drw

Classification: Malicious

drw is a malicious file sample. Linked to Bitter activity. Reported by 2 threat sources, last seen 2024-07-29.

Detection summary

  • 0 antivirus detections
  • 0 IDS alerts
  • 1 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Intrusion sets: BITTER (G1002)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2024-07-29 06:45:04 2024-07-29 07:33:46
Bitter MalwareBazaar Abuse.ch 2022-05-13 08:09:56 2022-05-13 08:09:56 malicious-activity G1002 BITTER
Generic.Malware MalwareBazaar Abuse.ch 2022-05-13 08:09:56 2022-05-13 08:09:56 malicious-activity

Sample information

Filenames
drw, c29672d4426be24558a5bb43b0ef1e89a3f4a35983bc278256ec9dccab56c4a8
File type
application/x-dosexec
Size
35328 bytes
MD5
13eeac6246909b56a4ae524a2d5421d9
SHA-1
905d2bc13994bb9c5e7e3db01b96cd8cb88f508c
SHA-256
c29672d4426be24558a5bb43b0ef1e89a3f4a35983bc278256ec9dccab56c4a8
First indexed
2022-05-13 09:15:05
Last updated
2026-06-28 07:58:21

Process list

NameCommand line
drw.exe