General
-
Target
24789be3bd88ddaea95965f04ff7516674c97a9da461aefeee45e56ea894482f
-
Size
72KB
-
Sample
240630-ydntvawhqm
-
MD5
c546193a65ac0174e21502bfa1b39570
-
SHA1
2fb3e4a56f3bba312d16dd8c633a4cdd34b47ed6
-
SHA256
24789be3bd88ddaea95965f04ff7516674c97a9da461aefeee45e56ea894482f
-
SHA512
6d6f401309f0994a80eaef6bcf6c316f531185860cc4798c60c189d6fc8fd53e1f438d0ec55bf020ca19e4b7923e1472e07536b67356551a4656bc45b69e85e5
-
SSDEEP
768:IBWGaRdJcnrZ62lWw/OdipAnB28ljN7tVZgPCHSckzCScx4qXfb+KRBaTNc8QsiH:IBW70p3/Od6VuNIMb+KR0Nc8QsJq39
Behavioral task
behavioral1
Sample
24789be3bd88ddaea95965f04ff7516674c97a9da461aefeee45e56ea894482f.exe
Resource
win7-20240508-en
Behavioral task
behavioral2
Sample
24789be3bd88ddaea95965f04ff7516674c97a9da461aefeee45e56ea894482f.exe
Resource
win10v2004-20240508-en
Malware Config
Extracted
metasploit
encoder/shikata_ga_nai
Extracted
metasploit
windows/reverse_tcp
128.5.58.136:52418
Extracted
metasploit
encoder/call4_dword_xor
Targets
-
-
Target
24789be3bd88ddaea95965f04ff7516674c97a9da461aefeee45e56ea894482f
-
Size
72KB
-
MD5
c546193a65ac0174e21502bfa1b39570
-
SHA1
2fb3e4a56f3bba312d16dd8c633a4cdd34b47ed6
-
SHA256
24789be3bd88ddaea95965f04ff7516674c97a9da461aefeee45e56ea894482f
-
SHA512
6d6f401309f0994a80eaef6bcf6c316f531185860cc4798c60c189d6fc8fd53e1f438d0ec55bf020ca19e4b7923e1472e07536b67356551a4656bc45b69e85e5
-
SSDEEP
768:IBWGaRdJcnrZ62lWw/OdipAnB28ljN7tVZgPCHSckzCScx4qXfb+KRBaTNc8QsiH:IBW70p3/Od6VuNIMb+KR0Nc8QsJq39
Score10/10-
MetaSploit
Detected malicious payload which is part of the Metasploit Framework, likely generated with msfvenom or similar.
-