General

  • Target

    2024070282ad20f7216ba47eddfe5f9c2bcf9fcewannacry

  • Size

    5.0MB

  • Sample

    240704-k8rx4awdqf

  • MD5

    82ad20f7216ba47eddfe5f9c2bcf9fce

  • SHA1

    8c669c666f2c42cbb37c2505d00495c6d023855c

  • SHA256

    69e2a4bd84ab85c7d65263d35195ffaa6d626d4a15943398ae8692093bf83086

  • SHA512

    d425327ce162013d68ab868009449f642678c6a4c5ccbc561963a21535dd3b279c08761c42e57c280e70f3afbe3c4b19efbf6a1ad82abba2a3dd1366ff879a7d

  • SSDEEP

    49152:2nAQqMSPbcBVQej/1INRx+TSqTdX1HkQo6SAAk3R8yAH1plAH:yDqPoBhz1aRxcSUDk36SAD3R8yAVp2H

Malware Config

Targets

    • Target

      2024070282ad20f7216ba47eddfe5f9c2bcf9fcewannacry

    • Size

      5.0MB

    • MD5

      82ad20f7216ba47eddfe5f9c2bcf9fce

    • SHA1

      8c669c666f2c42cbb37c2505d00495c6d023855c

    • SHA256

      69e2a4bd84ab85c7d65263d35195ffaa6d626d4a15943398ae8692093bf83086

    • SHA512

      d425327ce162013d68ab868009449f642678c6a4c5ccbc561963a21535dd3b279c08761c42e57c280e70f3afbe3c4b19efbf6a1ad82abba2a3dd1366ff879a7d

    • SSDEEP

      49152:2nAQqMSPbcBVQej/1INRx+TSqTdX1HkQo6SAAk3R8yAH1plAH:yDqPoBhz1aRxcSUDk36SAD3R8yAVp2H

    • Wannacry

      WannaCry is a ransomware cryptoworm.

    • Contacts a large (3177) amount of remote hosts

      This may indicate a network scan to discover remotely running services.

    • Executes dropped EXE

    • Creates a large amount of network flows

      This may indicate a network scan to discover remotely running services.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Tasks