General

  • Target

    76280a5e65e24a579d0184033c4b25bd0edae3eaa7301c324fd5cb6186d85d4d

  • Size

    964KB

  • Sample

    240629-lcavdaxflj

  • MD5

    fc93beb7c77ee12180f8b0ce99f7e0c7

  • SHA1

    5d6f80a010574ebb4566568f4674a25ea36cecc3

  • SHA256

    76280a5e65e24a579d0184033c4b25bd0edae3eaa7301c324fd5cb6186d85d4d

  • SHA512

    c0c82ff089042f0468d578766eed7d70965b399447eb6da7f1a0a74eef02fa85b182ce310b1993ddf5d3fca34e2de8b096219f52da959f3f3fc8ad2692c06a59

  • SSDEEP

    12288:I7IumF2iRf9YOoTjmCS+LnYxMNi/4+HVLp3ESVofxjNGd52O:IsuLAvov3LZqRkNTO

Malware Config

Extracted

Family

cobaltstrike

C2

http://141.98.7.60:6622/jquery-3.3.2.slim.min.js

Attributes
  • user_agent

    Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8 Accept-Language: en-US,en;q=0.5 Referer: http://code.jquery.com/ Accept-Encoding: gzip, deflate User-Agent: Mozilla/5.0 (Windows NT 6.3; Trident/7.0; rv:11.0) like Gecko

Targets

    • Target

      76280a5e65e24a579d0184033c4b25bd0edae3eaa7301c324fd5cb6186d85d4d

    • Size

      964KB

    • MD5

      fc93beb7c77ee12180f8b0ce99f7e0c7

    • SHA1

      5d6f80a010574ebb4566568f4674a25ea36cecc3

    • SHA256

      76280a5e65e24a579d0184033c4b25bd0edae3eaa7301c324fd5cb6186d85d4d

    • SHA512

      c0c82ff089042f0468d578766eed7d70965b399447eb6da7f1a0a74eef02fa85b182ce310b1993ddf5d3fca34e2de8b096219f52da959f3f3fc8ad2692c06a59

    • SSDEEP

      12288:I7IumF2iRf9YOoTjmCS+LnYxMNi/4+HVLp3ESVofxjNGd52O:IsuLAvov3LZqRkNTO

MITRE ATT&CK Matrix

Tasks