General
-
Target
ee0cafc3ef8c0756bf17e3acaf2987d92d60e7eea41b6bb59e4a4af9b4daac60
-
Size
50KB
-
Sample
240701-ezjx8swdmf
-
MD5
7803e94a02e8b16e7f044b1aaa4f99af
-
SHA1
14748a3b58b273e319f7ca96203ec3ae9bad43af
-
SHA256
ee0cafc3ef8c0756bf17e3acaf2987d92d60e7eea41b6bb59e4a4af9b4daac60
-
SHA512
8e7614c70958452d2e7a24a666cd99b41f8ba6c0d29ad600fbea26facfd6ca62431676a4e4dc0d04b56b5486e46e97c1c2d568d8e0f720860edc7e24b160ed60
-
SSDEEP
768:kBT37CPKKIm0CAbLg++PJHJzIWD+dVdCYgck5sIZFlzc3/Sg2aDM9uA9DM9uAF+7:CTWn1++PJHJXA/OsIZfzc3/Q8Oy4
Behavioral task
behavioral1
Sample
ee0cafc3ef8c0756bf17e3acaf2987d92d60e7eea41b6bb59e4a4af9b4daac60.exe
Resource
win7-20231129-en
Behavioral task
behavioral2
Sample
ee0cafc3ef8c0756bf17e3acaf2987d92d60e7eea41b6bb59e4a4af9b4daac60.exe
Resource
win10v2004-20240508-en
Malware Config
Targets
-
-
Target
ee0cafc3ef8c0756bf17e3acaf2987d92d60e7eea41b6bb59e4a4af9b4daac60
-
Size
50KB
-
MD5
7803e94a02e8b16e7f044b1aaa4f99af
-
SHA1
14748a3b58b273e319f7ca96203ec3ae9bad43af
-
SHA256
ee0cafc3ef8c0756bf17e3acaf2987d92d60e7eea41b6bb59e4a4af9b4daac60
-
SHA512
8e7614c70958452d2e7a24a666cd99b41f8ba6c0d29ad600fbea26facfd6ca62431676a4e4dc0d04b56b5486e46e97c1c2d568d8e0f720860edc7e24b160ed60
-
SSDEEP
768:kBT37CPKKIm0CAbLg++PJHJzIWD+dVdCYgck5sIZFlzc3/Sg2aDM9uA9DM9uAF+7:CTWn1++PJHJXA/OsIZfzc3/Q8Oy4
Score9/10-
Renames multiple (3565) files with added filename extension
This suggests ransomware activity of encrypting all the files on the system.
-
UPX dump on OEP (original entry point)
-