General

  • Target

    2025-05-19_dad80da1d1367a6fe75692e24f109d2f_cobalt-strike_frostygoop_gcleaner_luca-stealer

  • Size

    1.3MB

  • Sample

    250519-e2xbcahr2w

  • MD5

    dad80da1d1367a6fe75692e24f109d2f

  • SHA1

    6755d6f61528ddfa0a8c0a353d11d665ae87b7aa

  • SHA256

    08e2e1aaf65b8b26c690b9397537373e51a2d2d001bc30aa949be8e66e62838c

  • SHA512

    43fe04ed0a459e1b8e64c6fcafa76d29f5e3c7cbc929f3490c1bef71afbfbbef774aaee73b88bffd100dc4a53085c4dc0fd122d62601f9be2da1dc75fb254c0c

  • SSDEEP

    24576:X31r2nOoVCKNFA1dlPrh8fg2hhvpiMXfdD1:H1r2OeFNFAdPCg2hxp/dD1

Malware Config

Extracted

Family

cobaltstrike

C2

http://1.13.15.130:5577/cDqE

Attributes
  • user_agent

    User-Agent: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; Trident/5.0; XBLWP7; ZuneWP7)

Targets

    • Target

      2025-05-19_dad80da1d1367a6fe75692e24f109d2f_cobalt-strike_frostygoop_gcleaner_luca-stealer

    • Size

      1.3MB

    • MD5

      dad80da1d1367a6fe75692e24f109d2f

    • SHA1

      6755d6f61528ddfa0a8c0a353d11d665ae87b7aa

    • SHA256

      08e2e1aaf65b8b26c690b9397537373e51a2d2d001bc30aa949be8e66e62838c

    • SHA512

      43fe04ed0a459e1b8e64c6fcafa76d29f5e3c7cbc929f3490c1bef71afbfbbef774aaee73b88bffd100dc4a53085c4dc0fd122d62601f9be2da1dc75fb254c0c

    • SSDEEP

      24576:X31r2nOoVCKNFA1dlPrh8fg2hhvpiMXfdD1:H1r2OeFNFAdPCg2hxp/dD1

MITRE ATT&CK Matrix

Tasks

OSZAR »