General

  • Target

    bdf2bf704188f8852bfbcd51d5c1875f.bin

  • Size

    1.6MB

  • Sample

    240701-dtaa6svbpb

  • MD5

    bdf2bf704188f8852bfbcd51d5c1875f

  • SHA1

    7503d8c8b16dbdfd3b4301412e4a3f5ed31bd167

  • SHA256

    f0fcc59a4322b4842f40ce4926348d2d88d6cec02a53974ae5e5f1b8a6dbda7b

  • SHA512

    2728c8217b6c7f64b521f4c3c0a56381de70b351f1fa92fc8b0803034802b5d466b6d91ed6ef392030e13352bfd33b650c6d19b42e9c1ec6701c699b77bede4f

  • SSDEEP

    49152:Plp9tHfYoEaTSiz23THT3WSMpDgj/qB0Rj6KIeVSc/zui+:PX/LEQkj/qBk6K2c/ii+

Malware Config

Extracted

Family

metasploit

Version

encoder/shikata_ga_nai

Extracted

Family

metasploit

Version

metasploit_stager

C2

192.168.1.10:443

Targets

    • Target

      bdf2bf704188f8852bfbcd51d5c1875f.bin

    • Size

      1.6MB

    • MD5

      bdf2bf704188f8852bfbcd51d5c1875f

    • SHA1

      7503d8c8b16dbdfd3b4301412e4a3f5ed31bd167

    • SHA256

      f0fcc59a4322b4842f40ce4926348d2d88d6cec02a53974ae5e5f1b8a6dbda7b

    • SHA512

      2728c8217b6c7f64b521f4c3c0a56381de70b351f1fa92fc8b0803034802b5d466b6d91ed6ef392030e13352bfd33b650c6d19b42e9c1ec6701c699b77bede4f

    • SSDEEP

      49152:Plp9tHfYoEaTSiz23THT3WSMpDgj/qB0Rj6KIeVSc/zui+:PX/LEQkj/qBk6K2c/ii+

    • MetaSploit

      Detected malicious payload which is part of the Metasploit Framework, likely generated with msfvenom or similar.

MITRE ATT&CK Matrix

Tasks