General
-
Target
2025-05-19_dad80da1d1367a6fe75692e24f109d2f_cobalt-strike_frostygoop_gcleaner_luca-stealer
-
Size
1.3MB
-
Sample
250519-e2xbcahr2w
-
MD5
dad80da1d1367a6fe75692e24f109d2f
-
SHA1
6755d6f61528ddfa0a8c0a353d11d665ae87b7aa
-
SHA256
08e2e1aaf65b8b26c690b9397537373e51a2d2d001bc30aa949be8e66e62838c
-
SHA512
43fe04ed0a459e1b8e64c6fcafa76d29f5e3c7cbc929f3490c1bef71afbfbbef774aaee73b88bffd100dc4a53085c4dc0fd122d62601f9be2da1dc75fb254c0c
-
SSDEEP
24576:X31r2nOoVCKNFA1dlPrh8fg2hhvpiMXfdD1:H1r2OeFNFAdPCg2hxp/dD1
Static task
static1
Behavioral task
behavioral1
Sample
2025-05-19_dad80da1d1367a6fe75692e24f109d2f_cobalt-strike_frostygoop_gcleaner_luca-stealer.exe
Resource
win10v2004-20250502-en
Malware Config
Extracted
cobaltstrike
http://1.13.15.130:5577/cDqE
-
user_agent
User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0; XBLWP7; ZuneWP7)
Targets
-
-
Target
2025-05-19_dad80da1d1367a6fe75692e24f109d2f_cobalt-strike_frostygoop_gcleaner_luca-stealer
-
Size
1.3MB
-
MD5
dad80da1d1367a6fe75692e24f109d2f
-
SHA1
6755d6f61528ddfa0a8c0a353d11d665ae87b7aa
-
SHA256
08e2e1aaf65b8b26c690b9397537373e51a2d2d001bc30aa949be8e66e62838c
-
SHA512
43fe04ed0a459e1b8e64c6fcafa76d29f5e3c7cbc929f3490c1bef71afbfbbef774aaee73b88bffd100dc4a53085c4dc0fd122d62601f9be2da1dc75fb254c0c
-
SSDEEP
24576:X31r2nOoVCKNFA1dlPrh8fg2hhvpiMXfdD1:H1r2OeFNFAdPCg2hxp/dD1
Score10/10-
Cobaltstrike family
-