General

  • Target

    ee0cafc3ef8c0756bf17e3acaf2987d92d60e7eea41b6bb59e4a4af9b4daac60

  • Size

    50KB

  • Sample

    240701-ezjx8swdmf

  • MD5

    7803e94a02e8b16e7f044b1aaa4f99af

  • SHA1

    14748a3b58b273e319f7ca96203ec3ae9bad43af

  • SHA256

    ee0cafc3ef8c0756bf17e3acaf2987d92d60e7eea41b6bb59e4a4af9b4daac60

  • SHA512

    8e7614c70958452d2e7a24a666cd99b41f8ba6c0d29ad600fbea26facfd6ca62431676a4e4dc0d04b56b5486e46e97c1c2d568d8e0f720860edc7e24b160ed60

  • SSDEEP

    768:kBT37CPKKIm0CAbLg++PJHJzIWD+dVdCYgck5sIZFlzc3/Sg2aDM9uA9DM9uAF+7:CTWn1++PJHJXA/OsIZfzc3/Q8Oy4

Score
10/10

Malware Config

Targets

    • Target

      ee0cafc3ef8c0756bf17e3acaf2987d92d60e7eea41b6bb59e4a4af9b4daac60

    • Size

      50KB

    • MD5

      7803e94a02e8b16e7f044b1aaa4f99af

    • SHA1

      14748a3b58b273e319f7ca96203ec3ae9bad43af

    • SHA256

      ee0cafc3ef8c0756bf17e3acaf2987d92d60e7eea41b6bb59e4a4af9b4daac60

    • SHA512

      8e7614c70958452d2e7a24a666cd99b41f8ba6c0d29ad600fbea26facfd6ca62431676a4e4dc0d04b56b5486e46e97c1c2d568d8e0f720860edc7e24b160ed60

    • SSDEEP

      768:kBT37CPKKIm0CAbLg++PJHJzIWD+dVdCYgck5sIZFlzc3/Sg2aDM9uA9DM9uAF+7:CTWn1++PJHJXA/OsIZfzc3/Q8Oy4

    Score
    9/10
    • Renames multiple (3565) files with added filename extension

      This suggests ransomware activity of encrypting all the files on the system.

    • UPX dump on OEP (original entry point)

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks