I have put together a little "petri dish" test environment and started looking for a sample that has the exploit. Some samples out there simply do not have the exploit code, and even tough they will encrypt the files locally, sometimes the mounted shares too, they would not spread.
Luckily, I have found this nice blog post from McAfee Labs: https://securingtomorrow.mcafee.com/mcafee-labs/analysis-wannacry-ransomware/ with the reference to the sample SHA256: 24d004a104d4d54034dbcffc2a4b19a11f39008a575aa614ea04703480b1022c (they keep referring to samples with MD5, which is still a very-very bad practice, but the hash is MD5: DB349B97C37D22F5EA1D1841E3C89EB4)
Once I got the sample from the VxStream Sandbox site, dropped it in the test environment, and monitored it with Security Onion. I was super happy to see it spreading, despite the fact that for the first run my Windows 7 x64 VM went to BSOD as the EthernalBlue exploit failed.
But the second run was a full success, all my Windows 7 VMs got infected. Brad was so kind and made a guest blog post at one of my favorite sites, www.malware-traffic-analysis.net so you can find the pcap, description of the test environment and some screenshots here: http://malware-traffic-analysis.net/2017/05/18/index2.html
Continue reading
- Blackhat Hacker Tools
- Android Hack Tools Github
- Hack Tools Online
- Hacking Tools Name
- Hacking Tools Free Download
- Hacker Security Tools
- Pentest Tools Alternative
- Hacker Tools For Pc
- Hacker Tools For Ios
- Hack And Tools
- Usb Pentest Tools
- Ethical Hacker Tools
- Hacking Tools 2020
- Usb Pentest Tools
- Pentest Tools Port Scanner
- Hack Tools For Ubuntu
- Hacker Tool Kit
- Underground Hacker Sites
- Hacking Tools Download
- Nsa Hack Tools Download
- Hacker Tools Linux
- How To Make Hacking Tools
- Top Pentest Tools
- Pentest Recon Tools
- Hacker Tools Software
- Hacker Tools For Ios
- Hacking Tools For Games
- Hacking App
- Hacker Tools Free Download
- Pentest Tools Website Vulnerability
- Pentest Tools For Android
- Hacking Tools Pc
- Hack Tools Online
- Pentest Tools Subdomain
- Hacker Tools For Pc
- Hacking Tools Windows 10
- Pentest Tools
- Hacking Tools Free Download
- Hacker Tools Software
- Pentest Recon Tools
- Hacker Tools Hardware
- Hacking Tools Usb
- How To Make Hacking Tools
- Hacking Tools Kit
- Hacking Tools Online
- Pentest Tools Tcp Port Scanner
- Pentest Tools Download
- Wifi Hacker Tools For Windows
- Pentest Tools Windows
- Hacker Tools Hardware
- What Is Hacking Tools
- Nsa Hack Tools
- Hacking Tools For Kali Linux
- Game Hacking
- Growth Hacker Tools
- Hacking Tools 2019
- Hacking Tools 2019
- Hack Tools For Mac
- Usb Pentest Tools
- Easy Hack Tools
- Hack Tools For Windows
- Hacking Tools For Kali Linux
- Hacker Tools Hardware
- Pentest Tools Subdomain
- Tools 4 Hack
- Hacker Security Tools
- Growth Hacker Tools
- Pentest Tools Nmap
- Pentest Tools Subdomain
- Hacker Tools Free
- Hack Tool Apk
- Pentest Tools
- Hack Tools For Ubuntu
- Hacker Tools Apk Download
- Hacking Tools Github
- Pentest Tools Free
- Pentest Tools Framework
- Pentest Tools List
- Pentest Tools Port Scanner
- Hackrf Tools
- Hacker Tools For Ios
- Hacking Tools For Kali Linux
- Hacker Tools Github
- Pentest Reporting Tools
- Hackers Toolbox
- Bluetooth Hacking Tools Kali
- Top Pentest Tools
- Pentest Tools Alternative
- Hack Tools Online
- Hack Apps
- Tools 4 Hack
- Hacking Apps
- Pentest Tools For Windows
- Pentest Tools Github
- Hack Rom Tools
- Hack Tools Download
- Hacker Tools
- How To Make Hacking Tools
- Hacking Tools For Windows
- Hack Tools 2019
- Best Hacking Tools 2019
- Pentest Tools Android
- Hacker Tools Apk Download
- How To Install Pentest Tools In Ubuntu
- Github Hacking Tools
- Pentest Tools Framework
Ingen kommentarer:
Legg inn en kommentar