General

  • Target

    0a2634bd2b3e1e5d4105084525b0a8e3cb85f7bd78d3465fa0a88c175c9077e7

  • Size

    173KB

  • Sample

    240702-x82hrawaqa

  • MD5

    5326363bbbdf183a0fb62d82b909e4a0

  • SHA1

    28528c8f4e7d591dfa9220704c296d4ed68efbf1

  • SHA256

    0a2634bd2b3e1e5d4105084525b0a8e3cb85f7bd78d3465fa0a88c175c9077e7

  • SHA512

    82cd1d62569c9ab809e9f96c5d76a71202ee8febfe5ae89e157955217b2dc70a033b479fa0564ca8aed6646f302083439774a91851eac2a5be991c9d0dc156c4

  • SSDEEP

    3072:T55jL3RyJmCm2vDdJWvDWQTclVHQQT5BNnGv9c1KuU3:d5jL3RycCm2vDduDWxNzfkn7

Malware Config

Extracted

Family

smokeloader

Botnet

pub2

Targets

    • Target

      0a2634bd2b3e1e5d4105084525b0a8e3cb85f7bd78d3465fa0a88c175c9077e7

    • Size

      173KB

    • MD5

      5326363bbbdf183a0fb62d82b909e4a0

    • SHA1

      28528c8f4e7d591dfa9220704c296d4ed68efbf1

    • SHA256

      0a2634bd2b3e1e5d4105084525b0a8e3cb85f7bd78d3465fa0a88c175c9077e7

    • SHA512

      82cd1d62569c9ab809e9f96c5d76a71202ee8febfe5ae89e157955217b2dc70a033b479fa0564ca8aed6646f302083439774a91851eac2a5be991c9d0dc156c4

    • SSDEEP

      3072:T55jL3RyJmCm2vDdJWvDWQTclVHQQT5BNnGv9c1KuU3:d5jL3RycCm2vDduDWxNzfkn7

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

Peripheral Device Discovery

1
T1120

System Information Discovery

1
T1082

Tasks