General

  • Target

    1308905f393bd356fcfdd94c9c627632_JaffaCakes118

  • Size

    288KB

  • Sample

    240626-xfm5naxfkg

  • MD5

    1308905f393bd356fcfdd94c9c627632

  • SHA1

    cee025e57fb587021d77dee6d4c39b124830fec8

  • SHA256

    6feeeb8595e5adb290e85c83a921a054ff7b1490c88b02ee9a7b4c4bce9149e9

  • SHA512

    d9eb6e2b12ca31d573afe144ae9ccb28145f3f8f15dc0d06eb4129bef1b68978886e8345167b1ca56bea66b1f2ee1db6a1d73f7ad27ab2c1662bf38c615f3217

  • SSDEEP

    6144:jcTKRxs2qAS/xJVveMzPmrmz07pgVNy67cK:Jaf/xD7zPmiz0Ky6

Malware Config

Extracted

Family

metasploit

Version

windows/shell_reverse_tcp

C2

10.0.2.15:443

Targets

    • Target

      1308905f393bd356fcfdd94c9c627632_JaffaCakes118

    • Size

      288KB

    • MD5

      1308905f393bd356fcfdd94c9c627632

    • SHA1

      cee025e57fb587021d77dee6d4c39b124830fec8

    • SHA256

      6feeeb8595e5adb290e85c83a921a054ff7b1490c88b02ee9a7b4c4bce9149e9

    • SHA512

      d9eb6e2b12ca31d573afe144ae9ccb28145f3f8f15dc0d06eb4129bef1b68978886e8345167b1ca56bea66b1f2ee1db6a1d73f7ad27ab2c1662bf38c615f3217

    • SSDEEP

      6144:jcTKRxs2qAS/xJVveMzPmrmz07pgVNy67cK:Jaf/xD7zPmiz0Ky6

    • MetaSploit

      Detected malicious payload which is part of the Metasploit Framework, likely generated with msfvenom or similar.

MITRE ATT&CK Matrix

Tasks