General

  • Target

    a87bc31ea576b3c6cbc0d9a5970e39e4d842073b5b5b46930d99943590c33a3a

  • Size

    224KB

  • Sample

    240703-x56nasthnl

  • MD5

    1a6a9b7a5e784c6ca40ee894f5c3ae70

  • SHA1

    88c3f3ced16d3b2ffed0f0cb8c37eb3d39a3c70b

  • SHA256

    a87bc31ea576b3c6cbc0d9a5970e39e4d842073b5b5b46930d99943590c33a3a

  • SHA512

    2e92c59262cf5ba6a979e95d8fa7db7a696057f347ca403efddf80896a27dda8fcb94a2166b5a22f9a1c0703ae9a708014fff80656c70e824e6e60ac259f8219

  • SSDEEP

    3072:z/84BoZMyeq6umq/r+R4pgib+JbzLmAs+1CjBG3ywQzHadH0:zZkMqpmq/r+riM/LmAs+1yG3ywsad

Malware Config

Extracted

Family

smokeloader

Botnet

pub2

Targets

    • Target

      a87bc31ea576b3c6cbc0d9a5970e39e4d842073b5b5b46930d99943590c33a3a

    • Size

      224KB

    • MD5

      1a6a9b7a5e784c6ca40ee894f5c3ae70

    • SHA1

      88c3f3ced16d3b2ffed0f0cb8c37eb3d39a3c70b

    • SHA256

      a87bc31ea576b3c6cbc0d9a5970e39e4d842073b5b5b46930d99943590c33a3a

    • SHA512

      2e92c59262cf5ba6a979e95d8fa7db7a696057f347ca403efddf80896a27dda8fcb94a2166b5a22f9a1c0703ae9a708014fff80656c70e824e6e60ac259f8219

    • SSDEEP

      3072:z/84BoZMyeq6umq/r+R4pgib+JbzLmAs+1CjBG3ywQzHadH0:zZkMqpmq/r+riM/LmAs+1yG3ywsad

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

Peripheral Device Discovery

1
T1120

System Information Discovery

1
T1082

Tasks