General

  • Target

    19e57605f7dd997dd32a8d760f92d6d8_JaffaCakes118

  • Size

    37KB

  • Sample

    240628-m9h3pawekd

  • MD5

    19e57605f7dd997dd32a8d760f92d6d8

  • SHA1

    67d1ca44e9a0decf89af29e927e35222083ba319

  • SHA256

    962786ca9a212bc530a6ffd8b5d8bc152e920ccd5388743e567629543b68fa76

  • SHA512

    e3a66652aa96c3ac84f4c244da32d2ac0eaef1d2bfbfabb54c82f8c7e93d494108cba9b0e0957503aa6716eb6a82ddafc7125841d5323ca931f7d0b186f25bc8

  • SSDEEP

    768:pVA6SZiXbq2FiD5IPMVO7A0rkLHNPpYKm46lRZ95x:n08rQQkCGtPpLyh5x

Malware Config

Extracted

Family

metasploit

Version

windows/shell_reverse_tcp

C2

192.168.102.131:4444

Targets

    • Target

      19e57605f7dd997dd32a8d760f92d6d8_JaffaCakes118

    • Size

      37KB

    • MD5

      19e57605f7dd997dd32a8d760f92d6d8

    • SHA1

      67d1ca44e9a0decf89af29e927e35222083ba319

    • SHA256

      962786ca9a212bc530a6ffd8b5d8bc152e920ccd5388743e567629543b68fa76

    • SHA512

      e3a66652aa96c3ac84f4c244da32d2ac0eaef1d2bfbfabb54c82f8c7e93d494108cba9b0e0957503aa6716eb6a82ddafc7125841d5323ca931f7d0b186f25bc8

    • SSDEEP

      768:pVA6SZiXbq2FiD5IPMVO7A0rkLHNPpYKm46lRZ95x:n08rQQkCGtPpLyh5x

    • MetaSploit

      Detected malicious payload which is part of the Metasploit Framework, likely generated with msfvenom or similar.

MITRE ATT&CK Matrix

Tasks