General

  • Target

    ee02d26b6c15a50e0c55c131867aa8469759b8b14f871e97089917df3bb00a75

  • Size

    648KB

  • Sample

    240701-ezd2zszamk

  • MD5

    e489c97b1c044154cdd9e2b6335258a1

  • SHA1

    722f20100b5ff1c19af01a6289e6447d3deb2541

  • SHA256

    ee02d26b6c15a50e0c55c131867aa8469759b8b14f871e97089917df3bb00a75

  • SHA512

    981fbd233dbdbeaac0c5f704e8d9d2b0eaffd255741829c0bb4a9c79f5ce0901e8e782f6836f749b262c5d43b1ca66dc4dba179bbac1b83e9e41e08a9c71b49e

  • SSDEEP

    12288:rqz2DWUnTNjYGgpK/vnRsmH5Ckt73qfKrrzD89f24pWYbCXGah2JoHq1MGJlyw9/:Gz2DWsTNjx+mZCkt76f/24pN+XNqNG6L

Score
7/10

Malware Config

Targets

    • Target

      ee02d26b6c15a50e0c55c131867aa8469759b8b14f871e97089917df3bb00a75

    • Size

      648KB

    • MD5

      e489c97b1c044154cdd9e2b6335258a1

    • SHA1

      722f20100b5ff1c19af01a6289e6447d3deb2541

    • SHA256

      ee02d26b6c15a50e0c55c131867aa8469759b8b14f871e97089917df3bb00a75

    • SHA512

      981fbd233dbdbeaac0c5f704e8d9d2b0eaffd255741829c0bb4a9c79f5ce0901e8e782f6836f749b262c5d43b1ca66dc4dba179bbac1b83e9e41e08a9c71b49e

    • SSDEEP

      12288:rqz2DWUnTNjYGgpK/vnRsmH5Ckt73qfKrrzD89f24pWYbCXGah2JoHq1MGJlyw9/:Gz2DWsTNjx+mZCkt76f/24pN+XNqNG6L

    Score
    7/10
    • Executes dropped EXE

    • Loads dropped DLL

    • Reads user/profile data of web browsers

      Infostealers often target stored browser data, which can include saved credentials etc.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Credential Access

Unsecured Credentials

1
T1552

Credentials In Files

1
T1552.001

Discovery

System Information Discovery

3
T1082

Query Registry

3
T1012

Peripheral Device Discovery

1
T1120

Collection

Data from Local System

1
T1005

Tasks