General

  • Target

    f7d4a565cb0cb3a635fd4a03e477df4874cf0f78e8b4cdef0b6bb8e5d8902cc7

  • Size

    102KB

  • Sample

    240701-fddd1awgra

  • MD5

    1e8cbc7d6bbac04ef2f5486e61df2140

  • SHA1

    507ad4fd3a3a3bc12d06edb3054d6fddac7d9360

  • SHA256

    f7d4a565cb0cb3a635fd4a03e477df4874cf0f78e8b4cdef0b6bb8e5d8902cc7

  • SHA512

    4f63574c291153e7a283b38d76fc37d856eabd44583450c9c0fda1ab683e799b3faf7a7cf71a7d63b8ce265d8a655aa63b42f646910b93b317c4044e9352be52

  • SSDEEP

    1536:W7ZppApwEwnmJARJAaXxX27ZppApwEwnmJARJAaXxX2plpI:6pWpUnDXxXapWpUnDXxXJ

Score
9/10

Malware Config

Targets

    • Target

      f7d4a565cb0cb3a635fd4a03e477df4874cf0f78e8b4cdef0b6bb8e5d8902cc7

    • Size

      102KB

    • MD5

      1e8cbc7d6bbac04ef2f5486e61df2140

    • SHA1

      507ad4fd3a3a3bc12d06edb3054d6fddac7d9360

    • SHA256

      f7d4a565cb0cb3a635fd4a03e477df4874cf0f78e8b4cdef0b6bb8e5d8902cc7

    • SHA512

      4f63574c291153e7a283b38d76fc37d856eabd44583450c9c0fda1ab683e799b3faf7a7cf71a7d63b8ce265d8a655aa63b42f646910b93b317c4044e9352be52

    • SSDEEP

      1536:W7ZppApwEwnmJARJAaXxX27ZppApwEwnmJARJAaXxX2plpI:6pWpUnDXxXapWpUnDXxXJ

    Score
    9/10
    • Renames multiple (4741) files with added filename extension

      This suggests ransomware activity of encrypting all the files on the system.

    • Executes dropped EXE

    • Loads dropped DLL

    • Drops file in System32 directory

MITRE ATT&CK Matrix

Tasks