General

  • Target

    http://64.150.190.149.64

  • Sample

    231216-fcyzbabhd9

Malware Config

Extracted

Family

cobaltstrike

C2

http://185.74.222.145:676/y6Dj

http://185.74.222.145:676/PPDy

Attributes
  • user_agent

    User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; Trident/7.0; rv:11.0) like Gecko

Extracted

Family

connectback

C2

185.74.222.145:957

Targets

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

1
T1082

Tasks