edb1ff2521fb4bf748111f92786d260d40407a2e8463dcd24bb09f908ee13eb9 (SHA256)
OlympicDestroyer.exe
Created at 2018-03-15 15:14:00
Notifications (1/1)
The overall sleep time of all monitored processes was truncated from "1 hour" to "10 seconds" to reveal dormant functionality.
Top Threat Indicators (View all 32 threat indicators)
Category | Operation | Classification |
---|---|---|
OS | Modifies Windows automatic backups | - |
File System | Associated with malicious files | Trojan |
Browser | Reads data related to saved browser credentials | - |
Screenshots
Monitored Processes
Analysis Information
Creation Time | 2018-03-15 16:14 (UTC+1) |
Analysis Duration | 00:01:19 |
Number of Monitored Processes | 15 |
Execution Successful | |
Reputation Enabled | |
Termination Reason | Timeout |
Tags |
Analyzer and Virtual Machine Information
Analyzer Version | 2.3.0 |
Analyzer Build Date | 2018-02-28 14:48 (UTC+1) |
Adobe Acrobat Reader Version | 10.0.0 |
Microsoft Office | 2010 |
Microsoft Office Version | 14.0.4762.1000 |
Microsoft Project Version | 14.0.6023.1000 |
Microsoft Visio Version | 14.0.6022.1000 |
Internet Explorer Version | 8.0.7601.17514 |
Chrome Version | 58.0.3029.110 |
Firefox Version | 25.0 |
Flash Version | 10.3.183.90 |
Java Version | 7.0.450.18 |
VM Name | win7_32_sp1 |
VM Architecture | x86 32-bit PAE |
VM OS | Windows 7 |
VM Kernel Version | 6.1.7601.17514 (684da42a-30cc-450f-81c5-35b4d18944b1) |
Sample Information
ID | #32786 |
MD5 Hash Value | cfdd16225e67471f5ef54cab9b3a5558 |
SHA1 Hash Value | 26de43cc558a4e0e60eddd4dc9321bcb5a0a181c |
SHA256 Hash Value | edb1ff2521fb4bf748111f92786d260d40407a2e8463dcd24bb09f908ee13eb9 |
Filename | OlympicDestroyer.exe |
File Size | 1.78 MB |
File Type | Windows Exe (x86-32) |