General

  • Target

    c3efffd90977216d8980d0f868cbdd8540b30deeb695375f92f72be8ed64cb52

  • Size

    265KB

  • Sample

    240701-n23ykazerh

  • MD5

    5c1a1be8e377086706f5bbad7933ccfd

  • SHA1

    8e53de12e1ed281b77754cc44a2612a66253b9ea

  • SHA256

    c3efffd90977216d8980d0f868cbdd8540b30deeb695375f92f72be8ed64cb52

  • SHA512

    eb929cfbba9aadd8432bbeab1fbd27e9e34da4f24ee3cbcbe792c49e618694901e60dc6427603f30f8cb45ee7122eae18e2898577b8c07896be46936e1531238

  • SSDEEP

    6144:ijxwm4V/nxDo3rNIkRdLqC11VGL+NbUXDADT:qwzV/xopIyd91V3yA

Score
10/10

Malware Config

Extracted

Family

gcleaner

C2

185.172.128.90

185.172.128.69

Attributes
  • url_path

    /advdlc.php

Targets

    • Target

      c3efffd90977216d8980d0f868cbdd8540b30deeb695375f92f72be8ed64cb52

    • Size

      265KB

    • MD5

      5c1a1be8e377086706f5bbad7933ccfd

    • SHA1

      8e53de12e1ed281b77754cc44a2612a66253b9ea

    • SHA256

      c3efffd90977216d8980d0f868cbdd8540b30deeb695375f92f72be8ed64cb52

    • SHA512

      eb929cfbba9aadd8432bbeab1fbd27e9e34da4f24ee3cbcbe792c49e618694901e60dc6427603f30f8cb45ee7122eae18e2898577b8c07896be46936e1531238

    • SSDEEP

      6144:ijxwm4V/nxDo3rNIkRdLqC11VGL+NbUXDADT:qwzV/xopIyd91V3yA

    Score
    10/10
    • GCleaner

      GCleaner is a Pay-Per-Install malware loader first discovered in early 2019.

    • Deletes itself

MITRE ATT&CK Matrix ATT&CK v13

Tasks