General

  • Target

    5f43a4ec45bb6e3d037fcfbab25278bb0e5d5d850f0036318cf7926e73a06c10

  • Size

    1.9MB

  • Sample

    240627-mendxswdre

  • MD5

    1fdb674bb4898d6e41b4b89874788d58

  • SHA1

    e3a67bd54ecf4a85295cce8f4f94765608bd818f

  • SHA256

    5f43a4ec45bb6e3d037fcfbab25278bb0e5d5d850f0036318cf7926e73a06c10

  • SHA512

    b976923978cd1f279ead4c8f5db1ce269e372fac106977db9e468cd63e05ac0ce47c453a153822e74390455b9d7bd801e0a04a7f02f1950e496b52942bd06441

  • SSDEEP

    49152:1o4o2O9f65YTz7jGnD3D121zsax1KWMXzGqIFI2tv+FI2t:1TMwrMIWMXZIG2tmG2t

Malware Config

Extracted

Family

metasploit

Version

metasploit_stager

C2

192.168.5.24:4444

Targets

    • Target

      5f43a4ec45bb6e3d037fcfbab25278bb0e5d5d850f0036318cf7926e73a06c10

    • Size

      1.9MB

    • MD5

      1fdb674bb4898d6e41b4b89874788d58

    • SHA1

      e3a67bd54ecf4a85295cce8f4f94765608bd818f

    • SHA256

      5f43a4ec45bb6e3d037fcfbab25278bb0e5d5d850f0036318cf7926e73a06c10

    • SHA512

      b976923978cd1f279ead4c8f5db1ce269e372fac106977db9e468cd63e05ac0ce47c453a153822e74390455b9d7bd801e0a04a7f02f1950e496b52942bd06441

    • SSDEEP

      49152:1o4o2O9f65YTz7jGnD3D121zsax1KWMXzGqIFI2tv+FI2t:1TMwrMIWMXZIG2tmG2t

    • MetaSploit

      Detected malicious payload which is part of the Metasploit Framework, likely generated with msfvenom or similar.

MITRE ATT&CK Matrix

Tasks