General

  • Target

    34bd7290db4f853a266c6321d15e2644db5e6e8919795efbdb17d3fc17f7cab3

  • Size

    3.9MB

  • Sample

    240628-mgd82axbpl

  • MD5

    2d51a7c990a8668d517b1ea18e6fb2f2

  • SHA1

    62490810b70787550f85ac7269781247f35fd59f

  • SHA256

    34bd7290db4f853a266c6321d15e2644db5e6e8919795efbdb17d3fc17f7cab3

  • SHA512

    f23986be80ab6f23093c6e2ad5732cb7aec6e75d6ca1201f642b7cd13ad64af18f8b6c6143ebd2fc1f1922ae93fe4abe22473f26fa1b123a6b77029bc6984d78

  • SSDEEP

    49152:S63beyjLfcl/aj55E7KQRBLhu3Poq4xXaNgcLPV9Y7jWaJpV12R6:9qQfcl/UE7feg1aDV0WQTE6

Malware Config

Extracted

Family

metasploit

Version

windows/download_exec

C2

http://1.13.182.17:8443/jquery-3.3.1.slim.min.js

Targets

    • Target

      34bd7290db4f853a266c6321d15e2644db5e6e8919795efbdb17d3fc17f7cab3

    • Size

      3.9MB

    • MD5

      2d51a7c990a8668d517b1ea18e6fb2f2

    • SHA1

      62490810b70787550f85ac7269781247f35fd59f

    • SHA256

      34bd7290db4f853a266c6321d15e2644db5e6e8919795efbdb17d3fc17f7cab3

    • SHA512

      f23986be80ab6f23093c6e2ad5732cb7aec6e75d6ca1201f642b7cd13ad64af18f8b6c6143ebd2fc1f1922ae93fe4abe22473f26fa1b123a6b77029bc6984d78

    • SSDEEP

      49152:S63beyjLfcl/aj55E7KQRBLhu3Poq4xXaNgcLPV9Y7jWaJpV12R6:9qQfcl/UE7feg1aDV0WQTE6

    • MetaSploit

      Detected malicious payload which is part of the Metasploit Framework, likely generated with msfvenom or similar.

MITRE ATT&CK Matrix

Tasks