Analysis
-
max time kernel
149s -
max time network
151s -
platform
windows7_x64 -
resource
win7-20240611-en -
resource tags
arch:x64arch:x86image:win7-20240611-enlocale:en-usos:windows7-x64system -
submitted
28-06-2024 09:22
Static task
static1
Behavioral task
behavioral1
Sample
603eaa09f77fb040429d12d9b5f7de5f65c771464e23ec61ac0fca3ff6aaa5e4.exe
Resource
win7-20240611-en
Behavioral task
behavioral2
Sample
603eaa09f77fb040429d12d9b5f7de5f65c771464e23ec61ac0fca3ff6aaa5e4.exe
Resource
win10v2004-20240611-en
General
-
Target
603eaa09f77fb040429d12d9b5f7de5f65c771464e23ec61ac0fca3ff6aaa5e4.exe
-
Size
19KB
-
MD5
1e642a4a0843660b3bf93496f7da0f56
-
SHA1
568f820bcade6705192c55eae7c452785caf1cc2
-
SHA256
603eaa09f77fb040429d12d9b5f7de5f65c771464e23ec61ac0fca3ff6aaa5e4
-
SHA512
dcc6aff08fda2c58bf40eb7193a702e9169f8f6c485ce310448a562b1ffe99ffd47521ca358c3170ac6ebd87df08f2c7ab08886af60de8ffbef08f918eb3c7dd
-
SSDEEP
192:RV7qaCF6Op1t2dobVXujRDcBaXWQjwOT/2bjrf87DWF8qa1Dojjgi:jqaCF31cix+Dc4zjgrU76FF46gi
Malware Config
Extracted
cobaltstrike
http://192.168.1.122:80/w5Fk
-
user_agent
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Signatures
-
Cobaltstrike
Detected malicious payload which is part of Cobaltstrike.