General

  • Target

    2024-07-01_71bc18c511a89c5ea61af1c0ac9c4357_wannacry

  • Size

    5.0MB

  • Sample

    240701-mm4qwawfrd

  • MD5

    71bc18c511a89c5ea61af1c0ac9c4357

  • SHA1

    67058e5304d37422a48fd409b35e195b3eac379b

  • SHA256

    a6b3ad3e3d52a6ae63ad863bb18165521b956ef47a3ec4505e678633e782761c

  • SHA512

    60d92a3a3a085b15af143907d5160657313df996983e7b301a9e47c79f000df8333cc9d9fb9aeff56340688780ea1d291f1a1a27b1d1343a0976953dfc7b0dd4

  • SSDEEP

    49152:2ntQNMSPbcBVQej/1INRx+TSqTdX1HkQo6SAMn9ArNx5Fo2Fih1r5y:y2NPoBhz1aRxcSUDk36SA

Malware Config

Targets

    • Target

      2024-07-01_71bc18c511a89c5ea61af1c0ac9c4357_wannacry

    • Size

      5.0MB

    • MD5

      71bc18c511a89c5ea61af1c0ac9c4357

    • SHA1

      67058e5304d37422a48fd409b35e195b3eac379b

    • SHA256

      a6b3ad3e3d52a6ae63ad863bb18165521b956ef47a3ec4505e678633e782761c

    • SHA512

      60d92a3a3a085b15af143907d5160657313df996983e7b301a9e47c79f000df8333cc9d9fb9aeff56340688780ea1d291f1a1a27b1d1343a0976953dfc7b0dd4

    • SSDEEP

      49152:2ntQNMSPbcBVQej/1INRx+TSqTdX1HkQo6SAMn9ArNx5Fo2Fih1r5y:y2NPoBhz1aRxcSUDk36SA

    • Wannacry

      WannaCry is a ransomware cryptoworm.

    • Contacts a large (2150) amount of remote hosts

      This may indicate a network scan to discover remotely running services.

    • Executes dropped EXE

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Tasks