General

  • Target

    omega.exe

  • Size

    61KB

  • Sample

    240702-ntcreavbql

  • MD5

    2bc763ee4dd00825e9c0cf0e32152f44

  • SHA1

    c287009dd95b1c5fb69bea287f4a29bb05bfe0cf

  • SHA256

    064d9d0f246fd45d622363c453199557a66a3c51b26fd7ae3b00f4717966cda8

  • SHA512

    a15de5cbc6028a864fcb6917840790a6b6b639a43afee24face4d76ecc0c8d372c287253b33711b40341ed3905895189117ac971ef58d49e0f8094d61d1b144c

  • SSDEEP

    384:NDy+MDAnWCRJTHeTqyQElisrmI0o9PRhYEZY+eUfE5q6TXtowrBEAaVyXM4fBXb8:7MDQHyQ07oBg6rtbBE3VyXNBL83PV9

Score
8/10

Malware Config

Targets

    • Target

      omega.exe

    • Size

      61KB

    • MD5

      2bc763ee4dd00825e9c0cf0e32152f44

    • SHA1

      c287009dd95b1c5fb69bea287f4a29bb05bfe0cf

    • SHA256

      064d9d0f246fd45d622363c453199557a66a3c51b26fd7ae3b00f4717966cda8

    • SHA512

      a15de5cbc6028a864fcb6917840790a6b6b639a43afee24face4d76ecc0c8d372c287253b33711b40341ed3905895189117ac971ef58d49e0f8094d61d1b144c

    • SSDEEP

      384:NDy+MDAnWCRJTHeTqyQElisrmI0o9PRhYEZY+eUfE5q6TXtowrBEAaVyXM4fBXb8:7MDQHyQ07oBg6rtbBE3VyXNBL83PV9

    Score
    8/10
    • Downloads MZ/PE file

    • Executes dropped EXE

    • Loads dropped DLL

    • Checks installed software on the system

      Looks up Uninstall key entries in the registry to enumerate software on the system.

MITRE ATT&CK Matrix ATT&CK v13

Defense Evasion

Modify Registry

1
T1112

Discovery

Query Registry

3
T1012

System Information Discovery

1
T1082

Tasks