General

  • Target

    ee3bd21b1fcc82c410da9270b56366f7ad52c688b0b7a92a9afbf8eb4d98d035

  • Size

    68KB

  • Sample

    240701-eznleswdna

  • MD5

    d97379c6d80ba7b679fdebd94bfac7ee

  • SHA1

    6cf8c8e2cfe54aea587b9386367c3493d42a3ae9

  • SHA256

    ee3bd21b1fcc82c410da9270b56366f7ad52c688b0b7a92a9afbf8eb4d98d035

  • SHA512

    d4ef95659c12d3311e056d782ff14b201a661566be01ee5c3d26f5f33e0b914567a4e1b007dcf8a84e8848a082f590022122afa9140e8ed7cef80e742ee1ecf3

  • SSDEEP

    1536:V7Zf/FAxTWY1++PJHJXA/OsIZfzc3/Q8c:fnyiQSoP

Score
10/10

Malware Config

Targets

    • Target

      ee3bd21b1fcc82c410da9270b56366f7ad52c688b0b7a92a9afbf8eb4d98d035

    • Size

      68KB

    • MD5

      d97379c6d80ba7b679fdebd94bfac7ee

    • SHA1

      6cf8c8e2cfe54aea587b9386367c3493d42a3ae9

    • SHA256

      ee3bd21b1fcc82c410da9270b56366f7ad52c688b0b7a92a9afbf8eb4d98d035

    • SHA512

      d4ef95659c12d3311e056d782ff14b201a661566be01ee5c3d26f5f33e0b914567a4e1b007dcf8a84e8848a082f590022122afa9140e8ed7cef80e742ee1ecf3

    • SSDEEP

      1536:V7Zf/FAxTWY1++PJHJXA/OsIZfzc3/Q8c:fnyiQSoP

    Score
    9/10
    • Renames multiple (3307) files with added filename extension

      This suggests ransomware activity of encrypting all the files on the system.

    • UPX dump on OEP (original entry point)

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks