General

  • Target

    187eb58e2391833b19f61f395a2020e9_JaffaCakes118

  • Size

    72KB

  • Sample

    240628-c6tpxazbrk

  • MD5

    187eb58e2391833b19f61f395a2020e9

  • SHA1

    32ef8f2826d547e32d2d65c4d8a228b445ec6fb8

  • SHA256

    3d5316d3b53f672dde56a1bac8196f9abb159806f2d7ee0142320346e4f0248f

  • SHA512

    2fbff6269ff667ca6bd267fc00acb65dd5a2d919e4db3d189003c6534723aa84b08321f5514b42f76a8e22e91503e708ac14678e40d94c039bb533c73948dc7f

  • SSDEEP

    1536:IHKueTGcZlDYRR+SGOK0RZcqn6cVQzoXnMb+KR0Nc8QsJq3p:KY7YRR+SucPZeWne0Nc8QsCp

Malware Config

Extracted

Family

metasploit

Version

windows/shell_reverse_tcp

C2

192.168.1.3:4444

Targets

    • Target

      187eb58e2391833b19f61f395a2020e9_JaffaCakes118

    • Size

      72KB

    • MD5

      187eb58e2391833b19f61f395a2020e9

    • SHA1

      32ef8f2826d547e32d2d65c4d8a228b445ec6fb8

    • SHA256

      3d5316d3b53f672dde56a1bac8196f9abb159806f2d7ee0142320346e4f0248f

    • SHA512

      2fbff6269ff667ca6bd267fc00acb65dd5a2d919e4db3d189003c6534723aa84b08321f5514b42f76a8e22e91503e708ac14678e40d94c039bb533c73948dc7f

    • SSDEEP

      1536:IHKueTGcZlDYRR+SGOK0RZcqn6cVQzoXnMb+KR0Nc8QsJq3p:KY7YRR+SucPZeWne0Nc8QsCp

    • MetaSploit

      Detected malicious payload which is part of the Metasploit Framework, likely generated with msfvenom or similar.

MITRE ATT&CK Matrix

Tasks