General
-
Target
7880dc8e0e8636e765eec32fb83bcf16757e3925cf529f2358d6db50c113e546
-
Size
14.5MB
-
Sample
240704-ewybfswdlg
-
MD5
219fdbf81f8b2ec0b83e77be9ca4cfb3
-
SHA1
8615f9a57d4a569c25e666038f51ba76d3b2e013
-
SHA256
7880dc8e0e8636e765eec32fb83bcf16757e3925cf529f2358d6db50c113e546
-
SHA512
4a1e8452645ff815b46792e93af88d048882e1f9ed6754fd9708a892264b89e4d3d42e7ddf35ad7bba328fb54d7d3542a79f3c17cd28a331bad3ec22785734f2
-
SSDEEP
196608:uiINy2Lkb3G7ElPut9H9o2nnWb+wQ3IKlTHlUIZlY+m:RqEkt9H+qrDlUIZlY+m
Static task
static1
Behavioral task
behavioral1
Sample
7880dc8e0e8636e765eec32fb83bcf16757e3925cf529f2358d6db50c113e546.exe
Resource
win7-20240221-en
Malware Config
Targets
-
-
Target
7880dc8e0e8636e765eec32fb83bcf16757e3925cf529f2358d6db50c113e546
-
Size
14.5MB
-
MD5
219fdbf81f8b2ec0b83e77be9ca4cfb3
-
SHA1
8615f9a57d4a569c25e666038f51ba76d3b2e013
-
SHA256
7880dc8e0e8636e765eec32fb83bcf16757e3925cf529f2358d6db50c113e546
-
SHA512
4a1e8452645ff815b46792e93af88d048882e1f9ed6754fd9708a892264b89e4d3d42e7ddf35ad7bba328fb54d7d3542a79f3c17cd28a331bad3ec22785734f2
-
SSDEEP
196608:uiINy2Lkb3G7ElPut9H9o2nnWb+wQ3IKlTHlUIZlY+m:RqEkt9H+qrDlUIZlY+m
-
Gh0st RAT payload
-
Drops file in Drivers directory
-
Sets service image path in registry
-
Executes dropped EXE
-
Loads dropped DLL
-
Drops file in System32 directory
-