General

  • Target

    c5d83c2eb28f96c3c5406dce786427d5e903b121117f0a2a3cd15ae6fdec2143

  • Size

    3.6MB

  • Sample

    240626-ze82vasekd

  • MD5

    96b0ee2bbe12e43b600e8c9769f7d81e

  • SHA1

    dee4005f5479bb006849a3c7a6c9ef5ca760b741

  • SHA256

    c5d83c2eb28f96c3c5406dce786427d5e903b121117f0a2a3cd15ae6fdec2143

  • SHA512

    d29570b5b7616476450ce88dd1da88ac392a6502bb426d6ddd8099d42934e10cf26c48fadc4bb47b123a90524eaa79d621cd880bf91efe65222629773d0cb5b5

  • SSDEEP

    49152:+08OhxtUg9OUi82w6aQp9dgS1GUL38XhCOYc3iJXe9emEPGKyPkQThMYRMnm7LBX:+08vdsGaQNgS1C6eqngKpq

Malware Config

Extracted

Family

metasploit

Version

windows/shell_reverse_tcp

C2

192.168.1.175:2523

Targets

    • Target

      c5d83c2eb28f96c3c5406dce786427d5e903b121117f0a2a3cd15ae6fdec2143

    • Size

      3.6MB

    • MD5

      96b0ee2bbe12e43b600e8c9769f7d81e

    • SHA1

      dee4005f5479bb006849a3c7a6c9ef5ca760b741

    • SHA256

      c5d83c2eb28f96c3c5406dce786427d5e903b121117f0a2a3cd15ae6fdec2143

    • SHA512

      d29570b5b7616476450ce88dd1da88ac392a6502bb426d6ddd8099d42934e10cf26c48fadc4bb47b123a90524eaa79d621cd880bf91efe65222629773d0cb5b5

    • SSDEEP

      49152:+08OhxtUg9OUi82w6aQp9dgS1GUL38XhCOYc3iJXe9emEPGKyPkQThMYRMnm7LBX:+08vdsGaQNgS1C6eqngKpq

    • MetaSploit

      Detected malicious payload which is part of the Metasploit Framework, likely generated with msfvenom or similar.

MITRE ATT&CK Matrix

Tasks