Analysis
-
max time kernel
271s -
max time network
280s -
platform
windows11-21h2_x64 -
resource
win11-20240508-en -
resource tags
arch:x64arch:x86image:win11-20240508-enlocale:en-usos:windows11-21h2-x64system -
submitted
02-07-2024 19:49
Behavioral task
behavioral1
Sample
ready.apk
Resource
win11-20240508-en
3 signatures
300 seconds
General
-
Target
ready.apk
-
Size
6.2MB
-
MD5
046dca69a7c6786c854de1c242f7db1a
-
SHA1
a8a07e7b343fdb9027d480cf2b13a2f5152dc0aa
-
SHA256
8fbb578cb1d7cdd230f496dfede478bda658dc965c7bc002b91f98357f4d3b04
-
SHA512
4cc3254b37c0d46f1fed7e6dbbb97c1112ea82a0becdcf3c51878797ded3cc81a41e46ddcd339a6941004d11c12cdbc910e311739ac19ba18981c2fd89b40733
-
SSDEEP
24576:hWVOY3SF2GluOMEtMsWjVlgKboQSjEckoQBwCTZFXdbkVj:hWAFVDtUlgKRSjEDrXVO
Score
3/10
Malware Config
Signatures
-
Enumerates physical storage devices 1 TTPs
Attempts to interact with connected storage/optical drive(s).
-
Modifies registry class 2 IoCs
Processes:
OpenWith.execmd.exedescription ioc process Key created \REGISTRY\USER\S-1-5-21-2457560273-69882387-977367775-1000_Classes\Local Settings OpenWith.exe Key created \REGISTRY\USER\S-1-5-21-2457560273-69882387-977367775-1000_Classes\Local Settings cmd.exe -
Suspicious use of SetWindowsHookEx 1 IoCs
Processes:
OpenWith.exepid process 3300 OpenWith.exe