General
-
Target
2112cd3af1fcd4aee79d6a0ec85814b3b313404639a5e4870b2d0866553d9250.exe
-
Size
163KB
-
Sample
240703-an2axssajl
-
MD5
d73fe40a9c014e5f0267ae7965c3dfe0
-
SHA1
52694279a8dbc1846e001ff57d586bca7a213d20
-
SHA256
2112cd3af1fcd4aee79d6a0ec85814b3b313404639a5e4870b2d0866553d9250
-
SHA512
54fd07323acb22d676dd469458ed507b17aaa92179269b6ffa587b456edf6a028b51fdf57a4aa47401a3e050fade7b9666b32235710caabb818e906603e6980c
-
SSDEEP
1536:PemQMk+sIgUmQI1mIHmYXFczaOj/lProNVU4qNVUrk/9QbfBr+7GwKrPAsqNVU:mmQf+QUmQI1Izaw/ltOrWKDBr+yJb
Static task
static1
Behavioral task
behavioral1
Sample
2112cd3af1fcd4aee79d6a0ec85814b3b313404639a5e4870b2d0866553d9250.exe
Resource
win7-20240508-en
Behavioral task
behavioral2
Sample
2112cd3af1fcd4aee79d6a0ec85814b3b313404639a5e4870b2d0866553d9250.exe
Resource
win10v2004-20240508-en
Malware Config
Extracted
gozi
Targets
-
-
Target
2112cd3af1fcd4aee79d6a0ec85814b3b313404639a5e4870b2d0866553d9250.exe
-
Size
163KB
-
MD5
d73fe40a9c014e5f0267ae7965c3dfe0
-
SHA1
52694279a8dbc1846e001ff57d586bca7a213d20
-
SHA256
2112cd3af1fcd4aee79d6a0ec85814b3b313404639a5e4870b2d0866553d9250
-
SHA512
54fd07323acb22d676dd469458ed507b17aaa92179269b6ffa587b456edf6a028b51fdf57a4aa47401a3e050fade7b9666b32235710caabb818e906603e6980c
-
SSDEEP
1536:PemQMk+sIgUmQI1mIHmYXFczaOj/lProNVU4qNVUrk/9QbfBr+7GwKrPAsqNVU:mmQf+QUmQI1Izaw/ltOrWKDBr+yJb
Score10/10-
Adds autorun key to be loaded by Explorer.exe on startup
-
Executes dropped EXE
-
Loads dropped DLL
-
Drops file in System32 directory
-