General
-
Target
91127208847b0f7eb0c7ec6ddf2621e6b728c207a9706d99aac127d3dc7cb848
-
Size
5.8MB
-
Sample
240703-14r1asybrm
-
MD5
44881901ae7c9e065f4c13c5a2d9cac2
-
SHA1
b318577803762dddf6f9923e17534f67ad21f8a3
-
SHA256
91127208847b0f7eb0c7ec6ddf2621e6b728c207a9706d99aac127d3dc7cb848
-
SHA512
9b37129216906c2e860c33de4426701b2f23b7f999d6c29ba09096f40ab8e19e0fc4fe4a9da454abeaa6c677cbcdeae792414cd3af12871e9b2d6382e88492b1
-
SSDEEP
98304:CQq3YvMyUrZz7gn9upl5JXOk9VYih0zocIn/J3mEKeX2NtJ28S0PWm1M7wKjseAV:5CYarZHgnQ7hO8VYs01InhmEFGl210XJ
Static task
static1
Behavioral task
behavioral1
Sample
91127208847b0f7eb0c7ec6ddf2621e6b728c207a9706d99aac127d3dc7cb848.exe
Resource
win10v2004-20240508-en
Behavioral task
behavioral2
Sample
91127208847b0f7eb0c7ec6ddf2621e6b728c207a9706d99aac127d3dc7cb848.exe
Resource
win11-20240508-en
Malware Config
Targets
-
-
Target
91127208847b0f7eb0c7ec6ddf2621e6b728c207a9706d99aac127d3dc7cb848
-
Size
5.8MB
-
MD5
44881901ae7c9e065f4c13c5a2d9cac2
-
SHA1
b318577803762dddf6f9923e17534f67ad21f8a3
-
SHA256
91127208847b0f7eb0c7ec6ddf2621e6b728c207a9706d99aac127d3dc7cb848
-
SHA512
9b37129216906c2e860c33de4426701b2f23b7f999d6c29ba09096f40ab8e19e0fc4fe4a9da454abeaa6c677cbcdeae792414cd3af12871e9b2d6382e88492b1
-
SSDEEP
98304:CQq3YvMyUrZz7gn9upl5JXOk9VYih0zocIn/J3mEKeX2NtJ28S0PWm1M7wKjseAV:5CYarZHgnQ7hO8VYs01InhmEFGl210XJ
Score10/10-
Detect Socks5Systemz Payload
-
Executes dropped EXE
-
Loads dropped DLL
-
Unexpected DNS network traffic destination
Network traffic to other servers than the configured DNS servers was detected on the DNS port.
-
Checks installed software on the system
Looks up Uninstall key entries in the registry to enumerate software on the system.
-