General

  • Target

    23e15451f81dcb7b0f16e61635b21e8d.bin

  • Size

    6KB

  • Sample

    240702-bg1w9a1cke

  • MD5

    ce4a28d8590b6d27c1a12adb02ff541b

  • SHA1

    73b5f94e1ea0042da96fbe2e273ddb930dd4d287

  • SHA256

    b4c574cf8c92bb87aa92798c6c99ae7c3d047862c77d1d239fc234d4d8916d8f

  • SHA512

    d957590037b17814c4ccc4371f97fc3495357466ddbddc4ca7ecc943ad97c9a2404dd96152b889217309d954e776180d01e30ba7a461543f6fc934e0f0257860

  • SSDEEP

    96:Mk5zdFA7GAQ3TRspHB16/GYsMyjyC8aLVhnSufjb69rrQzAuQDU5SLMrmN88LqaR:jUGHTRstBlYsMzSR5dfjDXQDlrTSW

Malware Config

Extracted

Family

cobaltstrike

C2

http://117.50.177.53:80/HzOL

Attributes
  • user_agent

    User-Agent: Mozilla/5.0 (compatible; MSIE 8.0; Windows NT 6.1; Trident/5.0)

Targets

    • Target

      219ce74446b241b891fadd597f2120483dfcbd0a1c3daa78d16d7df6deb42c7c.exe

    • Size

      13KB

    • MD5

      23e15451f81dcb7b0f16e61635b21e8d

    • SHA1

      fabcab8c6953e5db1040aafc0501eca2c1f6878a

    • SHA256

      219ce74446b241b891fadd597f2120483dfcbd0a1c3daa78d16d7df6deb42c7c

    • SHA512

      f79430a5200582a42d99663dfeee4745a579153394d3a60b7d20a2d82609db929ce25a20e4e2e9aceab3fca2c529213be41ad4297ca22509eba2e57eb2850462

    • SSDEEP

      192:D188mSbHoMH18DVQ99lMMOzek97ep4Sd3I6nABML3Q5tfXc8G:588mSbIo2DVssfnlw3TCML3QG

MITRE ATT&CK Matrix

Tasks