General

  • Target

    bff47951616eef6c58a23e2b26b71dadfd3c263a8d9931ac39ff29efc4b42c9f

  • Size

    758KB

  • MD5

    74ca33d330c3536d1d0ca4d35971f257

  • SHA1

    bbdb8080407ce6a96fa85d4531babd83fc795f79

  • SHA256

    bff47951616eef6c58a23e2b26b71dadfd3c263a8d9931ac39ff29efc4b42c9f

  • SHA512

    24c45c37d99606d53d0f51c865d3b24458d39250b7470aef15d5585d34e206aafa22273efa3203e32f6633127e9a9150f2ed5af5e46ef1a064860557e8f86d8f

  • SSDEEP

    6144:Jv7Wc41yC7dXNBzn68YoC+6VoQSkgrpZHqk61peBN1L+I8pfezYeWHMzyy14pL1k:JvSbxxPRC+XQSxb6Dc7RwIWHeGL7GOK

Score
10/10

Malware Config

Extracted

Family

metasploit

Version

metasploit_stager

C2

172.16.85.133:4444

Signatures

  • Metasploit family
  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • bff47951616eef6c58a23e2b26b71dadfd3c263a8d9931ac39ff29efc4b42c9f
    .exe windows:6 windows x86 arch:x86

    f93b5d76132f6e6068946ec238813ce1


    Headers

    Imports

    Sections