General

  • Target

    file.exe

  • Size

    5.7MB

  • Sample

    240704-vjh9rszcnq

  • MD5

    6f66a80f63f04a40812c6e410a26694b

  • SHA1

    b2b28c03f8ab3fea28f21394175fccdeadab24a0

  • SHA256

    3498a720830519dabf81f3f99afe873c06407efffe118f59ec88cba096c559cb

  • SHA512

    eddf716ba6a2042833e6f30f9b16cb75d75bc8cd7e704fd42e375ada556aff598ed79c22f63b783d5f95885c6a82fbc570cc8aa55a6bb6b2aac27ccc67368c56

  • SSDEEP

    98304:EtMGzMuHWLAySm4nS8+chDsnHhfGCjqPCUfs6uw4ah:EPo3LAJJnKLqKUfs6Kah

Score
10/10

Malware Config

Extracted

Family

risepro

C2

77.91.77.180:50500

Targets

    • Target

      file.exe

    • Size

      5.7MB

    • MD5

      6f66a80f63f04a40812c6e410a26694b

    • SHA1

      b2b28c03f8ab3fea28f21394175fccdeadab24a0

    • SHA256

      3498a720830519dabf81f3f99afe873c06407efffe118f59ec88cba096c559cb

    • SHA512

      eddf716ba6a2042833e6f30f9b16cb75d75bc8cd7e704fd42e375ada556aff598ed79c22f63b783d5f95885c6a82fbc570cc8aa55a6bb6b2aac27ccc67368c56

    • SSDEEP

      98304:EtMGzMuHWLAySm4nS8+chDsnHhfGCjqPCUfs6uw4ah:EPo3LAJJnKLqKUfs6Kah

    Score
    10/10
    • RisePro

      RisePro stealer is an infostealer distributed by PrivateLoader.

    • Suspicious use of SetThreadContext

MITRE ATT&CK Matrix

Tasks