General

  • Target

    Wave.exe

  • Size

    275KB

  • Sample

    240704-pqfvbsygje

  • MD5

    19e5a4ce88aa7ef0bab452d3e182f5cd

  • SHA1

    e974c7d25e07f391f2dc6a00acdd25ba5f2f0c78

  • SHA256

    9625ba4fb35b5e652f398f10f9e4adc115326cd029861bf7ae557df7a53ee274

  • SHA512

    d9a4da9d41c19a10680311735fa42ed306eea51032d0bb3c559dacbe9be65cc441bb42544237c799fd2da6e97b4654a3f88b5c4763e2cfbd89911a4d1aec2834

  • SSDEEP

    3072:dUjcxEm76PMVyqQH1b2e2TuQZLAsNeDF5nI0PGIj9lua/Obw0hFv2PCWpIdNrY:dL76PMVtQVbpnQ0sNOBTunbw0/5Wpi

Score
10/10

Malware Config

Extracted

Family

asyncrat

Version

Venom RAT + HVNC + Stealer + Grabber v6.0.3

Botnet

Default

C2

209.25.140.1:57676

Mutex

Wave

Attributes
  • delay

    1

  • install

    true

  • install_file

    BloxStrap Handler.exe

  • install_folder

    %AppData%

aes.plain

Targets

    • Target

      Wave.exe

    • Size

      275KB

    • MD5

      19e5a4ce88aa7ef0bab452d3e182f5cd

    • SHA1

      e974c7d25e07f391f2dc6a00acdd25ba5f2f0c78

    • SHA256

      9625ba4fb35b5e652f398f10f9e4adc115326cd029861bf7ae557df7a53ee274

    • SHA512

      d9a4da9d41c19a10680311735fa42ed306eea51032d0bb3c559dacbe9be65cc441bb42544237c799fd2da6e97b4654a3f88b5c4763e2cfbd89911a4d1aec2834

    • SSDEEP

      3072:dUjcxEm76PMVyqQH1b2e2TuQZLAsNeDF5nI0PGIj9lua/Obw0hFv2PCWpIdNrY:dL76PMVtQVbpnQ0sNOBTunbw0/5Wpi

    Score
    10/10
    • AsyncRat

      AsyncRAT is designed to remotely monitor and control other computers written in C#.

MITRE ATT&CK Matrix

Tasks