General
-
Target
https://github.com/tsgrgo/windows-update-disabler/archive/refs/heads/main.zip
-
Sample
240705-xjn65atanr
Static task
static1
URLScan task
urlscan1
Behavioral task
behavioral1
Sample
https://github.com/tsgrgo/windows-update-disabler/archive/refs/heads/main.zip
Resource
win11-20240704-en
21 signatures
1200 seconds
Malware Config
Targets
-
-
Target
https://github.com/tsgrgo/windows-update-disabler/archive/refs/heads/main.zip
-
Possible privilege escalation attempt
-
Executes dropped EXE
-
Modifies file permissions
-
Drops file in System32 directory
-
MITRE ATT&CK Matrix ATT&CK v13
Execution
System Services
1Service Execution
1Command and Scripting Interpreter
1PowerShell
1Privilege Escalation
Create or Modify System Process
1Windows Service
1Access Token Manipulation
1Create Process with Token
1