    • MD5

      fa7f0b0d9a3ecdfc7f7f998dc2b73fe9

    • SHA1

      31c18d471ec139582514e75f9ed805ebbdfb9e76

    • SHA256

      ed4cb53672d795e902de707430430f4ee4cc602e75631bb63490b35c9a061b73

    • SHA512

      2048c1d1eeefa25f337fd3ab57477337130ee0e823a21897f8f32c08cb163715edaf646f6b859e4c3b411e52d1823d4a6487f3d9d13af56f5b3aad5c12c9ace3

    • SSDEEP

      768:V7Blpf/FAK65euBT37CPKKQSjyJJ1EXBwzEXBwABT37CPKKdJJxdPO9Ot6K/K2Z2:V7Zf/FAxTWoJJ0TW7JJQOEK/K3

    Score
    9/10
    • Renames multiple (3465) files with added filename extension

      This suggests ransomware activity of encrypting all the files on the system.

    • UPX dump on OEP (original entry point)

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks