General
-
Target
4003b867f19c7eabcf2472b65564c21417de2dd2a418f839f82d0736ae333403.exe
-
Size
163KB
-
Sample
240703-grw9pszhqg
-
MD5
2b9e4f32a763cfe7f22b89e02d38bb50
-
SHA1
934085001e51f5302f11e245466a60dfcaeff5fb
-
SHA256
4003b867f19c7eabcf2472b65564c21417de2dd2a418f839f82d0736ae333403
-
SHA512
3a0398bdc529fea4b5105f16f16f5e2cc87dc6952c768e02831b033ac0ec0003558f430df61adb9aa55099bae4defc6c178cf750f0759ab39c92e2a16cda4c7a
-
SSDEEP
1536:PdicyfI/+iF5lJMWlBlAowVBxylProNVU4qNVUrk/9QbfBr+7GwKrPAsqNVU:GI/+iFgBxyltOrWKDBr+yJb
Static task
static1
Behavioral task
behavioral1
Sample
4003b867f19c7eabcf2472b65564c21417de2dd2a418f839f82d0736ae333403.exe
Resource
win7-20240220-en
Behavioral task
behavioral2
Sample
4003b867f19c7eabcf2472b65564c21417de2dd2a418f839f82d0736ae333403.exe
Resource
win10v2004-20240611-en
Malware Config
Extracted
gozi
Targets
-
-
Target
4003b867f19c7eabcf2472b65564c21417de2dd2a418f839f82d0736ae333403.exe
-
Size
163KB
-
MD5
2b9e4f32a763cfe7f22b89e02d38bb50
-
SHA1
934085001e51f5302f11e245466a60dfcaeff5fb
-
SHA256
4003b867f19c7eabcf2472b65564c21417de2dd2a418f839f82d0736ae333403
-
SHA512
3a0398bdc529fea4b5105f16f16f5e2cc87dc6952c768e02831b033ac0ec0003558f430df61adb9aa55099bae4defc6c178cf750f0759ab39c92e2a16cda4c7a
-
SSDEEP
1536:PdicyfI/+iF5lJMWlBlAowVBxylProNVU4qNVUrk/9QbfBr+7GwKrPAsqNVU:GI/+iFgBxyltOrWKDBr+yJb
Score10/10-
Adds autorun key to be loaded by Explorer.exe on startup
-
Executes dropped EXE
-
Loads dropped DLL
-
Drops file in System32 directory
-