General

  • Target

    960c2abc16e33853befc3115af883501e754dedd464c46151b2d87dc5b24cda8

  • Size

    5.0MB

  • Sample

    240704-bhn9vawdjp

  • MD5

    dc23e5bfa2fdde5f9afe17fb3b609f33

  • SHA1

    53213c9534b030c547d9ebd14363f4519203d386

  • SHA256

    960c2abc16e33853befc3115af883501e754dedd464c46151b2d87dc5b24cda8

  • SHA512

    1fe7486051e2010c33e0f0b8cc3adac4e8108280dd4968f7a1453c8285d1623786a75fe45dc804c8ceb6d6a324067ee9e3a45e8c66e1b43ffa44124fcd182b21

  • SSDEEP

    12288:e1bLgmluCti62ChMbaIMu7L5NVErCA4z2g6rTcbckPU82900Ve7zw+K+:QbLguriehfdmMSirYbcMNgef0

Malware Config

Targets

    • Target

      960c2abc16e33853befc3115af883501e754dedd464c46151b2d87dc5b24cda8

    • Size

      5.0MB

    • MD5

      dc23e5bfa2fdde5f9afe17fb3b609f33

    • SHA1

      53213c9534b030c547d9ebd14363f4519203d386

    • SHA256

      960c2abc16e33853befc3115af883501e754dedd464c46151b2d87dc5b24cda8

    • SHA512

      1fe7486051e2010c33e0f0b8cc3adac4e8108280dd4968f7a1453c8285d1623786a75fe45dc804c8ceb6d6a324067ee9e3a45e8c66e1b43ffa44124fcd182b21

    • SSDEEP

      12288:e1bLgmluCti62ChMbaIMu7L5NVErCA4z2g6rTcbckPU82900Ve7zw+K+:QbLguriehfdmMSirYbcMNgef0

    • Wannacry

      WannaCry is a ransomware cryptoworm.

    • Contacts a large (3316) amount of remote hosts

      This may indicate a network scan to discover remotely running services.

    • Creates a large amount of network flows

      This may indicate a network scan to discover remotely running services.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Tasks