General

  • Target

    loader.exe

  • Size

    56KB

  • Sample

    240701-wfjlss1dnh

  • MD5

    6a51ef4e6eba8e3b00bed51afe2bfb13

  • SHA1

    de977ecdb1b6446442efa7f5df472a66bd929fbc

  • SHA256

    0cae5c2cdad4da01d30e7ca7a561d5ff0812542746d275971dfeaaf728d3e942

  • SHA512

    e57ce513660d1e02ece8c6250eb894f6161a887e2dce2dd9dd6d6f90571c4290b4a579777b1e39053ad52598223db984f6a93ea7ccb63c93df4746d79aa8240b

  • SSDEEP

    1536:9T+LQZAY3FGNh7ux40uKmywBWkkf2cTvTYE9vzcACOR6US:9W2yqx4ymyRkgnjbcH

Score
10/10

Malware Config

Targets

    • Target

      loader.exe

    • Size

      56KB

    • MD5

      6a51ef4e6eba8e3b00bed51afe2bfb13

    • SHA1

      de977ecdb1b6446442efa7f5df472a66bd929fbc

    • SHA256

      0cae5c2cdad4da01d30e7ca7a561d5ff0812542746d275971dfeaaf728d3e942

    • SHA512

      e57ce513660d1e02ece8c6250eb894f6161a887e2dce2dd9dd6d6f90571c4290b4a579777b1e39053ad52598223db984f6a93ea7ccb63c93df4746d79aa8240b

    • SSDEEP

      1536:9T+LQZAY3FGNh7ux40uKmywBWkkf2cTvTYE9vzcACOR6US:9W2yqx4ymyRkgnjbcH

    Score
    10/10
    • Detect Xworm Payload

    • Xworm

      Xworm is a remote access trojan written in C#.

MITRE ATT&CK Matrix

Tasks