General
-
Target
pa collective agreement pay 31201.js
-
Size
13.9MB
-
Sample
240701-qn2vfsxdrj
-
MD5
1c4259062faaac20eb7588c43b41b67a
-
SHA1
9c58d602fd7cbf72ed5e956160e4047d58b98194
-
SHA256
9b2e8b3f7a126a2e0d6bfadf984979189a6510cbfabf4f50f4880d7e4cbea119
-
SHA512
6da1fc9295aa096330bae9ca11f34b29bec0cd3eb1b0f407c9b5230a604ea7673862860462c7ada45a1a777ff662525de6fc0bf9efdef2608929b7dd0d1ee268
-
SSDEEP
49152:/tLF08dPXWR4ba/JOtdF5pHE2lsfiaahM3o43ORV59VDKtDmtLF08dPXWR4ba/Jw:Zkc43mbkc43mbkc43ml
Static task
static1
Behavioral task
behavioral1
Sample
pa collective agreement pay 31201.js
Resource
win10v2004-20240611-en
Malware Config
Targets
-
-
Target
pa collective agreement pay 31201.js
-
Size
13.9MB
-
MD5
1c4259062faaac20eb7588c43b41b67a
-
SHA1
9c58d602fd7cbf72ed5e956160e4047d58b98194
-
SHA256
9b2e8b3f7a126a2e0d6bfadf984979189a6510cbfabf4f50f4880d7e4cbea119
-
SHA512
6da1fc9295aa096330bae9ca11f34b29bec0cd3eb1b0f407c9b5230a604ea7673862860462c7ada45a1a777ff662525de6fc0bf9efdef2608929b7dd0d1ee268
-
SSDEEP
49152:/tLF08dPXWR4ba/JOtdF5pHE2lsfiaahM3o43ORV59VDKtDmtLF08dPXWR4ba/Jw:Zkc43mbkc43mbkc43ml
Score10/10-
GootLoader
JavaScript loader known for delivering other families such as Gootkit and Cobaltstrike.
-
Blocklisted process makes network request
-
Checks computer location settings
Looks up country code configured in the registry, likely geofence.
-