General

  • Target

    maizu hack v1.4.rar

  • Size

    403KB

  • Sample

    240701-qnfbfsxdnp

  • MD5

    45768dbe40703c4545fc0c1a0f431019

  • SHA1

    68c53d26c48f31bd61042f8b7071c5bb6b78b0da

  • SHA256

    cb1bcf331721008e6dd6b46cd0f1880612374d54403836f43f264f924789e610

  • SHA512

    c984cc4032e0d276d63a34bc03563f422ca3e258a72a9d734304662b268577af873b33f5bfdc3f8a7e2e34ddd391c99a436a865842b502a9649a141242355a4a

  • SSDEEP

    12288:GJwSrUZSQmEyLvIg8eoCrOT70Xr1w4pLZgeOTn+:GWeUZSQZCXo7wXrmSLmDa

Score
10/10

Malware Config

Extracted

Family

lumma

C2

https://piedsiggnycliquieaw.shop/api

https://potterryisiw.shop/api

https://foodypannyjsud.shop/api

https://contintnetksows.shop/api

https://reinforcedirectorywd.shop/api

Targets

    • Target

      maizu hack v1.4/app/apper.dll

    • Size

      84KB

    • MD5

      ed0e1f5710b2bf5b3ca3136cd308cc23

    • SHA1

      da966bf237ac052116366eb0616fae2cf36fee18

    • SHA256

      57b5197e11101c2e06bdd86d238fbb6c8a3ea565591ca9648200c3ee3a03dbc2

    • SHA512

      6b1274f6300074a8b765f16b54947aded0fc1bff4e6feb798ff17977f9149bff25f7e63f8cd2a1ad793b01d1345a9ba054c5e578b6dbdc9b30ab95439fdf412c

    • SSDEEP

      3:H:H

    Score
    1/10
    • Target

      maizu hack v1.4/cfg.dll

    • Size

      118KB

    • MD5

      dfeaa87a10db2d555593e92f295f5a25

    • SHA1

      67e42c9b61e56e33fc6d7ab94ca921860628819e

    • SHA256

      36cc45bfe3b63ea42af564dd2c221219f7fb2e3f3ce93ca8cba3a53539bceb0f

    • SHA512

      891002e2a94dce513706709dad5e78419f3205cc8e102b048ed4d405a84fa5c211711a0b9cc311cc69f6602681dd7da8ac3cc1760828c374b06d51e203872062

    • SSDEEP

      3:H:H

    Score
    1/10
    • Target

      maizu hack v1.4/data/aim.dll

    • Size

      594KB

    • MD5

      34d2ae40522c8aca067172f3108d4bac

    • SHA1

      0632a56c3d0fa2b6d46ec689c83c8a7465099012

    • SHA256

      0416210832c265bd2bad1319c65478194ec64789a7587cb35b51d1b4869586ed

    • SHA512

      372639c3c4532b83d11988b6bc58f81e3a90b1dfd8da98f400e620fe9fe4eb8f2c7c2e3dc91708cd615b82e35374665c3601190091f4a597a553d5613b0f20ac

    • SSDEEP

      3:H:H

    Score
    1/10
    • Target

      maizu hack v1.4/data/fover.dll

    • Size

      67KB

    • MD5

      decaca5914d4409681c179f0f2a314f3

    • SHA1

      2a446b3ac2b9c8ec1b53da9a1a45197052a11602

    • SHA256

      4d32733ccac8b13505472b3b107e5fcd313d8e192433997dfd5f33548d4245b7

    • SHA512

      baa51713b9fedd13d2b02f139cdf656bd1ba3a7fffd320f75b3e2b98ca6bdf114c6bfa7fc01b59c79a7603db0906a7d8a520b79092d3e51e6b22626be6130986

    • SSDEEP

      3:n:n

    Score
    1/10
    • Target

      maizu hack v1.4/data/setting.dll

    • Size

      135KB

    • MD5

      55b437f743590610be2a2501cf2c1582

    • SHA1

      41b7e82ab633aa3e8ae7dfbad1e716d730a08a93

    • SHA256

      d75c63c3cd03ee4000fe06115b4f03d60d18e075a29ff455ea6ce2c0a6add84f

    • SHA512

      c11d58d2b9a469d2a0203808cb731bf4b1c6c3052a4d308ca0f9a1148c53d7daeba0dd761408880c0bffc82cecb2a83b8097d42faab1816819dde1d049fcae85

    • SSDEEP

      3:n:n

    Score
    1/10
    • Target

      maizu hack v1.4/data/vkfow2p.dll

    • Size

      118KB

    • MD5

      dfeaa87a10db2d555593e92f295f5a25

    • SHA1

      67e42c9b61e56e33fc6d7ab94ca921860628819e

    • SHA256

      36cc45bfe3b63ea42af564dd2c221219f7fb2e3f3ce93ca8cba3a53539bceb0f

    • SHA512

      891002e2a94dce513706709dad5e78419f3205cc8e102b048ed4d405a84fa5c211711a0b9cc311cc69f6602681dd7da8ac3cc1760828c374b06d51e203872062

    • SSDEEP

      3:H:H

    Score
    1/10
    • Target

      maizu hack v1.4/maizu hack v1.4.exe

    • Size

      507KB

    • MD5

      5241cbe1ca5ad91d9701dcd3e86d0be4

    • SHA1

      42e2343018e6f26747f21310e1498a0b7558cee7

    • SHA256

      18b8ddccfd60b09d5e7148f3a5ce61c61d37da4de9e4206ad28155ad92d70a5d

    • SHA512

      208b7e3efce893a7a766d03f5185f065e0067b100ec5917fe9a3030906ce0740669d95ad2a128cdecf7cd70051cd04e1befa1fec5ce855a6a016016ae25950e1

    • SSDEEP

      12288:1+0NNkaifVNXUYLnft4Com2511gYTqKoGlGnzc:17yaCTXU+t4CoP5FTxoG

    Score
    10/10
    • Lumma Stealer

      An infostealer written in C++ first seen in August 2022.

    • Suspicious use of SetThreadContext

    • Target

      maizu hack v1.4/updater.dll

    • Size

      67KB

    • MD5

      decaca5914d4409681c179f0f2a314f3

    • SHA1

      2a446b3ac2b9c8ec1b53da9a1a45197052a11602

    • SHA256

      4d32733ccac8b13505472b3b107e5fcd313d8e192433997dfd5f33548d4245b7

    • SHA512

      baa51713b9fedd13d2b02f139cdf656bd1ba3a7fffd320f75b3e2b98ca6bdf114c6bfa7fc01b59c79a7603db0906a7d8a520b79092d3e51e6b22626be6130986

    • SSDEEP

      3:n:n

    Score
    1/10
    • Target

      maizu hack v1.4/version.dll

    • Size

      203KB

    • MD5

      a5b8f7deff0734c7e985d2a756b22ff8

    • SHA1

      656f8fe90c2d59942171f1e081827b3d038c1414

    • SHA256

      9d86f442f65c177cf2a6e659c974ce81e16acaa2663c378c6c6052da8e9c3e6a

    • SHA512

      404aa5fd2c6823fe71ff0c2b6dc341b64772b936645e69a805e67a4217f3fe1d73b398eae445f2e7745324f4ae6f23707f5258027fbe1ceb98947b59c44897f0

    • SSDEEP

      3:n:n

    Score
    1/10

MITRE ATT&CK Matrix

Tasks