General

  • Target

    99f0352a1d08b56f5e4d692a338e099fcc0741d52a3118709c98ac9748f8dc5a

  • Size

    2.0MB

  • Sample

    240705-a24yzayanp

  • MD5

    29ac0b4f75a7f848bc1521d65f3f6e22

  • SHA1

    b7c8312f61cfa0a900682504a0d3a711381e38d9

  • SHA256

    99f0352a1d08b56f5e4d692a338e099fcc0741d52a3118709c98ac9748f8dc5a

  • SHA512

    f3088c3bad17ac1afa3eaa1f378a0e802fec1e57a08a471565c0dcf6488e0cb75511146a2874a829e5bf42628bff1b0a57caf65b57f86da319ab8c5da90bfe86

  • SSDEEP

    49152:GezaTF8FcNkNdfE0pZ9oztFwI3IUCmbkJ7hMlcIMu:GemTLkNdfE0pZaT

Malware Config

Targets

    • Target

      99f0352a1d08b56f5e4d692a338e099fcc0741d52a3118709c98ac9748f8dc5a

    • Size

      2.0MB

    • MD5

      29ac0b4f75a7f848bc1521d65f3f6e22

    • SHA1

      b7c8312f61cfa0a900682504a0d3a711381e38d9

    • SHA256

      99f0352a1d08b56f5e4d692a338e099fcc0741d52a3118709c98ac9748f8dc5a

    • SHA512

      f3088c3bad17ac1afa3eaa1f378a0e802fec1e57a08a471565c0dcf6488e0cb75511146a2874a829e5bf42628bff1b0a57caf65b57f86da319ab8c5da90bfe86

    • SSDEEP

      49152:GezaTF8FcNkNdfE0pZ9oztFwI3IUCmbkJ7hMlcIMu:GemTLkNdfE0pZaT

    • xmrig

      XMRig is a high performance, open source, cross platform CPU/GPU miner.

    • XMRig Miner payload

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Event Triggered Execution

1
T1546

Accessibility Features

1
T1546.008

Privilege Escalation

Event Triggered Execution

1
T1546

Accessibility Features

1
T1546.008

Tasks