General

  • Target

    abdfd28827f1e7c092708e1a0be2477d979abf995646666e933c5a885133bf9a

  • Size

    12.9MB

  • Sample

    240701-g8vgfa1glk

  • MD5

    8fd64dc85a9bd1a9c54acc6fc495221f

  • SHA1

    f40e9913e38058e5d33fe2e294fdef1228acfd61

  • SHA256

    abdfd28827f1e7c092708e1a0be2477d979abf995646666e933c5a885133bf9a

  • SHA512

    33b118da33753cb1699b6d4da30581fbde8ad338be716eb232527dd19a9db16ca07af3e1a1c9de62ac95cd7c9271e047ad8a06cfa7805304cce8707c9cd92392

  • SSDEEP

    393216:w9PRaCrKqXsEU6oxUTMCoRCREOUi4JDj:w9Jj5XagoRCCO9i

Score
7/10

Malware Config

Targets

    • Target

      abdfd28827f1e7c092708e1a0be2477d979abf995646666e933c5a885133bf9a

    • Size

      12.9MB

    • MD5

      8fd64dc85a9bd1a9c54acc6fc495221f

    • SHA1

      f40e9913e38058e5d33fe2e294fdef1228acfd61

    • SHA256

      abdfd28827f1e7c092708e1a0be2477d979abf995646666e933c5a885133bf9a

    • SHA512

      33b118da33753cb1699b6d4da30581fbde8ad338be716eb232527dd19a9db16ca07af3e1a1c9de62ac95cd7c9271e047ad8a06cfa7805304cce8707c9cd92392

    • SSDEEP

      393216:w9PRaCrKqXsEU6oxUTMCoRCREOUi4JDj:w9Jj5XagoRCCO9i

    Score
    7/10
    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

    • VMProtect packed file

      Detects executables packed with VMProtect commercial packer.

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks